cancel
Showing results for 
Search instead for 
Did you mean: 

How to restrict user access in SSO kerberos auth

mirak
Champ on-the-rise
Champ on-the-rise

Hi,

I configured sso kerberos autentization and AD synchronization. The problem is that any existing user can log in to the platform and I only need to allow users from the ldap-ad configuration (according user/group synchronization query).

I tried to disable guest access, because at one point it was possible to log in to users who did not exist at all. But it didn't solve the problem, when I log in using SSO kerberos to a user who is not in alfresco (not synchronized from AD), the user is automatically created.

I'd like to allow only users who are synchronizing from AD to sign in.

Don't know how to do it?

1 ACCEPTED ANSWER

mirak
Champ on-the-rise
Champ on-the-rise

Ok, the property create.missing.people=false solved this problem. 

View answer in original post

1 REPLY 1

mirak
Champ on-the-rise
Champ on-the-rise

Ok, the property create.missing.people=false solved this problem.