<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Kerboros, LDAP, lost primordial admin account access in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/kerboros-ldap-lost-primordial-admin-account-access/m-p/284871#M238001</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Simply adding AlfrescoNtlm back into my chain at the end resolved my problem.&amp;nbsp; I assume this is by design?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 23 Dec 2013 19:22:52 GMT</pubDate>
    <dc:creator>deisenlord</dc:creator>
    <dc:date>2013-12-23T19:22:52Z</dc:date>
    <item>
      <title>Kerboros, LDAP, lost primordial admin account access</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/kerboros-ldap-lost-primordial-admin-account-access/m-p/284870#M238000</link>
      <description>I've updated to 4.2.e and it has fixed the Kerberos SSO problems which is working fine now.&amp;nbsp; However I've lost access to the built-in "admin" user. I don't get a peep in the alfresco or share logs but this shows up in the catalina.out log.&amp;nbsp;&amp;nbsp;&amp;nbsp; My authentication chain is now limited to kerberos and ld</description>
      <pubDate>Mon, 23 Dec 2013 18:00:55 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/kerboros-ldap-lost-primordial-admin-account-access/m-p/284870#M238000</guid>
      <dc:creator>deisenlord</dc:creator>
      <dc:date>2013-12-23T18:00:55Z</dc:date>
    </item>
    <item>
      <title>Re: Kerboros, LDAP, lost primordial admin account access</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/kerboros-ldap-lost-primordial-admin-account-access/m-p/284871#M238001</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Simply adding AlfrescoNtlm back into my chain at the end resolved my problem.&amp;nbsp; I assume this is by design?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 23 Dec 2013 19:22:52 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/kerboros-ldap-lost-primordial-admin-account-access/m-p/284871#M238001</guid>
      <dc:creator>deisenlord</dc:creator>
      <dc:date>2013-12-23T19:22:52Z</dc:date>
    </item>
    <item>
      <title>Re: Kerboros, LDAP, lost primordial admin account access</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/kerboros-ldap-lost-primordial-admin-account-access/m-p/284872#M238002</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hi,&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Sorry to only drop by after your problem have already been solved.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;And yes, you guessed right, it's by design.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;AlfrescoNTLM is to handle some users locally in Alfresco. And the built-in admin user is one of them.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;So if you take NTLM out of your chain, it will try to authenticate the "admin" user in your other systems but will never fallback to NTLM where the built-in admin user is stored.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 02 Jan 2014 14:20:27 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/kerboros-ldap-lost-primordial-admin-account-access/m-p/284872#M238002</guid>
      <dc:creator>scouil</dc:creator>
      <dc:date>2014-01-02T14:20:27Z</dc:date>
    </item>
  </channel>
</rss>

