<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic LDAP works....sorta in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/ldap-works-sorta/m-p/292805#M245935</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I'm having issue with trying to get active directory working with alfresco. I've been able to authenticate a user to log into alfresco with their active directory credentials. However I can't seem to be able to search a list of all users using the People Finder function. This is going to be crucial for our society in order to initially setup sites and members to those site.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Here is a config that I have residing in this location: webapps/alfresco/WEB-INF/classes/alfresco/subsystems/Authentication/ldap-ad&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.authentication.allowGuestLogin=true&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.authentication.userNameFormat=%s@test.lan&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.authentication.java.naming.factory.initial=com.sun.jndi.ldap.LdapCtxFactory&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.authentication.java.naming.provider.url=ldap://dmc.test.lan:389&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.authentication.java.naming.security.authentication=simple&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.authentication.escapeCommasInBind=false&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.authentication.escapeCommasInUid=false&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.authentication.defaultAdministratorUserNames=administrator,alfresco&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.active=true&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.java.naming.security.authentication=simple&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.java.naming.security.principal=alfresco@test.lan&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.java.naming.security.credentials=password&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.groupQuery=(objectclass\=group)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.groupDifferentialQuery=(&amp;amp;(objectclass\=group)(!(whenChanged&amp;lt;\={0})))&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.personQuery=(&amp;amp;(objectclass\=user)(userAccountControl\:1.2.840.113556.1.4.803\:\=512))&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.personDifferentialQuery=(&amp;amp;(objectclass\=user)(userAccountControl\:1.2.840.113556.1.4.803\:\=512)(!(whenChanged&amp;lt;\={0})))&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.groupSearchBase=ou\=Security Groups,ou=\domain,dc=com&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.userSearchBase=ou\=User Accounts,ou=\domain,dc=com&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;——————————————————————————-&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Also I'm on the 4.2.c community version and per instructions I also added this entry to:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;webapps/alfresco/WEB-INF/classes/alfresco/subsystems/Authentication/common-ldap-context.xml&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Found this bean:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;lt;bean id="ldapInitialDirContextFactory"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;lt;property name="initialDirContextEnvironment"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;lt;map&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Added this entry -&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;lt;entry key="java.naming.referral"&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;lt;value&amp;gt;follow&amp;lt;/value&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;lt;/entry&amp;gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;The authentication works….but I can't search for other users. Does alfresco have this functionality?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 27 Jun 2013 22:42:22 GMT</pubDate>
    <dc:creator>eswbitto</dc:creator>
    <dc:date>2013-06-27T22:42:22Z</dc:date>
    <item>
      <title>LDAP works....sorta</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/ldap-works-sorta/m-p/292805#M245935</link>
      <description>I'm having issue with trying to get active directory working with alfresco. I've been able to authenticate a user to log into alfresco with their active directory credentials. However I can't seem to be able to search a list of all users using the People Finder function. This is going to be crucial</description>
      <pubDate>Thu, 27 Jun 2013 22:42:22 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/ldap-works-sorta/m-p/292805#M245935</guid>
      <dc:creator>eswbitto</dc:creator>
      <dc:date>2013-06-27T22:42:22Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP works....sorta</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/ldap-works-sorta/m-p/292806#M245936</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Search only searches in alfresco, not your external directories.&amp;nbsp; Users will be created in alfresco as and when they log in.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;And the advice that told you to hack the files below WEB-INF is wrong.&amp;nbsp; Yes it works but you will cause yourself upgrade problems in future and you also won't be able to configure more than one authentication subsystem in the authentication chain.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 28 Jun 2013 06:01:29 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/ldap-works-sorta/m-p/292806#M245936</guid>
      <dc:creator>mrogers</dc:creator>
      <dc:date>2013-06-28T06:01:29Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP works....sorta</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/ldap-works-sorta/m-p/292807#M245937</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;@mrogers&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Where should I be making this configuration then? Do I copy the file somewhere else or just the config part? &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;*edit*&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;(Resolution: I had the wrong UPN and it wasn't syncing correctly)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Now I have a different problem… I didn't include some OU's and search results show those. Is there a way to filter?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 28 Jun 2013 15:08:00 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/ldap-works-sorta/m-p/292807#M245937</guid>
      <dc:creator>eswbitto</dc:creator>
      <dc:date>2013-06-28T15:08:00Z</dc:date>
    </item>
  </channel>
</rss>

