<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Specific groups login in Alfresco Forum</title>
    <link>https://connect.hyland.com/t5/alfresco-forum/specific-groups-login/m-p/489458#M40099</link>
    <description>&lt;P&gt;Hi, can you share a screenshot about the group path you want to sync and allow assigned users to log in?&lt;/P&gt;&lt;P&gt;KR,&lt;/P&gt;</description>
    <pubDate>Wed, 30 Apr 2025 16:21:07 GMT</pubDate>
    <dc:creator>venzia</dc:creator>
    <dc:date>2025-04-30T16:21:07Z</dc:date>
    <item>
      <title>Specific groups login</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/specific-groups-login/m-p/489180#M40080</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want to be able login only few groups from AD.&lt;/P&gt;&lt;P&gt;I created two configuration files. In the first config. was loaded all users and groups and disabled authetification.&lt;/P&gt;&lt;P&gt;In the second config. is enabled authetification so people mapped in groups in personQuery are able to login.&lt;/P&gt;&lt;P&gt;Problem is that login can everyone. Also I have this error:&lt;/P&gt;&lt;P&gt;org.alfresco.error.AlfrescoRuntimeException: 10240018 Error during LDAP Search. Reason:[LDAP: error code 32 - 0000208D: NameErr: DSID-03100241, problem 2001 (NO_OBJECT), data 0, best match of:&lt;/P&gt;&lt;P&gt;'DC=sp,DC=local'&lt;/P&gt;&lt;P&gt;]&lt;/P&gt;&lt;P&gt;I think i have a bad logic with this. Can someone please provide me some correct info? To allow login only for specific group, not for everyone.&lt;/P&gt;&lt;P&gt;First Config&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;ntlm.authentication.sso.enabled=false

synchronization.synchronizeChangesOnly=false
synchronization.syncOnStartup=true

ldap.synchronization.active=true
ldap.authentication.active=false
#KREDENC
ldap.synchronization.java.naming.security.principal=login
ldap.synchronization.java.naming.security.credentials=password
ldap.authentication.userNameFormat=%s@domain
ldap.authentication.java.naming.provider.url=ldap://ip:port

ldap.synchronization.userEmailAttributeName=mail
ldap.authentication.defaultAdministratorUserNames=Administrator,alfresco

ldap.synchronization.groupSearchBase=ou\=DMS,ou\=Security Groups,ou\=mp,dc\=sp,dc\=local
ldap.synchronization.userSearchBase=cn\=Users,cn\=cp,dc\=kl,dc\=local

ldap.synchronization.groupQuery=objectclass\=group
ldap.synchronization.personQuery=objectclass\=user&lt;/LI-CODE&gt;&lt;P&gt;&lt;SPAN&gt;Second Config&lt;/SPAN&gt;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;ldap.authentication.active=true
ldap.synchronization.active=false


ldap.synchronization.java.naming.security.principal=login
ldap.synchronization.java.naming.security.credentials=password
ldap.authentication.userNameFormat=%s@domain
ldap.authentication.java.naming.provider.url=ldap://ip:port


ldap.authentication.defaultAdministratorUserNames=Administrator,alfresco

ldap.synchronization.groupSearchBase=ou\=DMS,ou\=Security Groups,ou\=mp,dc\=sp,dc\=local
ldap.synchronization.userSearchBase=cn\=Users,cn\=cp,dc\=kl,dc\=local


ldap.synchronization.userIdAttributeName=sAMAccountName
ldap.synchronization.userType=user
ldap.synchronization.personQuery=(&amp;amp;(objectclass\=user)(memberOf=cn\=GROUP1,ou\=DMS_1,ou\=DMS,ou\=Security Groups,ou\=mp,dc\=sp,dc\=local)(memberOf=cn\=GROUP2,ou\=DMS_1,ou\=DMS,ou\=Security Groups,ou\=mp,dc\=sp,dc\=local)(userAccountControl:1.2.840.113556.1.4.803:=512))
ldap.synchronization.personDifferentialQuery=(&amp;amp;(objectclass\=user)(memberOf=cn\=GROUP1,ou\=DMS_1,ou\=DMS,ou\=Security Groups,ou\=mp,dc\=sp,dc\=local)(memberOf=cn\=GROUP2,ou\=DMS_1,ou\=DMS,ou\=Security Groups,ou\=mp,dc\=sp,dc\=local)(userAccountControl:1.2.840.113556.1.4.803:=512))&lt;/LI-CODE&gt;</description>
      <pubDate>Tue, 22 Apr 2025 08:35:40 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/specific-groups-login/m-p/489180#M40080</guid>
      <dc:creator>Autophobia</dc:creator>
      <dc:date>2025-04-22T08:35:40Z</dc:date>
    </item>
    <item>
      <title>Re: Specific groups login</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/specific-groups-login/m-p/489458#M40099</link>
      <description>&lt;P&gt;Hi, can you share a screenshot about the group path you want to sync and allow assigned users to log in?&lt;/P&gt;&lt;P&gt;KR,&lt;/P&gt;</description>
      <pubDate>Wed, 30 Apr 2025 16:21:07 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/specific-groups-login/m-p/489458#M40099</guid>
      <dc:creator>venzia</dc:creator>
      <dc:date>2025-04-30T16:21:07Z</dc:date>
    </item>
  </channel>
</rss>

