<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Unable to grant access right to Active Directory Group in Nuxeo Forum</title>
    <link>https://connect.hyland.com/t5/nuxeo-forum/unable-to-grant-access-right-to-active-directory-group/m-p/318163#M5164</link>
    <description>&lt;P&gt;Thanks for your reply and your time.&lt;/P&gt;</description>
    <pubDate>Thu, 12 Jun 2014 12:02:48 GMT</pubDate>
    <dc:creator>Yannick_</dc:creator>
    <dc:date>2014-06-12T12:02:48Z</dc:date>
    <item>
      <title>Unable to grant access right to Active Directory Group</title>
      <link>https://connect.hyland.com/t5/nuxeo-forum/unable-to-grant-access-right-to-active-directory-group/m-p/318161#M5162</link>
      <description>&lt;P&gt;Hello,
I'm using nuxeo 5.9.3 on ubuntu server 12.04 and I configured the active directory authentication in Nuxeo.
I can log in with active directory account in Nuxeo without problems.
I can found my active directory group in Nuxeo but there's no members in it.
How can i fix this issue?&lt;/P&gt;
&lt;P&gt;Here's my default-ldap-group configuration and my userManagement extension point.&lt;/P&gt;
&lt;P&gt;Thanks for your time.&lt;/P&gt;
&lt;PRE&gt;&lt;CODE&gt; &amp;lt;extension target="org.nuxeo.ecm.directory.ldap.LDAPDirectoryFactory" point="directories"&amp;gt;

  &amp;lt;directory name="groupLdapDirectory"&amp;gt;

  &amp;lt;server&amp;gt;default&amp;lt;/server&amp;gt;

  &amp;lt;schema&amp;gt;group&amp;lt;/schema&amp;gt;
  &amp;lt;idField&amp;gt;groupname&amp;lt;/idField&amp;gt;
  &amp;lt;searchBaseDn&amp;gt;ou=xxx,dc=xxx,dc=xx&amp;lt;/searchBaseDn&amp;gt;
  &amp;lt;searchFilter&amp;gt;
    (objectclass=group)
  &amp;lt;/searchFilter&amp;gt;
  &amp;lt;searchScope&amp;gt;subtree&amp;lt;/searchScope&amp;gt;
  &amp;lt;readOnly&amp;gt;false&amp;lt;/readOnly&amp;gt;
  &amp;lt;cacheTimeout&amp;gt;3600&amp;lt;/cacheTimeout&amp;gt;
  &amp;lt;cacheMaxSize&amp;gt;1000&amp;lt;/cacheMaxSize&amp;gt;
  &amp;lt;creationBaseDn&amp;gt;ou=xxxx,dc=xxx,dc=xx&amp;lt;/creationBaseDn&amp;gt;
  &amp;lt;creationClass&amp;gt;top&amp;lt;/creationClass&amp;gt;
  &amp;lt;creationClass&amp;gt;group&amp;lt;/creationClass&amp;gt;
  &amp;lt;querySizeLimit&amp;gt;200&amp;lt;/querySizeLimit&amp;gt;
  &amp;lt;queryTimeLimit&amp;gt;0&amp;lt;/queryTimeLimit&amp;gt;
  &amp;lt;rdnAttribute&amp;gt;cn&amp;lt;/rdnAttribute&amp;gt;
  &amp;lt;fieldMapping name="groupname"&amp;gt;cn&amp;lt;/fieldMapping&amp;gt;

  &amp;lt;references&amp;gt;

    &amp;lt;ldapReference field="members" directory="userLdapDirectory" forceDnConsistencyCheck="false" staticAttributeId="uniqueMember" dynamicAttributeId="memberURL" /&amp;gt;
    &amp;lt;ldapReference field="subGroups" directory="groupLdapDirectory" forceDnConsistencyCheck="false" staticAttributeId="uniqueMember" dynamicAttributeId="memberURL" /&amp;gt;

    &amp;lt;inverseReference field="parentGroups" directory="groupLdapDirectory" dualReferenceField="subGroups" /&amp;gt;

    &amp;lt;ldapTreeReference field="directChildren" directory="unitDirectory" scope="onelevel" /&amp;gt;
    &amp;lt;ldapTreeReference field="children" directory="unitDirectory" scope="subtree" /&amp;gt;

  &amp;lt;/references&amp;gt;

 &amp;lt;/directory&amp;gt;
   &amp;lt;/extension&amp;gt;

    &amp;lt;extension target="org.nuxeo.ecm.platform.usermanager.UserService" point="userManager"&amp;gt;
    &amp;lt;userManager&amp;gt;
      &amp;lt;defaultAdministratorId&amp;gt;Administrateur&amp;lt;/defaultAdministratorId&amp;gt;
      &amp;lt;defaultGroup&amp;gt;members&amp;lt;/defaultGroup&amp;gt;
      &amp;lt;disableDefaultAdministratorsGroup&amp;gt;true&amp;lt;/disableDefaultAdministratorsGroup&amp;gt;
    &amp;lt;/userManager&amp;gt;
  &amp;lt;/extension&amp;gt;


&amp;lt;component name="org.nuxeo.ecm.platform.usermanager.VirtualGroups"&amp;gt;
         &amp;lt;require&amp;gt;org.nuxeo.ecm.platform.usermanager.UserManagerImpl&amp;lt;/require&amp;gt;
         &amp;lt;extension target="org.nuxeo.ecm.platform.usermanager.UserService" point="userManager"&amp;gt;

       &amp;lt;userManager class="org.nuxeo.ecm.platform.usermanager.UserManagerImpl"&amp;gt;
      &amp;lt;users&amp;gt;
        &amp;lt;directory&amp;gt;userLdapDirectory&amp;lt;/directory&amp;gt;
      &amp;lt;/users&amp;gt;
      &amp;lt;groups&amp;gt;
        &amp;lt;directory&amp;gt;groupLdapDirectory&amp;lt;/directory&amp;gt;
      &amp;lt;/groups&amp;gt;
    &amp;lt;/userManager&amp;gt;
  &amp;lt;/extension&amp;gt;
   &amp;lt;/component&amp;gt;
&lt;/CODE&gt;&lt;/PRE&gt;</description>
      <pubDate>Thu, 12 Jun 2014 07:15:49 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/nuxeo-forum/unable-to-grant-access-right-to-active-directory-group/m-p/318161#M5162</guid>
      <dc:creator>Yannick_</dc:creator>
      <dc:date>2014-06-12T07:15:49Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to grant access right to Active Directory Group</title>
      <link>https://connect.hyland.com/t5/nuxeo-forum/unable-to-grant-access-right-to-active-directory-group/m-p/318162#M5163</link>
      <description>&lt;P&gt;hello,&lt;/P&gt;
&lt;P&gt;the resolution of group members is done by the ldapReference tag: you need to check which field is used in a group entry to store the members. In your configuration, you indicate it is "uniqueMember", but for Active Directory, the attribute may be "member".&lt;/P&gt;
&lt;P&gt;Kind regards,&lt;/P&gt;
&lt;P&gt;Thierry&lt;/P&gt;</description>
      <pubDate>Thu, 12 Jun 2014 09:03:09 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/nuxeo-forum/unable-to-grant-access-right-to-active-directory-group/m-p/318162#M5163</guid>
      <dc:creator>Thierry_Martins</dc:creator>
      <dc:date>2014-06-12T09:03:09Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to grant access right to Active Directory Group</title>
      <link>https://connect.hyland.com/t5/nuxeo-forum/unable-to-grant-access-right-to-active-directory-group/m-p/318163#M5164</link>
      <description>&lt;P&gt;Thanks for your reply and your time.&lt;/P&gt;</description>
      <pubDate>Thu, 12 Jun 2014 12:02:48 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/nuxeo-forum/unable-to-grant-access-right-to-active-directory-group/m-p/318163#M5164</guid>
      <dc:creator>Yannick_</dc:creator>
      <dc:date>2014-06-12T12:02:48Z</dc:date>
    </item>
  </channel>
</rss>

