<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Configure Alfresco community to sync AD users in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302750#M255880</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Ok, managed to figure it out that NAME.SURNAME (without domain) can be used for login.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;But why SSO is not working?&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;What must we do to enable SSO for ALFRESCO SHARE site?&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;with best regards&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 30 Jun 2016 12:03:21 GMT</pubDate>
    <dc:creator>bostjanc</dc:creator>
    <dc:date>2016-06-30T12:03:21Z</dc:date>
    <item>
      <title>Configure Alfresco community to sync AD users</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302746#M255876</link>
      <description>Hi guys.Installed (alfresco-community-installer-201605-win-x64).Would like to achieve that alfresco would be synced with Windows Active Directory.Are there any tutorials (step by steps) how to achieve in this version in community edition?Haven't found anything useful yet on the net.Thank you.With be</description>
      <pubDate>Wed, 29 Jun 2016 11:21:11 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302746#M255876</guid>
      <dc:creator>bostjanc</dc:creator>
      <dc:date>2016-06-29T11:21:11Z</dc:date>
    </item>
    <item>
      <title>Re: Configure Alfresco community to sync AD users</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302747#M255877</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Kindly take a look at the documentation at the following link &lt;/SPAN&gt;&lt;A href="http://docs.alfresco.com/community/concepts/auth-ldap-intro.html" rel="nofollow noopener noreferrer"&gt;http://docs.alfresco.com/community/concepts/auth-ldap-intro.html&lt;/A&gt;&lt;SPAN&gt; and sections under it. It should help you get started.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Hope this helps.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 29 Jun 2016 11:33:10 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302747#M255877</guid>
      <dc:creator>romschn</dc:creator>
      <dc:date>2016-06-29T11:33:10Z</dc:date>
    </item>
    <item>
      <title>Re: Configure Alfresco community to sync AD users</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302748#M255878</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Thanks for the links. We have managed to configure Alfresco vs Active directory. Under people the search results return AD users/objects…&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;We have a next problem, that users cannot login with their AD credentials into ALFRESCO website.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Do you need to do any additional steps to achieve the login process?&lt;/SPAN&gt;&lt;BR /&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 29 Jun 2016 12:39:57 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302748#M255878</guid>
      <dc:creator>bostjanc</dc:creator>
      <dc:date>2016-06-29T12:39:57Z</dc:date>
    </item>
    <item>
      <title>Re: Configure Alfresco community to sync AD users</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302749#M255879</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Ok, the problem regarding making authentication… Have figured out the root the problem, but dont know the solution yet…&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;In global properties one of the line is the userNameFormat: &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="https://migration33.stage.lithium.com/" rel="nofollow noopener noreferrer"&gt;ldap.authentication.userNameFormat=%s@domain.com&lt;/A&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;But in our case UPN is: &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:name.surname@domain.com" rel="nofollow noopener noreferrer"&gt;name.surname@domain.com&lt;/A&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;so &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="https://migration33.stage.lithium.com/" rel="nofollow noopener noreferrer"&gt;%s@domain.com&lt;/A&gt;&lt;SPAN&gt; works only for &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:JOHN@domain.com" rel="nofollow noopener noreferrer"&gt;JOHN@domain.com&lt;/A&gt;&lt;SPAN&gt; but not for &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:JOHN.COOK@domain.com" rel="nofollow noopener noreferrer"&gt;JOHN.COOK@domain.com&lt;/A&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;how to achieve that even &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:JOHN.COOK@domain.com" rel="nofollow noopener noreferrer"&gt;JOHN.COOK@domain.com&lt;/A&gt;&lt;SPAN&gt; will be authenticated at the login site?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;any suggestions please.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;with best regards&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Jun 2016 10:43:27 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302749#M255879</guid>
      <dc:creator>bostjanc</dc:creator>
      <dc:date>2016-06-30T10:43:27Z</dc:date>
    </item>
    <item>
      <title>Re: Configure Alfresco community to sync AD users</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302750#M255880</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Ok, managed to figure it out that NAME.SURNAME (without domain) can be used for login.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;But why SSO is not working?&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;What must we do to enable SSO for ALFRESCO SHARE site?&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;with best regards&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Jun 2016 12:03:21 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302750#M255880</guid>
      <dc:creator>bostjanc</dc:creator>
      <dc:date>2016-06-30T12:03:21Z</dc:date>
    </item>
    <item>
      <title>Re: Configure Alfresco community to sync AD users</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302751#M255881</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;The LDAP/LDAP-AD subsystems don't provide passwordless single-sign on, what it does is it allows authentication via a username/password against users stored in LDAP/Active Directory.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;If you want to be automatically logged in without the user needing to enter a password, you'll need to look at the Kerberos or Pass-through authentication subsystems.&amp;nbsp; The standard documentation is pretty good in this area &lt;/SPAN&gt;&lt;A href="http://docs.alfresco.com/5.1/concepts/auth-subsystem-types.html" rel="nofollow noopener noreferrer"&gt;http://docs.alfresco.com/5.1/concepts/auth-subsystem-types.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Regards&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Steven&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Jun 2016 12:33:50 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302751#M255881</guid>
      <dc:creator>steven_okennedy</dc:creator>
      <dc:date>2016-06-30T12:33:50Z</dc:date>
    </item>
    <item>
      <title>Re: Configure Alfresco community to sync AD users</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302752#M255882</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hello,&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;could you help me with ldap-ad config file? I've installed alfresco-community-installer-201605-linux-x64.bin on Centos 7 and now i need to configure authentification to MS Active Directory. I downloaded ldap-ad config file (extracted from community-edition-5.2.a-EA.zip) copied to /opt/alfresco-community/tomcat/webapps/alfresco/WEB-INF/classes and still files are not loaded. When i check tomcat log files (/opt/alfresco-community/tomcat/logs/catalina.out ) i see org.alfresco.repo.security.authentication.AuthenticationException: 06190001 Failed to communicate with ldap://domaincontroller.company.com:389. Reason javax.naming.CommunicationException, domaincontroller.company.com:389, java… Could you identify where is default value "domaincontroller.company.com:389" definied, or where should be located ldap-ad authentication files?&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Thanks in advance&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jul 2016 08:10:50 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302752#M255882</guid>
      <dc:creator>memphissk</dc:creator>
      <dc:date>2016-07-19T08:10:50Z</dc:date>
    </item>
    <item>
      <title>Re: Configure Alfresco community to sync AD users</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302753#M255883</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hi, &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;You need to make sure that you've followed the steps outlined in the documentation (&lt;/SPAN&gt;&lt;A href="http://docs.alfresco.com/5.1/concepts/auth-config-examples.html" rel="nofollow noopener noreferrer"&gt;http://docs.alfresco.com/5.1/concepts/auth-config-examples.html&lt;/A&gt;&lt;SPAN&gt;) and make sure that you are putting the properties files in the right place - authentication is dealt with as a set of chained subsystems each which is configured separately, so Alfresco expects the configuration to be in a subsystem specific folder.&amp;nbsp; Also, don't drop files directly into the exploded WAR folder, that will just get them lost on redeploy, use the extensions folder instead.&amp;nbsp; E.g if the authentication subsystem referenced by your authentication chain is called "ad1", your files related to it would go in the location:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;tomcat/shared/classes/alfresco/extension/subsystems/Authentication/ldap-ad/ad1/ad1.properties.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Refer to the docs around how to set each of the properties you need to override.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;One last thing when using LDAP-AD from a Linux box, make sure to add an entry to your /etc/hosts file that matches the domain name of your AD server and point it to the IP address of your AD server - this avoids issues if your server can't resolve the primary domain controller automatically&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Regards&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Steven&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jul 2016 20:17:27 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/configure-alfresco-community-to-sync-ad-users/m-p/302753#M255883</guid>
      <dc:creator>steven_okennedy</dc:creator>
      <dc:date>2016-07-19T20:17:27Z</dc:date>
    </item>
  </channel>
</rss>

