I think the LDAP login module will do that mapping for you. I just want to make sure I understand your case. You have role with DN "cn=ffv1::01find customer::find customer,o=blackhawk". A lookup of this role should return an attribute "nsRole" that has the value "role01". If this is the case, I think this configuration should work:
| <module-option name="roleAttributeIsDN">true</module-option> | <module-option name="roleNameAttributeID">nsRole</module-option> | View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=3895926#3895926 Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=3895926 ------------------------------------------------------- SF.Net email is sponsored by: Tame your development challenges with Apache's Geronimo App Server. Download it for free - -and be entered to win a 42" plasma tv or your very own Sony(tm)PSP. Click here to play: http://sourceforge.net/geronimo.php _______________________________________________ JBoss-user mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/jboss-user
