<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Unable to create users or Groups in Nuxeo when connected to Active Directory in Nuxeo Forum</title>
    <link>https://connect.hyland.com/t5/nuxeo-forum/unable-to-create-users-or-groups-in-nuxeo-when-connected-to/m-p/318441#M5442</link>
    <description>&lt;P&gt;I'm unable to create any new users or Groups from Nuxeo Admin Center once it's integrated with Active Directory. Here is the configuration I have: Please advise if I need to change any configurations below:&lt;/P&gt;
&lt;PRE&gt;&lt;CODE&gt;&amp;lt;component name="org.nuxeo.ecm.directory.ldap.storage.users"&amp;gt;
  &amp;lt;require&amp;gt;org.nuxeo.ecm.directory.ldap.LDAPDirectoryFactory&amp;lt;/require&amp;gt;
  &amp;lt;require&amp;gt;org.nuxeo.ecm.directory.sql.storage&amp;lt;/require&amp;gt;
  &amp;lt;extension target="org.nuxeo.ecm.directory.ldap.LDAPDirectoryFactory" point="servers"&amp;gt;
    &amp;lt;server name="default"&amp;gt;
      &amp;lt;ldapUrl&amp;gt;ldap://&amp;lt;IP&amp;gt;:389&amp;lt;/ldapUrl&amp;gt;
      &amp;lt;bindDn&amp;gt;cn=gituser,ou=CMS,ou=Applications,dc=dmlabs,dc=xyz,dc=com&amp;lt;/bindDn&amp;gt;
      &amp;lt;bindPassword&amp;gt;blahblah&amp;lt;/bindPassword&amp;gt;
    &amp;lt;/server&amp;gt;
  &amp;lt;/extension&amp;gt;

  &amp;lt;extension target="org.nuxeo.ecm.directory.ldap.LDAPDirectoryFactory" point="directories"&amp;gt;
    &amp;lt;directory name="userDirectory"&amp;gt;
      &amp;lt;server&amp;gt;default&amp;lt;/server&amp;gt;
      &amp;lt;schema&amp;gt;user&amp;lt;/schema&amp;gt;
      &amp;lt;idField&amp;gt;username&amp;lt;/idField&amp;gt;
      &amp;lt;passwordField&amp;gt;password&amp;lt;/passwordField&amp;gt;
      &amp;lt;searchBaseDn&amp;gt;OU=CMS,OU=Applications,DC=dmlabs,DC=xyz,DC=com&amp;lt;/searchBaseDn&amp;gt;
      &amp;lt;searchClass&amp;gt;person&amp;lt;/searchClass&amp;gt;
      &amp;lt;searchScope&amp;gt;onelevel&amp;lt;/searchScope&amp;gt;
      &amp;lt;substringMatchType&amp;gt;subany&amp;lt;/substringMatchType&amp;gt;
      &amp;lt;readOnly&amp;gt;false&amp;lt;/readOnly&amp;gt;
      &amp;lt;cacheTimeout&amp;gt;3600&amp;lt;/cacheTimeout&amp;gt;
      &amp;lt;cacheMaxSize&amp;gt;1000&amp;lt;/cacheMaxSize&amp;gt;
      &amp;lt;missingIdFieldCase&amp;gt;lower&amp;lt;/missingIdFieldCase&amp;gt;
      &amp;lt;querySizeLimit&amp;gt;200&amp;lt;/querySizeLimit&amp;gt;
      &amp;lt;queryTimeLimit&amp;gt;0&amp;lt;/queryTimeLimit&amp;gt;
      &amp;lt;creationBaseDn&amp;gt;OU=CMS,OU=Applications,DC=dmlabs,DC=xyz,DC=com&amp;lt;/creationBaseDn&amp;gt;
      &amp;lt;creationClass&amp;gt;top&amp;lt;/creationClass&amp;gt;
      &amp;lt;creationClass&amp;gt;person&amp;lt;/creationClass&amp;gt;
      &amp;lt;creationClass&amp;gt;organizationalPerson&amp;lt;/creationClass&amp;gt;
      &amp;lt;creationClass&amp;gt;inetOrgPerson&amp;lt;/creationClass&amp;gt;
      &amp;lt;rdnAttribute&amp;gt;sAMAccountName&amp;lt;/rdnAttribute&amp;gt;
      &amp;lt;fieldMapping name="username"&amp;gt;sAMAccountName&amp;lt;/fieldMapping&amp;gt;
      &amp;lt;fieldMapping name="password"&amp;gt;userPassword&amp;lt;/fieldMapping&amp;gt;
      &amp;lt;fieldMapping name="firstName"&amp;gt;givenName&amp;lt;/fieldMapping&amp;gt;
      &amp;lt;fieldMapping name="lastName"&amp;gt;sn&amp;lt;/fieldMapping&amp;gt;
      &amp;lt;fieldMapping name="company"&amp;gt;o&amp;lt;/fieldMapping&amp;gt;
      &amp;lt;fieldMapping name="email"&amp;gt;mail&amp;lt;/fieldMapping&amp;gt;
      &amp;lt;references&amp;gt;
        &amp;lt;inverseReference field="groups" directory="groupDirectory" dualReferenceField="members" /&amp;gt;
      &amp;lt;/references&amp;gt;
    &amp;lt;/directory&amp;gt;
    &amp;lt;directory name="groupDirectory"&amp;gt;
        &amp;lt;server&amp;gt;default&amp;lt;/server&amp;gt;
        &amp;lt;schema&amp;gt;group&amp;lt;/schema&amp;gt;
        &amp;lt;idField&amp;gt;groupname&amp;lt;/idField&amp;gt;
        &amp;lt;searchBaseDn&amp;gt;OU=CMS,OU=Applications,DC=dmlabs,DC=xyz,DC=com&amp;lt;/searchBaseDn&amp;gt;
        &amp;lt;searchFilter&amp;gt;((objectClass=group))&amp;lt;/searchFilter&amp;gt;
        &amp;lt;searchScope&amp;gt;subtree&amp;lt;/searchScope&amp;gt;
        &amp;lt;!--entryAdaptor class="org.nuxeo.ecm.directory.impl.WritePolicyEntryAdaptor"--&amp;gt;
    &amp;lt;readOnly&amp;gt;false&amp;lt;/readOnly&amp;gt;
        &amp;lt;cacheTimeout&amp;gt;3600&amp;lt;/cacheTimeout&amp;gt;
        &amp;lt;cacheMaxSize&amp;gt;2000&amp;lt;/cacheMaxSize&amp;gt;
        &amp;lt;creationBaseDn&amp;gt;OU=CMS,OU=Applications,DC=dmlabs,DC=xyz,DC=com&amp;lt;/creationBaseDn&amp;gt;
        &amp;lt;creationClass&amp;gt;top&amp;lt;/creationClass&amp;gt;
        &amp;lt;creationClass&amp;gt;groupOfUniqueNames&amp;lt;/creationClass&amp;gt;
        &amp;lt;rdnAttribute&amp;gt;sAMAccountName&amp;lt;/rdnAttribute&amp;gt;
        &amp;lt;querySizeLimit&amp;gt;500&amp;lt;/querySizeLimit&amp;gt;
        &amp;lt;queryTimeLimit&amp;gt;0&amp;lt;/queryTimeLimit&amp;gt;
        &amp;lt;fieldMapping name="groupname"&amp;gt;sAMAccountName&amp;lt;/fieldMapping&amp;gt;
        &amp;lt;references&amp;gt;
            &amp;lt;ldapReference directory="userDirectory" dynamicAttributeId="memberURL" field="members" forceDnConsistencyCheck="false" staticAttributeId="uniqueMember" staticAttributeIdIsDn="true"/&amp;gt;
            &amp;lt;ldapReference directory="groupDirectory" dynamicAttributeId="memberURL" field="subGroups" forceDnConsistencyCheck="false" staticAttributeId="uniqueMember"/&amp;gt;
            &amp;lt;inverseReference directory="groupDirectory" dualReferenceField="subGroups" field="parentGroups"/&amp;gt;
            &amp;lt;ldapTreeReference directory="groupDirectory" field="children" scope="onelevel"/&amp;gt;
            &amp;lt;inverseReference directory="groupDirectory" dualReferenceField="children" field="parents"/&amp;gt;
        &amp;lt;/references&amp;gt;
    &amp;lt;/directory&amp;gt;
  &amp;lt;/extension&amp;gt;
  &amp;lt;extension target="org.nuxeo.ecm.platform.usermanager.UserService" point="userManager"&amp;gt;
    &amp;lt;userManager&amp;gt;
      &amp;lt;defaultAdministratorId&amp;gt;cmsadmin&amp;lt;/defaultAdministratorId&amp;gt;
      &amp;lt;defaultGroup&amp;gt;CMSMembers&amp;lt;/defaultGroup&amp;gt;
      &amp;lt;administratorsGroup&amp;gt;CMSAdministrators&amp;lt;/administratorsGroup&amp;gt;
      &amp;lt;disableDefaultAdministratorsGroup&amp;gt;true&amp;lt;/disableDefaultAdministratorsGroup&amp;gt;
       &amp;lt;groups&amp;gt;
            &amp;lt;directory&amp;gt;groupDirectory&amp;lt;/directory&amp;gt;
            &amp;lt;membersField&amp;gt;members&amp;lt;/membersField&amp;gt;
            &amp;lt;groupLabelField&amp;gt;grouplabel&amp;lt;/groupLabelField&amp;gt;
            &amp;lt;subGroupsField&amp;gt;subgroups&amp;lt;/subGroupsField&amp;gt;
            &amp;lt;parentGroupsField&amp;gt;parentgroup&amp;lt;/parentGroupsField&amp;gt;
            &amp;lt;listingMode&amp;gt;search_only&amp;lt;/listingMode&amp;gt;
            &amp;lt;searchFields append="true"&amp;gt;
                &amp;lt;substringMatchSearchField&amp;gt;grouplabel&amp;lt;/substringMatchSearchField&amp;gt;
                &amp;lt;exactMatchSearchField&amp;gt;groupname&amp;lt;/exactMatchSearchField&amp;gt;
            &amp;lt;/searchFields&amp;gt;
        &amp;lt;/groups&amp;gt;
        &amp;lt;!--defaultGroup&amp;gt;members&amp;lt;/defaultGroup--&amp;gt;
        &amp;lt;groupSortField&amp;gt;groupname&amp;lt;/groupSortField&amp;gt;
    &amp;lt;/userManager&amp;gt;
  &amp;lt;/extension&amp;gt;

&amp;lt;/component&amp;gt;
&lt;/CODE&gt;&lt;/PRE&gt;</description>
    <pubDate>Tue, 10 Jun 2014 20:32:29 GMT</pubDate>
    <dc:creator>Kishore_Yendamu</dc:creator>
    <dc:date>2014-06-10T20:32:29Z</dc:date>
    <item>
      <title>Unable to create users or Groups in Nuxeo when connected to Active Directory</title>
      <link>https://connect.hyland.com/t5/nuxeo-forum/unable-to-create-users-or-groups-in-nuxeo-when-connected-to/m-p/318441#M5442</link>
      <description>&lt;P&gt;I'm unable to create any new users or Groups from Nuxeo Admin Center once it's integrated with Active Directory. Here is the configuration I have: Please advise if I need to change any configurations below:&lt;/P&gt;
&lt;PRE&gt;&lt;CODE&gt;&amp;lt;component name="org.nuxeo.ecm.directory.ldap.storage.users"&amp;gt;
  &amp;lt;require&amp;gt;org.nuxeo.ecm.directory.ldap.LDAPDirectoryFactory&amp;lt;/require&amp;gt;
  &amp;lt;require&amp;gt;org.nuxeo.ecm.directory.sql.storage&amp;lt;/require&amp;gt;
  &amp;lt;extension target="org.nuxeo.ecm.directory.ldap.LDAPDirectoryFactory" point="servers"&amp;gt;
    &amp;lt;server name="default"&amp;gt;
      &amp;lt;ldapUrl&amp;gt;ldap://&amp;lt;IP&amp;gt;:389&amp;lt;/ldapUrl&amp;gt;
      &amp;lt;bindDn&amp;gt;cn=gituser,ou=CMS,ou=Applications,dc=dmlabs,dc=xyz,dc=com&amp;lt;/bindDn&amp;gt;
      &amp;lt;bindPassword&amp;gt;blahblah&amp;lt;/bindPassword&amp;gt;
    &amp;lt;/server&amp;gt;
  &amp;lt;/extension&amp;gt;

  &amp;lt;extension target="org.nuxeo.ecm.directory.ldap.LDAPDirectoryFactory" point="directories"&amp;gt;
    &amp;lt;directory name="userDirectory"&amp;gt;
      &amp;lt;server&amp;gt;default&amp;lt;/server&amp;gt;
      &amp;lt;schema&amp;gt;user&amp;lt;/schema&amp;gt;
      &amp;lt;idField&amp;gt;username&amp;lt;/idField&amp;gt;
      &amp;lt;passwordField&amp;gt;password&amp;lt;/passwordField&amp;gt;
      &amp;lt;searchBaseDn&amp;gt;OU=CMS,OU=Applications,DC=dmlabs,DC=xyz,DC=com&amp;lt;/searchBaseDn&amp;gt;
      &amp;lt;searchClass&amp;gt;person&amp;lt;/searchClass&amp;gt;
      &amp;lt;searchScope&amp;gt;onelevel&amp;lt;/searchScope&amp;gt;
      &amp;lt;substringMatchType&amp;gt;subany&amp;lt;/substringMatchType&amp;gt;
      &amp;lt;readOnly&amp;gt;false&amp;lt;/readOnly&amp;gt;
      &amp;lt;cacheTimeout&amp;gt;3600&amp;lt;/cacheTimeout&amp;gt;
      &amp;lt;cacheMaxSize&amp;gt;1000&amp;lt;/cacheMaxSize&amp;gt;
      &amp;lt;missingIdFieldCase&amp;gt;lower&amp;lt;/missingIdFieldCase&amp;gt;
      &amp;lt;querySizeLimit&amp;gt;200&amp;lt;/querySizeLimit&amp;gt;
      &amp;lt;queryTimeLimit&amp;gt;0&amp;lt;/queryTimeLimit&amp;gt;
      &amp;lt;creationBaseDn&amp;gt;OU=CMS,OU=Applications,DC=dmlabs,DC=xyz,DC=com&amp;lt;/creationBaseDn&amp;gt;
      &amp;lt;creationClass&amp;gt;top&amp;lt;/creationClass&amp;gt;
      &amp;lt;creationClass&amp;gt;person&amp;lt;/creationClass&amp;gt;
      &amp;lt;creationClass&amp;gt;organizationalPerson&amp;lt;/creationClass&amp;gt;
      &amp;lt;creationClass&amp;gt;inetOrgPerson&amp;lt;/creationClass&amp;gt;
      &amp;lt;rdnAttribute&amp;gt;sAMAccountName&amp;lt;/rdnAttribute&amp;gt;
      &amp;lt;fieldMapping name="username"&amp;gt;sAMAccountName&amp;lt;/fieldMapping&amp;gt;
      &amp;lt;fieldMapping name="password"&amp;gt;userPassword&amp;lt;/fieldMapping&amp;gt;
      &amp;lt;fieldMapping name="firstName"&amp;gt;givenName&amp;lt;/fieldMapping&amp;gt;
      &amp;lt;fieldMapping name="lastName"&amp;gt;sn&amp;lt;/fieldMapping&amp;gt;
      &amp;lt;fieldMapping name="company"&amp;gt;o&amp;lt;/fieldMapping&amp;gt;
      &amp;lt;fieldMapping name="email"&amp;gt;mail&amp;lt;/fieldMapping&amp;gt;
      &amp;lt;references&amp;gt;
        &amp;lt;inverseReference field="groups" directory="groupDirectory" dualReferenceField="members" /&amp;gt;
      &amp;lt;/references&amp;gt;
    &amp;lt;/directory&amp;gt;
    &amp;lt;directory name="groupDirectory"&amp;gt;
        &amp;lt;server&amp;gt;default&amp;lt;/server&amp;gt;
        &amp;lt;schema&amp;gt;group&amp;lt;/schema&amp;gt;
        &amp;lt;idField&amp;gt;groupname&amp;lt;/idField&amp;gt;
        &amp;lt;searchBaseDn&amp;gt;OU=CMS,OU=Applications,DC=dmlabs,DC=xyz,DC=com&amp;lt;/searchBaseDn&amp;gt;
        &amp;lt;searchFilter&amp;gt;((objectClass=group))&amp;lt;/searchFilter&amp;gt;
        &amp;lt;searchScope&amp;gt;subtree&amp;lt;/searchScope&amp;gt;
        &amp;lt;!--entryAdaptor class="org.nuxeo.ecm.directory.impl.WritePolicyEntryAdaptor"--&amp;gt;
    &amp;lt;readOnly&amp;gt;false&amp;lt;/readOnly&amp;gt;
        &amp;lt;cacheTimeout&amp;gt;3600&amp;lt;/cacheTimeout&amp;gt;
        &amp;lt;cacheMaxSize&amp;gt;2000&amp;lt;/cacheMaxSize&amp;gt;
        &amp;lt;creationBaseDn&amp;gt;OU=CMS,OU=Applications,DC=dmlabs,DC=xyz,DC=com&amp;lt;/creationBaseDn&amp;gt;
        &amp;lt;creationClass&amp;gt;top&amp;lt;/creationClass&amp;gt;
        &amp;lt;creationClass&amp;gt;groupOfUniqueNames&amp;lt;/creationClass&amp;gt;
        &amp;lt;rdnAttribute&amp;gt;sAMAccountName&amp;lt;/rdnAttribute&amp;gt;
        &amp;lt;querySizeLimit&amp;gt;500&amp;lt;/querySizeLimit&amp;gt;
        &amp;lt;queryTimeLimit&amp;gt;0&amp;lt;/queryTimeLimit&amp;gt;
        &amp;lt;fieldMapping name="groupname"&amp;gt;sAMAccountName&amp;lt;/fieldMapping&amp;gt;
        &amp;lt;references&amp;gt;
            &amp;lt;ldapReference directory="userDirectory" dynamicAttributeId="memberURL" field="members" forceDnConsistencyCheck="false" staticAttributeId="uniqueMember" staticAttributeIdIsDn="true"/&amp;gt;
            &amp;lt;ldapReference directory="groupDirectory" dynamicAttributeId="memberURL" field="subGroups" forceDnConsistencyCheck="false" staticAttributeId="uniqueMember"/&amp;gt;
            &amp;lt;inverseReference directory="groupDirectory" dualReferenceField="subGroups" field="parentGroups"/&amp;gt;
            &amp;lt;ldapTreeReference directory="groupDirectory" field="children" scope="onelevel"/&amp;gt;
            &amp;lt;inverseReference directory="groupDirectory" dualReferenceField="children" field="parents"/&amp;gt;
        &amp;lt;/references&amp;gt;
    &amp;lt;/directory&amp;gt;
  &amp;lt;/extension&amp;gt;
  &amp;lt;extension target="org.nuxeo.ecm.platform.usermanager.UserService" point="userManager"&amp;gt;
    &amp;lt;userManager&amp;gt;
      &amp;lt;defaultAdministratorId&amp;gt;cmsadmin&amp;lt;/defaultAdministratorId&amp;gt;
      &amp;lt;defaultGroup&amp;gt;CMSMembers&amp;lt;/defaultGroup&amp;gt;
      &amp;lt;administratorsGroup&amp;gt;CMSAdministrators&amp;lt;/administratorsGroup&amp;gt;
      &amp;lt;disableDefaultAdministratorsGroup&amp;gt;true&amp;lt;/disableDefaultAdministratorsGroup&amp;gt;
       &amp;lt;groups&amp;gt;
            &amp;lt;directory&amp;gt;groupDirectory&amp;lt;/directory&amp;gt;
            &amp;lt;membersField&amp;gt;members&amp;lt;/membersField&amp;gt;
            &amp;lt;groupLabelField&amp;gt;grouplabel&amp;lt;/groupLabelField&amp;gt;
            &amp;lt;subGroupsField&amp;gt;subgroups&amp;lt;/subGroupsField&amp;gt;
            &amp;lt;parentGroupsField&amp;gt;parentgroup&amp;lt;/parentGroupsField&amp;gt;
            &amp;lt;listingMode&amp;gt;search_only&amp;lt;/listingMode&amp;gt;
            &amp;lt;searchFields append="true"&amp;gt;
                &amp;lt;substringMatchSearchField&amp;gt;grouplabel&amp;lt;/substringMatchSearchField&amp;gt;
                &amp;lt;exactMatchSearchField&amp;gt;groupname&amp;lt;/exactMatchSearchField&amp;gt;
            &amp;lt;/searchFields&amp;gt;
        &amp;lt;/groups&amp;gt;
        &amp;lt;!--defaultGroup&amp;gt;members&amp;lt;/defaultGroup--&amp;gt;
        &amp;lt;groupSortField&amp;gt;groupname&amp;lt;/groupSortField&amp;gt;
    &amp;lt;/userManager&amp;gt;
  &amp;lt;/extension&amp;gt;

&amp;lt;/component&amp;gt;
&lt;/CODE&gt;&lt;/PRE&gt;</description>
      <pubDate>Tue, 10 Jun 2014 20:32:29 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/nuxeo-forum/unable-to-create-users-or-groups-in-nuxeo-when-connected-to/m-p/318441#M5442</guid>
      <dc:creator>Kishore_Yendamu</dc:creator>
      <dc:date>2014-06-10T20:32:29Z</dc:date>
    </item>
  </channel>
</rss>

