Hi,

1.)  Using JXplorer with the following connection parameters:-   :working:

Base DN:           ou=it,ou=head-office,dc=domain*,dc=co,dc=uk
User DN:            cn=John Doe,ou=it,ou=head-office,dc=domain*,dc=co,dc=uk

      I get the Windows 2000 Server's Active Directory entries starting from
the "Base DN:" as mentioned above

       (**** I noticed that the short username i.e. "John" does not work!
One has to specify the whole user name i.e "John Doe" to get AD access ****)

2.) Now on to OFBIZ ...

     When I however, substitute the "User DN:" within ${ofbiz install
dir}/framework/security/config/jndiLdap.properties as follows:-

      ldap.dn.template=cn=%u,OU=IT,OU=head-office,DC=domain*,DC=co,DC=uk

      Active Directory authentication for OFBIZ fails, with the following in
the logs:-

2008-07-21 14:13:12,470 (http-0.0.0.0-8443-1) [    
RequestHandler.java:243:INFO ] [Processing Request]: login
sessionId=D2EB68F2022C7F9076581E957EF5376D.jvm1
2008-07-21 14:13:12,498 (http-0.0.0.0-8443-1) [     
LoginServices.java:363:INFO ] [LoginServices.userLogin] : Invalid User :
User not found.
2008-07-21 14:13:12,498 (http-0.0.0.0-8443-1) [ 
ServiceDispatcher.java:522:ERROR] Error in Service [userLogin]: User not
found.
2008-07-21 14:13:12,499 (http-0.0.0.0-8443-1) [   
TransactionUtil.java:275:ERROR]

       I have tried logging into OFBIZ with all of the following options:-

          a.) John
          b.) John Doe
          c.) [EMAIL PROTECTED]
          d.) domain*.co.uk\John
          e.) domain*\John

       It just keeps on stating that it cannot find the user .......   
:confused:

       (What is the correct syntax to use for logon ?? - domain*\John is
what I presume)

3.)   One more Q please: When adjusting ANY of OFBIZ's configuration files,
is it sufficient to (restart ofbiz via) ./stopofbiz and ./startofbiz for the
changes to take effect?....




-- 
View this message in context: 
http://www.nabble.com/LDAP---Active-Directory-Integration-tp18567334p18567334.html
Sent from the OFBiz - User mailing list archive at Nabble.com.

Reply via email to