Re: How does Non-Unicode AR Server handle AREA LDAP authentication having unicode characters in CN ?

2018-03-05 Thread LJ LongWing
> *From:* ARSList [mailto:arslist-boun...@arslist.org] *On Behalf Of *LJ > LongWing > *Sent:* Sunday, March 04, 2018 9:51 PM > *To:* ARSList > *Subject:* Re: How does Non-Unicode AR Server handle AREA LDAP > authentication having unicode characters in CN ? > > > > Ra

RE: How does Non-Unicode AR Server handle AREA LDAP authentication having unicode characters in CN ?

2018-03-04 Thread Narayanan, Radhika
, March 04, 2018 9:51 PM To: ARSList Subject: Re: How does Non-Unicode AR Server handle AREA LDAP authentication having unicode characters in CN ? Radhika, Ultimately the only thing that matters is the login name, so the CN in AD shouldn't matter, but apparently, everyone else is working

Re: How does Non-Unicode AR Server handle AREA LDAP authentication having unicode characters in CN ?

2018-03-04 Thread LJ LongWing
Radhika, Ultimately the only thing that matters is the login name, so the CN in AD shouldn't matter, but apparently, everyone else is working but the unicode ones aren't?...if that's the case you may be dealing with a defect in the AREA pluginunfortunately for you, the version that you are on

How does Non-Unicode AR Server handle AREA LDAP authentication having unicode characters in CN ?

2018-02-22 Thread Narayanan, Radhika
Hi, We’ve a non-unicode AR Server. Remedy Login Ids are in English only both on AD and AR Server. Where the Active Directory had First or Last Name with Unicode character such as Vytautas Morkūnas, the corresponding name will be held in ITSM CTM:People form as Vytautas Morknas (ARS can’t store

Re: SSL for LDAP

2016-11-28 Thread Axton
The error means that the JVM doesn't trust the issuing CA on the remote side (ldap server). You can get the CA path from the remote server using openssl: openssl s_client -connect ldap.server.com:636 That will give you the certs in pem format as well as the chain up to the root. Add the root CA

Re: SSL for LDAP

2016-11-10 Thread Carl Wilson
--- Kind Regards, Carl Wilson From: Action Request System discussion list(ARSList) [mailto:arslist@ARSLIST.ORG] On Behalf Of Fawver, Dustin Sent: 10 November 2016 00:19 To: arslist@ARSLIST.ORG Subject: SSL for LDAP ** Greetings! I have been trying to get

SSL for LDAP

2016-11-09 Thread Fawver, Dustin
Greetings! I have been trying to get AREA to use LDAP over SSL now. I followed the instructions over at https://docs.bmc.com/docs/display/public/brid91/Enabling+LDAP+plug-ins+for+SSL+connections+post-installation. The systems administrator instructed me some time ago to go to one of our

Re: AREA LDAP password in 9x

2016-08-30 Thread Brian Gillock
It's in the DB now, AR_System_Configuration_Settin is the name of the view/table. In arschema as, AR System Configuration Setting. On Thu, Aug 4, 2016 at 12:52 PM, William Rentfrow < wrentf...@stratacominc.com> wrote: > ** > > So you update the password in the centralized config - which is >

AREA LDAP password in 9x

2016-08-04 Thread William Rentfrow
So you update the password in the centralized config - which is finebut where is it actually stored now? It's not in ar.conf or anywhere obvious... William Rentfrow wrentf...@stratacominc.com Office: 715-204-3061 or 701-232-5697x25 Cell: 715-498-5056

Re: Turn off AREA LDAP Polling?

2016-03-19 Thread Sinclair, Keith
16 8:58 AM To: arslist@ARSLIST.ORG Subject: Turn off AREA LDAP Polling? If I recall correctly, there is a way to tell Remedy to not make periodic AD checks every so often with a user's account that signed into Remedy using AREA LDAP but for the life of me, I cannot remember how or where it's done. A

Re: Turn off AREA LDAP Polling?

2016-03-19 Thread Grooms, Frederick W
: Re: Turn off AREA LDAP Polling? ** Never mind. I found it. For those of you who are wondering - On the EA tab in the Server Information Configuration form, you'll see a box called "Need To Sync". If this is set to 0, Remedy won't periodically make AD checks. From: Sinclair,

Re: Turn off AREA LDAP Polling?

2016-03-19 Thread Danny Kellett
a way to tell Remedy to not make > periodic AD checks every so often with a user’s account that signed > into Remedy using AREA LDAP but for the life of me, I cannot remember > how or where it’s done. > > Anyone know where the setting is at? > > *Keith Sinclair* > Remed

Turn off AREA LDAP Polling?

2016-03-19 Thread Sinclair, Keith
If I recall correctly, there is a way to tell Remedy to not make periodic AD checks every so often with a user's account that signed into Remedy using AREA LDAP but for the life of me, I cannot remember how or where it's done. Anyone know where the setting is at? Keith Sinclair Remedy

Does the LDAP authentication service for remedy 7.1, running on SunOS 5.9 support SHA2 encryption?

2015-01-20 Thread MalviyaSaurabh
Hi All, This is a query related to AREA LDAP authentication for ARS 7.1. Would like to know experts' opinions. Our LDAP servers are currently using SHA1 and soon they are going to be using SHA2, hence want to know if it is possible in remedy to have AREA LDAP configuration supporting SHA2

Integrating AR with Sun Microsystems LDAP Exchange server

2015-01-05 Thread onkar shinde
Hello Experts, I am using AR/ITSM 8.1 SP1. And I am trying to integrate this with Sun Microsystem LDAP exchange server. I am not able to get this done due to LDAP Error Code-12 (LDAP: error code 12 - Unavailable Critical Extension) Has anyone tired this earlier specific to Sun Microsystems

Re: Getting plugin LDAP error 12 while integrating a LDAP server

2014-12-22 Thread onkar shinde
Hi Kelvin, Yes, I have also configured the AREA LDAP configuration, but in my case AREA is also not working. During AREA logging in by LDAP user, I get following error 05:19:47,492 ERROR [pool-4-thread-14] com.bmc.arsys.pluginsvr.plugins.ARPluginContext (?:?) - AREA.LDAPLdap Authentication failed

Re: Getting plugin LDAP error 12 while integrating a LDAP server

2014-12-22 Thread Kevin Eldridge
Hello Onkar, If you are able to make the connection using port 389, then making the modifications to your connection should not be that difficult. I never had much luck using the LDP LDAP browser. We had the most success using Softerra LDAP Browser 4.5 (http://www.ldapadministrator.com

Re: Getting plugin LDAP error 12 while integrating a LDAP server

2014-12-16 Thread Kevin Eldridge
Hello Oscar, I forgot to mention that we had to enable the AREA LDAP Configuration to get this to work properly. I was unable to access the ARDBC from Dev Studio until after I did this. I copied most of the settings from the ARDBC configuration information to set this up. Once I did

Re: Getting plugin LDAP error 12 while integrating a LDAP server

2014-12-15 Thread onkar shinde
-15 03:41:26,846 ERROR [pool-4-thread-22] com.bmc.arsys.pluginsvr.plugins.a (?:?) - getListForms() FAILs in plugin: ARSYS.ARDBC.LDAP ERROR (3377): The LDAP operation has failed; javax.naming.OperationNotSupportedException: [LDAP: error code 12 - Unavailable Critical Extension]; remaining name 'ou=ou

Getting plugin LDAP error 12 while integrating a LDAP server

2014-12-13 Thread onkar shinde
Hello list, I have been trying to integrate ar server 8.1sp1 with one customers Ldap server. I have tested connectivity with LDP.exe first with the provided LDAP hostname and bind username/password. With this all information i am able to connect and bind successfully. One thing about to mention

Re: Getting plugin LDAP error 12 while integrating a LDAP server

2014-12-13 Thread Kevin Eldridge
Hello Onkar, I ran into a similar issue when connecting to a Red Hat LDAP server, using UID, and not a MS Exchange server, since that is what the sAMAccountName is used for. I used the following settings to make the ARDBC LDAP connection: Host Name: ldap.host.com Port Number: 636 Bind User

Re: Getting plugin LDAP error 12 while integrating a LDAP server

2014-12-13 Thread onkar shinde
Hey kevin, Many Thanks for your quick reply. Yes i am actually going to use SSL, i have already created cert.db files using certutil... But i thought 1st to give a shot without SSL, as the given Ldap server is a test server, enabled on both 389 and 636. So coming back to configuration, below

Re: AREA LDAP and SSL3.0/POODLE

2014-10-27 Thread Brian Gillock
Slightly OT, AREA LDAP on 8.1 it's now a Java plugin so for SSL you'll need a Java Keystore versus a Certificate Store. On Thu, Oct 23, 2014 at 12:57 PM, Sinclair, Keith ksincl...@shoppertrak.com wrote: ** Apologies if this has been answered and/or brought up before. Does ARS 8.1 AREA

AREA LDAP and SSL3.0/POODLE

2014-10-23 Thread Sinclair, Keith
Apologies if this has been answered and/or brought up before. Does ARS 8.1 AREA LDAP use SSL3.0 when making calls to Active Directory? I ask because the infrastructure guys are rolling out a series of POODLE fixes and I need to know if this will break anything. Thanks, Keith Sinclair Remedy

ARDBC LDAP Vendor Form Question

2014-09-26 Thread Arner, Todd
We are configuring the ARDBC LDAP to pull information from Active Directory. We are trying to setup a vendor form to access the data and for the most part this seems to be working. We are running into one issue that I need some help figuring out. We create the vendor form by selecting

Re: ARDBC LDAP Vendor Form Question

2014-09-26 Thread LJ LongWing
at 7:55 AM, Arner, Todd tar...@glhec.org wrote: ** We are configuring the ARDBC LDAP to pull information from Active Directory. We are trying to setup a vendor form to access the data and for the most part this seems to be working. We are running into one issue that I need some help figuring

Re: ARDBC LDAP Vendor Form Question

2014-09-26 Thread Arner, Todd
@ARSLIST.ORG Subject: Re: ARDBC LDAP Vendor Form Question ** Todd, I have experienced the same, however, I have found that as long as I know the attribute name I want, I can create the appropriate field, and in the vendor field properties for that field, I just plug in the correct 'attribute

Re: ARDBC LDAP Vendor Form Question

2014-09-26 Thread Jason Miller
It will be interesting to see what you find out from Support. This is one reason it is handy to have an LDAP browser http://www.ldapbrowser.com/info_softerra-ldap-browser.htm. Jason On Fri, Sep 26, 2014 at 7:21 AM, Arner, Todd tar...@glhec.org wrote: ** Thanks LJ! That worked. I also have

Re: Issue with LDAP

2014-09-19 Thread MalviyaSaurabh
Hi All, Sorry for coming back to this thread after a long time. Resolved the issue by doing below. I employed using jExplorer utility for checking the connectivity to LDAP AD. Once the connection was made over jXplorer, i used the same credentials and setting and updated ARDBC and AREA config

Issue with LDAP

2014-06-25 Thread MalviyaSaurabh
Hi All, My environment is or ARS 7.1 on Solaris with DB on Sybase. Currently our system is using both AREA LAP (for authenticating users) and ARDBC LDAP (for fetching user details). Our LDAP host is soon to be decommissioned and replaced with a new one. I have modified ARDBC Configuration form

Re: Issue with LDAP

2014-06-25 Thread Walters, Mark
If it's ARDBC related check the Vendor Information tab under Form Properties in the Admin tool for the vendor form. The LDAP connect string is in there and needs to be changed. Mark -Original Message- From: Action Request System discussion list(ARSList) [mailto:arslist@ARSLIST.ORG

Re: Issue with LDAP

2014-06-25 Thread Karthik
did you restart ARS after making the updates? On 25 June 2014 12:52, Walters, Mark mark_walt...@bmc.com wrote: If it's ARDBC related check the Vendor Information tab under Form Properties in the Admin tool for the vendor form. The LDAP connect string is in there and needs to be changed

Re: Issue with LDAP

2014-06-25 Thread MalviyaSaurabh
probably got auto-encrypted and I could see the encrypted password in ar.conf). Is this the correct way of modifying ARDBC config or should i provide the un-encypted in ar.conf. I would like to know even after modifying the ARDBC configuration with the new LDAP server details, why I am seeing the old

Re: Issue with LDAP

2014-06-25 Thread MalviyaSaurabh
Yes i did restart the services. Regards, Saurabh -- View this message in context: http://ars-action-request-system.1.n7.nabble.com/Issue-with-LDAP-tp117574p117578.html Sent from the ARS (Action Request System) mailing list archive at Nabble.com

Re: Issue with LDAP

2014-06-25 Thread MalviyaSaurabh
hi All, Would really appreciate any help in this regards. Regards, Saurabh -- View this message in context: http://ars-action-request-system.1093659.n2.nabble.com/Issue-with-LDAP-tp7597202p7597221.html Sent from the ARS (Action Request System) mailing list archive at Nabble.com

Re: LDAP

2014-06-13 Thread rajesh singh
discussion list(ARSList) [mailto: arslist@ARSLIST.ORG] On Behalf Of Rajesh Singh Sent: Thursday, June 12, 2014 1:45 PM To: arslist@ARSLIST.ORG Subject: LDAP Hi Team, I am new to the remedy , i want to know something about LDAP configuration. most of the time when I already logged in to the system

LDAP

2014-06-12 Thread Rajesh Singh
Hi Team, I am new to the remedy , i want to know something about LDAP configuration. most of the time when I already logged in to the system , meanwhile when I am trying to log in to any other server my account get locked. I have to unlock my account after that only i can able to login

Re: LDAP

2014-06-12 Thread Grooms, Frederick W
Do you have any servers set up with a local password? Fred -Original Message- From: Action Request System discussion list(ARSList) [mailto:arslist@ARSLIST.ORG] On Behalf Of Rajesh Singh Sent: Thursday, June 12, 2014 1:45 PM To: arslist@ARSLIST.ORG Subject: LDAP Hi Team, I am new

Re: LDAP integration - ARDBC Configuration

2014-03-19 Thread Joe D'Souza
You are right in your PS notes.. The available list of Vendor Tables you see there are just a subset of actual list of tables you would actually see in a LDAP browser. I am not sure how the plugin populates that subset, but it is not the complete list - not even close according to a LDAP

Re: LDAP integration - ARDBC Configuration

2014-03-18 Thread Joe D'Souza
Can you browse the Remedy group using ldap.exe? This should be pretty straight forward. Once you get the search path using any standard ldap browser and are able to browse the Remedy group, copy that search path to create your LDAP Vendor table. Joe _ From: Action Request

Re: LDAP integration - ARDBC Configuration

2014-03-18 Thread Grooms, Frederick W
is individual people records not groups i.e. ldap://mail.mydomain.com/DC=mail,DC=mydomain,DC=com??sub?(objectclass=group) Fred P.S. I always thought the Available Vendor Tables showed the ones that have been used in other Vendor forms not a list of all possible choices for LDAP

Re: Company Access issue for User through LDAP

2014-03-08 Thread Sumit Vasudev
LDAP. All the people have Unrestricted Access selected through the filter which is sending records from Staging Form to People Form. But when logged in through that people profile, User didn't have access to any company. When I deselect the Unrestricted Access check box from People form

Re: Company Access issue for User through LDAP

2014-03-07 Thread Roney Samuel Varghese.
...@gmail.com wrote: Hi Experts, I am facing one issue with People records. Records are created in People form through LDAP. All the people have Unrestricted Access selected through the filter which is sending records from Staging Form to People Form. But when logged in through that people

Company Access issue for User through LDAP

2014-03-06 Thread Sumit Vasudev
Hi Experts, I am facing one issue with People records. Records are created in People form through LDAP. All the people have Unrestricted Access selected through the filter which is sending records from Staging Form to People Form. But when logged in through that people profile, User didn't

Re: Remedy AR Server and LDAP

2014-02-28 Thread Blairing
Chris, The LDAP authentication runs as a C-plugin, at least up through 7.6.x, so the error messages will be found in the arplugin.log file, assuming you have enabled it. What you get back from LDAP depends on the LDAP implementation. Sometimes it is a plain text message such as bad password

Remedy AR Server and LDAP

2014-02-27 Thread Pruitt, Christopher (Bank of America Account)
Hello All, Has ever heard of a way to capture specific LDAP error code/return codes to display different messages? I don't think the different LDAP errors are controlled by any specific code we have control over and as far as I understand it the BMC Remedy engine uses a Java plugin

Re: Remedy AR Server and LDAP

2014-02-27 Thread Walters, Mark
If you enable plugin logging for the appropriate plugin server that is hosting your LDAP plugin you should see the error codes but I don't think they're passed back to the server. The only codes returned are login successful, failed and unknown user. The 623 can result from both internal

Re: Remedy AR Server and LDAP

2014-02-27 Thread Sandeep Pandey
Hi, Looks like the LDAP user credential configured in AREA LDAP configuration form has been locked. Check the user configured in AREA LDAP form in AD and unlock. After that changed password need to be change in AREA LDAP form as well. Hope this will help! Regards, Sandeep Pandey On Thu, Feb 27

AREA LDAP SSL

2014-02-10 Thread Daniel Pritchard
We are running ARS 7.6.04 SP2 on a Windows 2008 Server. Our LDAP servers were changed to require SSL connections to LDAP yesterday, without any warning. Our remedy servers will no longer let users in. I need to enable SSL in LDAP but am having trouble finding out how to create

Re: AREA LDAP SSL

2014-02-10 Thread Karthik
Dan, check this link https://kb.bmc.com/infocenter/index?page=contentid=S%3AKA319087 - Karthik -- Forwarded message -- From: Daniel Pritchard daniel.b.pritch...@gmail.com Date: 10 February 2014 15:05 Subject: AREA LDAP SSL To: arslist@arslist.org We are running ARS 7.6.04

Re: AREA LDAP SSL

2014-02-10 Thread munesh konda
Hello Dan, Please refer BMC 7.6.04 Integration document page 402, About certificate databases: AR System uses the Mozilla C-LDAP libraries to support LDAP plug-ins and remote authentication. These libraries enable LDAP plug-ins to use NSS to establish Secure Sockets Layer (SSL) connections

Re: AREA LDAP SSL

2014-02-10 Thread Daniel Pritchard
Thanks for the help. I finally got the Mozilla tools downloaded and installed and created the cert8.db file and it works ___ UNSUBSCRIBE or access ARSlist Archives at www.arslist.org Where the Answers Are, and have been

Re: AREA LDAP SSL

2014-02-10 Thread Miller, Karl
discussion list(ARSList) [mailto:arslist@ARSLIST.ORG] On Behalf Of Daniel Pritchard Sent: Monday, February 10, 2014 4:36 AM To: arslist@ARSLIST.ORG Subject: AREA LDAP SSL We are running ARS 7.6.04 SP2 on a Windows 2008 Server. Our LDAP servers were changed to require SSL connections to LDAP yesterday

Re: BMC Mobility and LDAP Authentication

2013-12-17 Thread Pratik Nahata
Shawn How is LDAP integrated with the AR System - AREA or SSO. If you are using AREA it is supported. ___ UNSUBSCRIBE or access ARSlist Archives at www.arslist.org Where the Answers Are, and have been for 20 years

Re: BMC Mobility and LDAP Authentication

2013-12-17 Thread Pierson, Shawn
) [mailto:arslist@ARSLIST.ORG] On Behalf Of Pratik Nahata Sent: Tuesday, December 17, 2013 2:46 AM To: arslist@ARSLIST.ORG Subject: Re: BMC Mobility and LDAP Authentication Shawn How is LDAP integrated with the AR System - AREA or SSO. If you are using AREA it is supported

BMC Mobility and LDAP Authentication

2013-12-16 Thread Pierson, Shawn
hardcoded passwords, but it doesn't seem to authenticate via LDAP against Active Directory. We're going to open a ticket with BMC, but I wanted to check here as well. Do any of you know what would be required to get Mobility working with LDAP enabled accounts? Thanks, Shawn Pierson Remedy Developer

Copy AREA LDAP entries

2013-12-05 Thread Chad Wilhelm
Hello, Wondering if anyone has successfully copied AREA LDAP entries from one ARS to another. We have several entries so exporting would save time, but I was told this had to be done manually through AREA LDAP Configuration. I was able to export entries in arx format from Configuration ARDBC

Re: Copy AREA LDAP entries

2013-12-05 Thread LJ LongWing
/arx method you are describing. On Thu, Dec 5, 2013 at 6:40 AM, Chad Wilhelm chad.wilh...@caretech.comwrote: ** Hello, Wondering if anyone has successfully copied AREA LDAP entries from one ARS to another. We have several entries so exporting would save time, but I was told this had

Re: Copy AREA LDAP entries

2013-12-05 Thread Chad Wilhelm
I noticed when I imported the LDAP entries they created in ar.cfg automatically. I will give your method a try. Thanks LJ. Chad Wilhelm CareTech Solutions [cid:image001.gif@01CEF1A1.A35B4760]http://www.caretech.com/ Helping extraordinary people do extraordinary things Best in KLAS Partial

Remedy Upgrade to 8 - LDAP Integration - sAMAccountName

2013-11-08 Thread BradRemedy
and configured the LDAP integration exactly the same way as our current live server. However, when we do a search on our live system (running 7.5 patch 003) on the vendor form, we get a result in the 'Request ID' field of 'johns'. The same searchon the version 8 system however, we are getting back

Re: Remedy Upgrade to 8 - LDAP Integration - sAMAccountName

2013-11-08 Thread LJ LongWing
Brad, One thing you may be experiencing is with the change from C LDAP plugin to Java LDAP Plugin, one thing you could try is to disable the Java one, re-implement the C one, and see if the problem goes away...if it does, obviously log a bug on the Java version with BMC. If the problem remains

Re: LDAP Authentication Case Sensitivity

2013-09-05 Thread Longwing, Lj
at least. On Thu, Sep 5, 2013 at 11:16 AM, Frank Caruso caruso.fr...@gmail.comwrote: ITSM 764 sp2; RHEL, Oracle, Weblogic Using AREALdap for authentication. From the web the user types in their network ID and we match against the sAMAccountName in LDAP. The ID is stored in AD in all upper

LDAP Authentication Case Sensitivity

2013-09-05 Thread Frank Caruso
ITSM 764 sp2; RHEL, Oracle, Weblogic Using AREALdap for authentication. From the web the user types in their network ID and we match against the sAMAccountName in LDAP. The ID is stored in AD in all upper case letters; at least that is what I thought. Come to find out the ID is stored in mixed

Re: LDAP Authentication Case Sensitivity

2013-09-05 Thread Frank Caruso
Arg!!!I asked the user several times if their account was locked and then said no, but it was! That was the issue. Once unlocked they could login and AD authenticate. Thank you all for your help! Frank Caruso

Re: LDAP Authentication Case Sensitivity

2013-09-05 Thread Grooms, Frederick W
= this.value.toUpperCase(); Fred -Original Message- From: Action Request System discussion list(ARSList) [mailto:arslist@ARSLIST.ORG] On Behalf Of Rjust Sent: Thursday, September 05, 2013 2:43 PM To: arslist@ARSLIST.ORG Subject: Re: LDAP Authentication Case Sensitivity The issue is the login

Re: LDAP Authentication Case Sensitivity

2013-09-05 Thread Pierson, Shawn
I've had similar issues. What I did was 1) change my LDAP ARDBC integration to do a lower() function on the AD attributes (such as cn) that stored the login name when I pulled it in to Remedy, and 2) customized the login.jsp page to automatically set the values in the Login Name field

Re: LDAP Authentication Case Sensitivity

2013-09-05 Thread Rjust
The issue is the login on the User form must be the same as the login that the user typed into the login screen. Sent from my iPhone On Sep 5, 2013, at 3:40 PM, Frank Caruso caruso.fr...@gmail.com wrote: So if I can do an ldapsearch and find the ID using any format, then the issue is

Re: LDAP Authentication Case Sensitivity

2013-09-05 Thread Longwing, Lj
their fault for not saying yes, or your fault for believing them? :D On Thu, Sep 5, 2013 at 2:00 PM, Frank Caruso caruso.fr...@gmail.com wrote: Arg!!!I asked the user several times if their account was locked and then said no, but it was! That was the issue. Once unlocked they could

Re: LDAP Authentication Case Sensitivity

2013-09-05 Thread Frank Caruso
So if I can do an ldapsearch and find the ID using any format, then the issue is probably not the ID being in mixed case letters. ___ UNSUBSCRIBE or access ARSlist Archives at www.arslist.org Where the Answers Are, and

Re: LDAP Authentication Case Sensitivity

2013-09-05 Thread Longwing, Lj
that's my thought. On Thu, Sep 5, 2013 at 1:40 PM, Frank Caruso caruso.fr...@gmail.com wrote: So if I can do an ldapsearch and find the ID using any format, then the issue is probably not the ID being in mixed case letters.

Re: AREA LDAP 8.0 Configuration Issue

2013-04-04 Thread L G Robinson
groups) which you need to use, make sure in AREA LDAP configuration form, in the License Mask and in the Write license (under Defaults and Mapping attributes to user information), you don't have any value mentioned over there. If it is blank, it is going to pick the licenses from User form, and you

AREA LDAP 8.0 Configuration Issue

2013-03-28 Thread Abdullah Baytops
Could anyone provide any assistance with a problem that we are having in which we have successfully configured our AR users to login using their LDAP password but when they go into Remedy to work a ticket it tells them they have no right license. The users are in the right groups if I turn

Re: AREA LDAP 8.0 Configuration Issue

2013-03-28 Thread Smerz, Christian
Subject: AREA LDAP 8.0 Configuration Issue ** Could anyone provide any assistance with a problem that we are having in which we have successfully configured our AR users to login using their LDAP password but when they go into Remedy to work a ticket it tells them they have no right license

Re: AREA LDAP 8.0 Configuration Issue

2013-03-28 Thread Abdullah Baytops
The case is all lowercase on both the AR System and LDAP server. I was wondering could it be the form that has the Write License area on the LDAP form? Are there specific values that should be included in that area. V/R Abdul Baytops From: Action Request

Re: AREA LDAP 8.0 Configuration Issue

2013-03-28 Thread Andrew Belis
Under Configuration tab do you have Allow Guest Users enabled by chance? What are your settings for Authenticate Unregistered Users under EA tab as well as the Authentication Chaining Mode set to? ___ UNSUBSCRIBE or

Re: AREA LDAP 8.0 Configuration Issue

2013-03-28 Thread Abdullah Baytops
] on behalf of Andrew Belis [andrew.be...@lmco.com] Sent: Thursday, March 28, 2013 4:33 PM To: arslist@ARSLIST.ORG Subject: Re: AREA LDAP 8.0 Configuration Issue Under Configuration tab do you have Allow Guest Users enabled by chance? What are your settings for Authenticate Unregistered Users under EA tab

Re: AREA LDAP 8.0 Configuration Issue

2013-03-28 Thread Kapil Banwari
If you are using CRBP(Cross Ref Blank password)= True, and you have mainly AR groups (not specific AD groups) which you need to use, make sure in AREA LDAP configuration form, in the License Mask and in the Write license (under Defaults and Mapping attributes to user information), you don't have

Re: Error while getting records from LDAP

2013-03-27 Thread rajkiran Alle
We are using 7.6.04 on windows. When i am trying to retrieve specific folder(table)in a Active Directory tree i am getting records but when i changed the Table name in Vendor form to top of the tree its throwing the following error. So i am guessing vendor form can only access only one table

Error while getting records from LDAP

2013-03-26 Thread rajkiran Alle
HI I am working on a task to sync LDAP records with People form. So in that process i created a Vendor form to retrieve records from LDAP table and its throwing me following error while doing search for records but when i search for single record its retrieving. I have gone through the Error

Re: Error while getting records from LDAP

2013-03-26 Thread vaibhav wadekar
whether correct server is configured for the plugin to use. Hope this helps. Regards/Vaibhav Regards/Vaibhav On Tue, Mar 26, 2013 at 1:49 PM, rajkiran Alle rajkiran...@yahoo.comwrote: HI I am working on a task to sync LDAP records with People form. So in that process i created a Vendor

AR System 8.1: Why is the BMC AREA LDAP plugin not working?

2013-03-15 Thread John Baker
Hello When installing AR System 8.1, you may expect to be able to carry on using the BMC AREA LDAP plugin. It appears BMC have switched on the AtriumSSO AREA plugin by default, and would prefer you ran this product to achieve what the AREA LDAP plugin does without the overhead of extra

Re: AR System 8.1: Why is the BMC AREA LDAP plugin not working?

2013-03-15 Thread Curtis Gallant
Hi John, In 8.1 the default LDAP plugins are based on Java plugins but they are not the AtriumSSO ones. What you are basically doing here is disabling the newer Java plugin for AREA so that it falls back to the C plugin. The java plugin is actually arealdapplugin81_build001.jar which

AR System 8.1: Why is the BMC AREA LDAP plugin not working?

2013-03-15 Thread John Baker
Curt Yes, it makes perfect sense to move everything over to Java plugins on the Java plugin server. But I guess if one has been staring at the arplugin log for a decade, and has become accustomed to the C plugin, it could be confusing to look elsewhere. I also agree that it's better to look

Re: SSO / AREA LDAP question

2013-03-14 Thread Yogesh Ketkar
on 2 ends, the Midtier end and the ARServer end. AR Server (either form based or AREA LDAP based) needs username/password combination for authentication by default. You can have some chaining setups where some users will get authenticated against Form and other using LDAP which people typically do

Re: SSO / AREA LDAP question

2013-03-14 Thread Lotz, David
] On Behalf Of Yogesh Ketkar Sent: Thursday, March 14, 2013 12:43 PM To: arslist@ARSLIST.ORG Subject: Re: SSO / AREA LDAP question ** Hello David, As it was explained to me and through reading the SSO integration white paper capturing the user ID should be all that is needed to get the user

Re: SSO / AREA LDAP question

2013-03-14 Thread Roney Samuel Varghese.
The Bmc OOTB SSO Plugin is very easy to break since it only depends on http header authentication. It has nothing to do with LDAP or AD. the scenario changes if you use the basic SSO with site minder or an external authentication plugin with a hub. The best way you can start troubleshooting

SSO / AREA LDAP question

2013-03-13 Thread Lotz, David
/* Wed Mar 13 2013 09:22:41.1950 */ARSYS.AREA.LDAP FINEST AREAVerifyLoginCallback PLGN TID: 004912 RPC ID: 000561 Queue: AREA Client-RPC: 390695 /* Wed Mar 13 2013 09:22:41.1950 */ARSYS.AREA.LDAP FINER Connecting via SSL(host=FQDN for our ldap server port=636, certPath=c:\ldap_certs

AREA LDAP Configuration (Multiple AD Servers)

2013-03-05 Thread Nathan Brandt
If we specify multiple AD Servers in AREA LDAP configuration how does authentication works? Does ARS try authenticating the user in the order they appear in the UI? Also is authentication tried out till at least one AD server authenticates the user successfully? ~Nathan

Re: AREA LDAP Configuration (Multiple AD Servers)

2013-03-05 Thread Carl Wilson
] On Behalf Of Nathan Brandt Sent: 05 March 2013 10:51 To: arslist@ARSLIST.ORG Subject: AREA LDAP Configuration (Multiple AD Servers) ** If we specify multiple AD Servers in AREA LDAP configuration how does authentication works? Does ARS try authenticating the user in the order they appear in the UI

AREA LDAP Configuration (Multiple AD Servers)

2013-03-05 Thread John Baker
The standard deployment of multiple AREA LDAP plugins is fine if the LDAPs all sit within one organisation. It's not a secure solution for a multi-service provider who may configure an instance of AREA LDAP for multiple customers, because it means username/passwords for organisation X are being

AREA LDAP

2013-01-28 Thread John Baker
Well, it's ultimately stored in the ar.cfg file but you need to alter it through the AREA LDAP and ARDBC configuration forms, as the password is encrypted before it's written to the ar.cfg. ___ UNSUBSCRIBE or access

Re: AREA LDAP

2013-01-28 Thread vaibhav wadekar
You just need to make changes in ldap config form and it will update ar.cfg/at.conf respectively. Regards/Vaibhav On Monday, January 28, 2013, rajkiran Alle wrote: Hi, I need to modify the existing Bind User and Bind password for LDAP authentication, Is it enough if i just modify user

Re: AREA LDAP configuration

2012-10-30 Thread SUBSCRIBE ARSLIST theReel
Hi Guys, This is what i eventually did. Looking at the plugin logs I could see it is only searching using the first configuration and when the user is not found using that search it fails. I couldn't get a fix to make it do multiple searches so we rearanged the AD tree structure and raised

Re: AREA LDAP configuration

2012-10-30 Thread andres tamayo
if you have multiple LDAP configuration you have to change your plugin to areahub instead AREA, then it will check for all your entries in the ldap configuration form. 2012/10/30 SUBSCRIBE ARSLIST theReel tony.r...@bt.com: Hi Guys, This is what i eventually did. Looking at the plugin logs I

AREA LDAP configuration

2012-10-29 Thread Tony Reel
Hi Guys, I have inherited support of a 7.0.01 install of Remedy (AR system ITSM on Windows) which has some LDAP configurations setup. I do not have much experience with the LDAP configuration, it seems pretty straightforward but it is not working and I think I am missing something simple

AREA LDAP configuration

2012-10-29 Thread John Baker
Tony, Do you have to restart services after you make changes to the AREA LDAP configurations? Yes, although you can kill the arplugin process and armonitor should restart the plugin server. Given some ITSM installations take 30 minutes to restart, this is the best choice if in doubt, Can

Re: AREA LDAP configuration

2012-10-29 Thread SUBSCRIBE ARSLIST theReel
Thanks for the reply John, I have to wait until I am outside core hours before I can restart anything again but I will try restarting only the arplugin this time, thanks. By OU I mean Organizational Units so yes different sub-trees. Unfortunately I can’t use the parent as the base DN and

AREA LDAP Configuration

2012-10-12 Thread Cecil, Ken
I am having an issue with AREA LDAP authentication on our development system. Everything is working great on production and their configuration looks identical to me. · When logging into dev with AD password authentication passes and the support user only has access to the minimum

Re: LDAP authentication issue

2012-10-04 Thread Remedy Maniac
Hi Fred, that was the issue. Using sAMAccountName=$\USER$ helped to solve my problem. Many thanks On 10/2/2012 3:35 PM, Grooms, Frederick W wrote: Serouche, The Login Name on an Active Directory LDAP search is usually sAMAccountName, so in the configuration form AREA LDAP Configuration

Support of multiple LDAP domains for Analytics Dashboards

2012-10-03 Thread Jamie
Hello all, We are in the process of installing Analytics and Dashboards in our environment and integrating it in with Remedy ITSM. Currently, in our Remedy ARS system we support 4 different domains through LDAP by having 4 different entries within the AREA LDAP Configuration and having

  1   2   3   4   5   6   7   >