cancel
Showing results for 
Search instead for 
Did you mean: 

Active Directory - Enhanced - Onbase authorizations / groups removed

Dung_Vu
Champ on-the-rise
Champ on-the-rise

We have built a test environment for Onbase EP5-21.1.6.1000 build. The original configuration was basic AD authentication. Our test Domain user account failed to login using NT authentication with an error that diagnosis recommends changing from Basic to enhanced AD authentication. after this change the AD account was able to authenticate however all of its Onbase groups are removed that it loses all authorizations

 

Does EP5 need AD enhanced authentication? If does not, how to let AD account to log in. ? 

if so, is there any way to stop sync AD group and Onbase group to preserve Onbase Authorization?  

2 REPLIES 2

Melissa_Foster
Star Collaborator
Star Collaborator

Yes, it required enhanced AD Authentication 😞   We are planning an OB17 to EP5 upgrade and I'm not ready for the manual clicks required for the conversion.  

https://community.hyland.com/blog/posts/50685-sun-setting-the-active-directory--basic-authentication...

 

https://community.hyland.com/gallery/items/50913-network-security-white-paper

 

And if you're considering IdP and have a lot of user groups:

 https://community.hyland.com/tskb/000015993-hyland-idp-http-error-431-error-when-attempting-to-authe...

 

Our campus can not use enhanced AD because it will sync AD group over Onbase group.  Can we configure for not syncing groups ? Using IDP we do not need the conversion to enhanced AD?     Thanks Melissa .