<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic SSO in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/sso/m-p/302822#M255952</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hi guys.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;following this tutorial (&lt;/SPAN&gt;&lt;A href="http://docs.alfresco.com/community/tasks/auth-example-oneldap-ad.html" rel="nofollow noopener noreferrer"&gt;http://docs.alfresco.com/community/tasks/auth-example-oneldap-ad.html&lt;/A&gt;&lt;SPAN&gt;) we are trying to enable SSO on alfresco community web page (share) to work.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;SSO is not working.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;We have put this lines:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;authentication.chain=alfinst:alfrescoNtlm,ldap1:ldap-ad&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;ntlm.authentication.sso.enabled=false&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.authentication.allowGuestLogin=false&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;A class="jive-link-email-small" href="https://migration33.stage.lithium.com/" rel="nofollow noopener noreferrer"&gt;ldap.authentication.userNameFormat=%s@domain.com&lt;/A&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.authentication.java.naming.provider.url=ldap://domaincontroller.domain.com:389&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.authentication.defaultAdministratorUserNames=Administrator,alfresco&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:ldap.synchronization.java.naming.security.principal=alfresco@domain.com" rel="nofollow noopener noreferrer"&gt;ldap.synchronization.java.naming.security.principal=alfresco@domain.com&lt;/A&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.java.naming.security.credentials=secret&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.groupSearchBase=ou=Security Groups,ou=Alfresco\&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;,dc=domain,dc=com&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;ldap.synchronization.userSearchBase=ou=User Accounts,ou=Alfresco,dc=domain,dc=com&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 30 Jun 2016 12:06:21 GMT</pubDate>
    <dc:creator>bostjanc</dc:creator>
    <dc:date>2016-06-30T12:06:21Z</dc:date>
    <item>
      <title>SSO</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/sso/m-p/302822#M255952</link>
      <description>Hi guys.following this tutorial (http://docs.alfresco.com/community/tasks/auth-example-oneldap-ad.html) we are trying to enable SSO on alfresco community web page (share) to work.SSO is not working.We have put this lines:authentication.chain=alfinst:alfrescoNtlm,ldap1:ldap-adntlm.authentication.sso.</description>
      <pubDate>Thu, 30 Jun 2016 12:06:21 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/sso/m-p/302822#M255952</guid>
      <dc:creator>bostjanc</dc:creator>
      <dc:date>2016-06-30T12:06:21Z</dc:date>
    </item>
    <item>
      <title>Re: SSO</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/sso/m-p/302823#M255953</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hi &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;SPAN&gt;First off, I'm assuming that you've updated the values you posted above to match your own domain details (&lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="https://migration33.stage.lithium.com/" rel="nofollow noopener noreferrer"&gt;%s@domain.com&lt;/A&gt;&lt;SPAN&gt;, ldap://domaincontroller.domain.com:389, &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:alfresco@domain.com" rel="nofollow noopener noreferrer"&gt;alfresco@domain.com&lt;/A&gt;&lt;SPAN&gt; etc etc) - unless domain.com is actually the name of your domain?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Can you explain what you're seeing and what isn't working?&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Please bear in mind that LDAP can be used to authenticate users using their Windows credentials (single sign on) but doesn't support passwordless single sign on where the user opens Alfresco and is logged in automatically. So you should expect to still see a login page when you go to Alfresco, but you will be able to use Windows usernames/passwords to authenticate.&amp;nbsp; If this is not what you want and you want the user to simply be logged in automatically then you'll need to look at Kerberos or Pass-through authentication instead &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Regards&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Steven&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 30 Jun 2016 12:28:26 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/sso/m-p/302823#M255953</guid>
      <dc:creator>steven_okennedy</dc:creator>
      <dc:date>2016-06-30T12:28:26Z</dc:date>
    </item>
  </channel>
</rss>

