02-06-2009 10:21 AM
# This properties file brings together the common options for LDAP authentication rather than editing the bean definitions
# The LDAP context factory to use
# The URL to connect to the LDAP server
# The authentication mechanism to use
# The default principal to use (only used for LDAP sync)
# The password for the default principal (only used for LDAP sync)
# Escape commas entered by the user at bind time
# Useful when using simple authentication and the CN is part of the DN and contains commas
# Escape commas entered by the user when setting the authenticated user
# Useful when using simple authentication and the CN is part of the DN and contains commas, and the escaped \, is
# pulled in as part of an LDAP sync
# If this option is set to true it will break the default home folder provider as space names can not contain \
# This properties file is used to configure LDAP syncronisation
# The query to find the people to import
# The search base of the query to find people to import
# The attribute name on people objects found in LDAP to use as the uid in Alfresco
# The attribute on person objects in LDAP to map to the first name property in Alfresco
# The attribute on person objects in LDAP to map to the last name property in Alfresco
# The attribute on person objects in LDAP to map to the email property in Alfresco
# The attribute on person objects in LDAP to map to the organizational id property in Alfresco
# The default home folder provider to use for people created via LDAP import
# The query to find group objects
# The search base to use to find group objects
# The attribute on LDAP group objects to map to the gid property in Alfrecso
# The group type in LDAP
# The person type in LDAP
# The attribute in LDAP on group objects that defines the DN for its members
# The cron expression defining when people imports should take place
ldap.synchronisation.import.person.cron=0 0 * * * ?
# The cron expression defining when group imports should take place
ldap.synchronisation.import.group.cron=0 30 * * * ?
# Should all groups be cleared out at import time?
# - this is safe as groups are not used in Alfresco for other things (unlike person objects which you should never clear out during an import)
# - setting this to true means old group definitions will be tidied up.
<?xml version='1.0' encoding='UTF-8'?>
<!DOCTYPE beans PUBLIC '-//SPRING//DTD BEAN//EN' 'http://www.springframework.org/dtd/spring-beans.dtd'>
<bean id="authenticationDao" class="org.alfresco.repo.security.authentication.DefaultMutableAuthenticationDao" >
<property name="allowSetEnabled" value="true" />
<property name="allowGetEnabled" value="true" />
<property name="allowDeleteUser" value="true" />
<property name="allowCreateUser" value="true" />
<!– The authentication component. –>
<!– Use the passthru authentication component to authenticate using –>
<!– user accounts on one or more Windows servers. –>
<!– Properties that specify the server(s) to use for passthru –>
<!– authentication :- –>
<!– useLocalServer use the local server for authentication –>
<!– domain use domain controllers from the specified domain–>
<!– servers comma delimted list of server addresses or –>
<!– names –>
<bean id="authenticationComponent"
<property name="servers">
<property name="personService">
<ref bean="personService" />
<property name="nodeService">
<ref bean="nodeService" />
<property name="transactionService">
<ref bean="transactionComponent" />
<property name="guestAccess">
<alfresco-config area="file-servers">
<config evaluator="string-compare" condition="CIFS Server">
<serverEnable enabled="true"/>
<host name="ALFRESCO" domain="STARLOG"/>
<comment>Alfresco CIFS Server</comment>
<!– Set to the broadcast mask for the subnet –>
<!– Use Java socket based NetBIOS over TCP/IP and native SMB on linux –>
<tcpipSMB platforms="linux,solaris,macosx"/>
<netBIOSSMB platforms="linux,solaris,macosx"/>
<!– Can be mapped to non-privileged ports, then use firewall rules to forward
requests from the standard ports –>
<tcpipSMB port="1445" platforms="linux,solaris,macosx"/>
<netBIOSSMB sessionPort="1139" namePort="1137" datagramPort="1138" platforms="linux,solaris,macosx"/>
<hostAnnounce interval="5"/>
<!– Use Win32 NetBIOS interface on Windows –>
<Win32Announce interval="5"/>
<!– CIFS authentication –>
<authenticator type="alfresco">
<sessionDebug flags="Negotiate,Socket"/>
<config evaluator="string-compare" condition="FTP Server">
<serverEnable enabled="true"/>
<!– Run on a non-privileged port –>
<!– FTP authentication –>
<authenticator type="alfresco"/>
<!– <debug flags="File,Search,Error,Directory,Info,DataPort"/> –>
<config evaluator="string-compare" condition="NFS Server">
<serverEnable enabled="false"/>
<config evaluator="string-compare" condition="Filesystems">
<!– Alfresco repository access shared filesystem –>
<filesystem name="Alfresco">
<!– Add a URL file to each folder that links back to the web client –>
<!– Mark locked files as offline –>
<!– Desktop actions –>
<!– Uses a client-side application to trigger a server-side action –>
<!– Echo - displays a message echoed from the server –>
<!– URL - launches a URL via the Windows shell –>
<!– CmdLine - launches the Notepad application –>
<!– CheckInOut - checks files in/out, drag and drop files onto the application –>
<!– JavaScript - run a server-side script –>
<!– JavaScriptURL - server-side script that generates a URL to the folder using a ticket –>
<!– to avoid having to logon –>
<attributes>anyFiles, multiplePaths , allowNoParams</attributes>
<preprocess>confirm, copyToTarget</preprocess>
<accessControl default="Write">
<user name="admin" access="Write"/>
<address subnet="" mask="" access="Write"/>
<!– AVM virtualization view of all stores/versions for WCM –>
<!– virtual view can be any of the following: normal, site, staging, author, preview –>
<avmfilesystem name="AVM">
<virtualView stores="site,staging,author" />
<config evaluator="string-compare" condition="Filesystem Security">
<!– Domain mappings used for passthri authentication routing –>
<Domain name="ALFRESCO" subnet="" mask=""/>
<!– Custom share mapper when multi-tenancy is enabled –>
<shareMapper type="multi-tenant">
<globalAccessControl default="None">
<user name="admin" access="Write"/>
<address ip="" access="Write"/>
11:10:20,044 INFO [org.alfresco.repo.domain.schema.SchemaBootstrap] No changes were made to the schema.
11:10:30,712 INFO [org.alfresco.repo.admin.ConfigurationChecker] The Alfresco root data directory ('dir.root') is: /opt/Alfresco/alf_data
11:10:30,954 INFO [org.alfresco.repo.admin.patch.PatchExecuter] Checking for patches to apply …
11:10:31,475 INFO [org.alfresco.repo.admin.patch.PatchExecuter] No patches were required.
11:10:31,617 INFO [org.alfresco.repo.module.ModuleServiceImpl] Found 0 module(s).
11:10:31,782 DEBUG [org.alfresco.smb.protocol] Added desktop action CheckInOut
11:10:31,794 DEBUG [org.alfresco.smb.protocol] Added desktop action JavaScriptURL
11:10:31,893 INFO [org.alfresco.smb.protocol] CIFS server started
11:10:31,920 INFO [org.alfresco.smb.protocol] FTP server started
11:10:31,921 INFO [org.alfresco.smb.protocol] NFS server NOT started
11:10:32,212 WARN [org.alfresco.util.OpenOfficeConnectionTester] An initial OpenOffice connection could not be established.
11:10:32,530 INFO [org.alfresco.service.descriptor.DescriptorService] Alfresco JVM - v1.6.0_11-b03; maximum heap size 506.313MB
11:10:32,532 INFO [org.alfresco.service.descriptor.DescriptorService] Alfresco started (Labs): Current version 3.0.0 (Stable 1526) schema 1002 - Installed version 3.0.0 (Stable 1526) schema 1002
11:11:20,562 INFO [org.alfresco.web.site.FrameworkHelper] Successfully Initialized Web Framework
11:12:26,972 DEBUG [org.alfresco.passthru.auth] Authenticate user=alfresco via local credentials
11:12:26,973 DEBUG [org.alfresco.passthru.auth] Authenticate org.alfresco.repo.security.authentication.ntlm.NTLMLocalToken@3929c7: Username: alfresco; Password: [PROTECTED]; Authenticated: false; Details: null; Not granted any authorities via token
11:12:27,875 DEBUG [org.alfresco.passthru.auth] Authenticated token=org.alfresco.repo.security.authentication.ntlm.NTLMLocalToken@3929c7: Username: alfresco; Password: [PROTECTED]; Authenticated: true; Details: null; Granted Authorities: ROLE_AUTHENTICATED
11:12:41,170 DEBUG [org.alfresco.passthru.auth] Authenticate org.alfresco.repo.security.authentication.ntlm.NTLMPassthruToken@1aaa484: Username: null; Password: [PROTECTED]; Authenticated: false; Details: null; Not granted any authorities via token
11:12:41,405 DEBUG [org.alfresco.passthru.auth] Passthru stage 1 token org.alfresco.repo.security.authentication.ntlm.NTLMPassthruToken@1aaa484: Username: null; Password: [PROTECTED]; Authenticated: false; Details: mondomaine\AD,TCP/IP NetBIOS; Not granted any authorities
11:12:41,415 DEBUG [org.alfresco.smb.protocol.auth] Null CIFS logon allowed
11:12:41,443 DEBUG [org.alfresco.passthru.auth] Authenticate org.alfresco.repo.security.authentication.ntlm.NTLMPassthruToken@1aaa484: Username: cd; Password: [PROTECTED]; Authenticated: false; Details: mondomaine\AD,TCP/IP NetBIOS; Not granted any authorities via token
11:12:41,552 DEBUG [org.alfresco.smb.protocol.auth] Auth token net.sf.acegisecurity.providers.UsernamePasswordAuthenticationToken@15db116: Username: net.sf.acegisecurity.providers.dao.User@154d4a: Username: cd; Password: [PROTECTED]; Enabled: true; AccountNonExpired: true; credentialsNonExpired: true; AccountNonLocked: true; Granted Authorities: ROLE_AUTHENTICATED; Password: [PROTECTED]; Authenticated: true; Details: net.sf.acegisecurity.providers.dao.User@154d4a: Username: cd; Password: [PROTECTED]; Enabled: true; AccountNonExpired: true; credentialsNonExpired: true; AccountNonLocked: true; Granted Authorities: ROLE_AUTHENTICATED; Granted Authorities: ROLE_AUTHENTICATED
11:12:41,555 DEBUG [org.alfresco.smb.protocol.auth] Authenticated user cdsts=Allow via Passthru
02-06-2009 11:19 AM
<property name="servers">
<Domain name="DOMAINE" subnet="IP-SUBNET" mask="IP-MASK"/>
En espérant que ca vous aide !02-06-2009 12:42 PM
02-09-2009 04:05 AM
02-10-2009 11:18 AM
Find what you came for
We want to make your experience in Hyland Connect as valuable as possible, so we put together some helpful links.