On Wed, Oct 29, 2014 at 4:15 PM, Whittaker, Geoffrey <
[email protected]> wrote:

> I realize that this is sub-optimal as now I have to use a separate bind
> account whose credentials are now in the configuration files, but I don’t
> see how to make the other method work short of reworking the 
> UpnSearchEntityResolver
> into a CnSearchEntityResolver.  I just don’t have time for that at the
> moment.
>

The default SearchEntryResolver has been updated to support arbitrary
filters.
See https://github.com/Jasig/cas/pull/655


>
>
> # Search filter used for configurations that require searching for DNs
>
> #ldap.authn.format=uid=%s,ou=Users,dc=example,dc=org
>
> ldap.authn.format=%[email protected]
>

Yeah, that's a typo. The format string is not a search filter.

--Daniel Fisher

-- 
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to