We have a intermittent strange issue using cfldap to access user's active directory records. We use this on web resources secured with Windows Integrated Security in IIS. The ColdFusion code then uses the cgi.auth_user value to read the users ldap record and parses out the groups of which the user is a member. This information is then used to authorize certain users to access certain sections of our intranet site.
This all works as expected with the majority of the users. The trouble is that for four users, they are denied access to content, even though everything we can look at says they are members of the proper group. Can anybody provide suggestions on what places we should investigate this issue? What could be different about these users that prevent them from accessing resources when their neighbors and co-works can. Even in a couple of cases, a separate, new active directory account for the same user can access the content while what seems to be an identical account can not. TIA Ian ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~| Want to reach the ColdFusion community with something they want? Let them know on the House of Fusion mailing lists Archive: http://www.houseoffusion.com/groups/cf-talk/message.cfm/messageid:323592 Subscription: http://www.houseoffusion.com/groups/cf-talk/subscribe.cfm Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=11502.10531.4

