<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Permanently disabled users after disabling LDAP in Alfresco Forum</title>
    <link>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125927#M34304</link>
    <description>&lt;P&gt;Did you find some solution about it ?&lt;/P&gt;&lt;P&gt;Like update the database or something similar ?&lt;/P&gt;</description>
    <pubDate>Tue, 04 Jul 2023 11:35:22 GMT</pubDate>
    <dc:creator>AlfrescoZZZ</dc:creator>
    <dc:date>2023-07-04T11:35:22Z</dc:date>
    <item>
      <title>Permanently disabled users after disabling LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125923#M34300</link>
      <description>&lt;P&gt;Hi.&lt;/P&gt;&lt;P&gt;I have a situation similar to that from &lt;A href="https://hub.alfresco.com/t5/alfresco-content-services-forum/switch-from-ad-ldap-authentication-to-local-authentication/m-p/297549" target="_blank" rel="noopener nofollow noreferrer"&gt;https://hub.alfresco.com/t5/alfresco-content-services-forum/switch-from-ad-ldap-authentication-to-local-authentication/m-p/297549&lt;/A&gt; thread. Unfortunately I don't see a solution there.&lt;/P&gt;&lt;P&gt;I "inherited" some 5.2 installation which was, honestly speaking, unmaintained and kept only as an archive of sorts.&lt;/P&gt;&lt;P&gt;The configuration was as far as I remember and understand the contents to authenticate users using Kerberos against AD and use LDAP to query/synchronize users' group membership.&lt;/P&gt;&lt;P&gt;I needed to migrate the server into another site because the whole domain is being decommisioned so I had to disable Kerberos and LDAP in ACS config. It seems to have gone well.&lt;/P&gt;&lt;P&gt;The problem is that all accounts that were created before and used Kerberos/LDAP still exist but are shown as disabled and the user edit dialog doesn't let me to re-enable the user (the checkbox "disable user" is ticked and greyed out) or set the password for user.&lt;/P&gt;&lt;P&gt;If I create a new test user, he's getting properly created locally and I can freely edit his properties.&lt;/P&gt;&lt;P&gt;I trimmed my authentication.chain so it contains only "alfrescoNtlm1:alfrescoNtlm" now.&lt;/P&gt;&lt;P&gt;I already disabled Kerberos completely in share-config-custom.xml because otherwise the tomcat app would not start properly without KDC access. I disabled all LDAP mentions in tomcat/shared/classes/alfresco/extension...&lt;/P&gt;&lt;P&gt;What else can I do?&lt;/P&gt;&lt;P&gt;I'd like to avoid having to remove users and recreate them by hand.&lt;/P&gt;</description>
      <pubDate>Thu, 20 Jan 2022 15:24:07 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125923#M34300</guid>
      <dc:creator>RansomRonny</dc:creator>
      <dc:date>2022-01-20T15:24:07Z</dc:date>
    </item>
    <item>
      <title>Re: Permanently disabled users after disabling LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125924#M34301</link>
      <description>&lt;P&gt;Users are associated to a Zone in Alfresco. If you want to move to default Authentication (NTLM), you need to re-create every user (you can use the REST API for that). If you want to use a new LDAP, you may try synchronizing them again.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Jan 2022 11:11:56 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125924#M34301</guid>
      <dc:creator>angelborroy</dc:creator>
      <dc:date>2022-01-21T11:11:56Z</dc:date>
    </item>
    <item>
      <title>Re: Permanently disabled users after disabling LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125925#M34302</link>
      <description>&lt;P&gt;If I delete/recreate each user I'll obviously lose all access rights assignment, right?&lt;/P&gt;&lt;P&gt;Is there no way around it? To be honest, I thought about directly updating the database if needed but unfortunately, the database structure is a bit over-complicated for quick understanding without additional docs.&lt;/P&gt;&lt;P&gt;Also, will it not lose user action history?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Jan 2022 12:35:48 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125925#M34302</guid>
      <dc:creator>RansomRonny</dc:creator>
      <dc:date>2022-01-21T12:35:48Z</dc:date>
    </item>
    <item>
      <title>Re: Permanently disabled users after disabling LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125926#M34303</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;A href="https://migration33.stage.lithium.com/t5/user/viewprofilepage/user-id/89617"&gt;@RansomRonny&lt;/A&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;If I delete/recreate each user I'll obviously lose all access rights assignment, right?&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Yes, new user is new user.&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;A href="https://migration33.stage.lithium.com/t5/user/viewprofilepage/user-id/89617"&gt;@RansomRonny&lt;/A&gt;&amp;nbsp;wrote:&lt;P&gt;Also, will it not lose user action history?&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Yes, you'll have got new users.&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;A href="https://migration33.stage.lithium.com/t5/user/viewprofilepage/user-id/89617"&gt;@RansomRonny&lt;/A&gt;&amp;nbsp;wrote:&lt;P&gt;What else can I do?&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Connect system to LDAP with same users ID's. It can use any LDAP autentication technology, not necessarily Kerberos.&lt;/P&gt;</description>
      <pubDate>Sun, 23 Jan 2022 23:14:32 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125926#M34303</guid>
      <dc:creator>fedorow</dc:creator>
      <dc:date>2022-01-23T23:14:32Z</dc:date>
    </item>
    <item>
      <title>Re: Permanently disabled users after disabling LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125927#M34304</link>
      <description>&lt;P&gt;Did you find some solution about it ?&lt;/P&gt;&lt;P&gt;Like update the database or something similar ?&lt;/P&gt;</description>
      <pubDate>Tue, 04 Jul 2023 11:35:22 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125927#M34304</guid>
      <dc:creator>AlfrescoZZZ</dc:creator>
      <dc:date>2023-07-04T11:35:22Z</dc:date>
    </item>
    <item>
      <title>Re: Permanently disabled users after disabling LDAP</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125928#M34305</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;A href="https://migration33.stage.lithium.com/t5/user/viewprofilepage/user-id/5487"&gt;@angelborroy&lt;/A&gt;&amp;nbsp;&amp;nbsp;i have a question.&lt;/P&gt;&lt;P&gt;I noticed that the old LDAP users stay in their own AUTH.ZONE_2 while the LOCAL users stay in their AUTH.ZONE_1.&lt;/P&gt;&lt;P&gt;If I remove the AUTH.ZONE_2 from the users coming from the LDAP and add them to the AUTH.ZONE_1 they become local users ?&lt;/P&gt;&lt;P&gt;If yes is there any way to do this with java code ?&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jul 2023 08:12:47 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/permanently-disabled-users-after-disabling-ldap/m-p/125928#M34305</guid>
      <dc:creator>AlfrescoZZZ</dc:creator>
      <dc:date>2023-07-27T08:12:47Z</dc:date>
    </item>
  </channel>
</rss>

