Return-Path: Delivered-To: apmail-continuum-users-archive@www.apache.org Received: (qmail 56528 invoked from network); 2 Sep 2008 16:14:31 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (140.211.11.2) by minotaur.apache.org with SMTP; 2 Sep 2008 16:14:31 -0000 Received: (qmail 32877 invoked by uid 500); 2 Sep 2008 16:14:28 -0000 Delivered-To: apmail-continuum-users-archive@continuum.apache.org Received: (qmail 32845 invoked by uid 500); 2 Sep 2008 16:14:28 -0000 Mailing-List: contact users-help@continuum.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: users@continuum.apache.org Delivered-To: mailing list users@continuum.apache.org Received: (qmail 32834 invoked by uid 99); 2 Sep 2008 16:14:28 -0000 Received: from athena.apache.org (HELO athena.apache.org) (140.211.11.136) by apache.org (qpsmtpd/0.29) with ESMTP; Tue, 02 Sep 2008 09:14:28 -0700 X-ASF-Spam-Status: No, hits=-1.0 required=10.0 tests=RCVD_IN_DNSWL_LOW,SPF_PASS X-Spam-Check-By: apache.org Received-SPF: pass (athena.apache.org: local policy) Received: from [128.83.32.53] (HELO ironmaiden.mail.utexas.edu) (128.83.32.53) by apache.org (qpsmtpd/0.29) with ESMTP; Tue, 02 Sep 2008 16:13:28 +0000 DomainKey-Signature: s=main; d=austin.utexas.edu; c=nofws; q=dns; h=X-IronPort-MID:Received:Received:From:To:Date:Subject: Thread-Topic:Thread-Index:Message-ID:In-Reply-To: Accept-Language:Content-Language:X-MS-Has-Attach: X-MS-TNEF-Correlator:acceptlanguage:Content-Type: MIME-Version; b=qE8M+lADprhhZKDZ19l6rk0fyqB1QHgAljp0t5HitOB626ciIwZzRQZ6 rap+C36sGbwrhiA7pzrREgVE06/925idjUpSMWi2R2yBlLEUw1Hf8p3sC YPcq5RV5GoU7vqNgyuAdykXwOooaRu1v1SOrPD6zvk4yUP37xd29CPnDV c=; X-IronPort-MID: 1992141063 Received: from exf04.austin.utexas.edu ([128.83.32.188]) by ironmaiden.mail.utexas.edu with ESMTP; 02 Sep 2008 11:13:58 -0500 Received: from MAIL03.austin.utexas.edu ([172.16.78.102]) by exf04.austin.utexas.edu ([128.83.32.188]) with mapi; Tue, 2 Sep 2008 11:13:57 -0500 From: "Carr, Brian M" To: "users@continuum.apache.org" Date: Tue, 2 Sep 2008 11:13:56 -0500 Subject: Re: base.dn in security.properties - why it uses not the full line? Thread-Topic: base.dn in security.properties - why it uses not the full line? Thread-Index: AckMKF96/rH7MX42SIy1+nIwqdA+oQADLi6gADhzgv0= Message-ID: In-Reply-To: <120401c90c35$307cb910$91762b30$@com> Accept-Language: en-US Content-Language: en X-MS-Has-Attach: yes X-MS-TNEF-Correlator: acceptlanguage: en-US Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg=sha1; boundary="B_3303198836_4220670" MIME-Version: 1.0 X-Virus-Checked: Checked by ClamAV on apache.org --B_3303198836_4220670 Content-type: text/plain; charset="US-ASCII" Content-transfer-encoding: 7bit There is an error in the redback config (i'm not at my development computer, so I can't say the exact location of the error) stuff that reads the user.base.dn as a string instead of a list. As such, only the first part of the list is read. Removing the base dn just has redback search the entire directory with subtree scope. As such, it magically begins working. However, if your directory contains non-user accounts, you may be allowing accounts in to continuum that you do not intend. --b On 9/1/08 8:18 AM, "Jimmy Conway" wrote: > I found the solution. I just removed this line: > > ldap.config.mapper.attribute.user.base.dn > > I don't know why, but it works now :) > > Jim > > > -----Original Message----- > From: Jimmy Conway [mailto:jimmycnw@gmail.com] > Sent: Monday, September 01, 2008 1:57 PM > To: users@continuum.apache.org > Subject: base.dn in security.properties - why it uses not the full line? > > There is a problem with LDAP configuration. I specified these lines in > /conf/security.properties. > > ldap.config.base.dn=ou=OrgUnit,dc=,dc=com > ldap.config.mapper.attribute.user.base.dn=ou=OrgUnit,dc=,dc=com > > ( includes the name of my real domain name) > > And this is what I get in continuum.log: > > 2008-09-01 07:43:22,871 [btpool0-7] INFO ldapController - Searching for > user: guest > 2008-09-01 07:43:22,871 [btpool0-7] INFO ldapController - Searching for > users with filter: '(&(objectClass=inetOrgPerson)(uid=guest))' from base dn: > ou=OrgUnit > 2008-09-01 07:43:22,932 [btpool0-7] ERROR userManager#ldap - Failed to find > user: guest > > Why it cuts out the rest of the base.dn? Why base dn is only "ou=OrgUnit"? > > Below in log I see this also: > > Caused by: javax.naming.NameNotFoundException: [LDAP: error code 32 - No > Such Object]; remaining name 'ou=OrgUnit' > > I'm talking about latest version of Continuum from /trunk. > > Thanks in advance! > > Jim > > > > > __________ Information from ESET NOD32 Antivirus, version of virus signature > database 3403 (20080901) __________ > > The message was checked by ESET NOD32 Antivirus. > > http://www.eset.com > > > > __________ Information from ESET NOD32 Antivirus, version of virus signature > database 3404 (20080901) __________ > > The message was checked by ESET NOD32 Antivirus. > > http://www.eset.com > > > > __________ Information from ESET NOD32 Antivirus, version of virus signature > database 3404 (20080901) __________ > > The message was checked by ESET NOD32 Antivirus. > > http://www.eset.com > > ______________________________ Brian M. Carr Identity and Access Management ITS Applications University of Texas at Austin V: 512-232-6419 F: 512-471-5746 brianmcarr@austin.utexas.edu --B_3303198836_4220670 Content-Type: application/pkcs7-signature; name="smime.p7s" Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="smime.p7s" MIIPCAYJKoZIhvcNAQcCoIIO+TCCDvUCAQExCzAJBgUrDgMCGgUAMAsGCSqGSIb3DQEHAaCC DMwwggRjMIIDzKADAgECAg8B+hEmMdBu2aOpUGHT90kwDQYJKoZIhvcNAQEFBQAwgeoxJzAl BgNVBAoTHlRoZSBVbml2ZXJzaXR5IG9mIFRleGFzIFN5c3RlbTEfMB0GA1UECxMWVmVyaVNp Z24gVHJ1c3QgTmV0d29yazE7MDkGA1UECxMyVGVybXMgb2YgdXNlIGF0IGh0dHBzOi8vd3d3 LnZlcmlzaWduLmNvbS9ycGEgKGMpOTkxMjAwBgNVBAsTKUNsYXNzIDIgQ0EgLSBPblNpdGUg SW5kaXZpZHVhbCBTdWJzY3JpYmVyMS0wKwYDVQQDEyRUaGUgVW5pdmVyc2l0eSBvZiBUZXhh cyBhdCBBdXN0aW4gQ0EwHhcNMDgwMzExMDAwMDAwWhcNMDkwMzExMjM1OTU5WjCBjTErMCkG CSqGSIb3DQEJARYcYnJpYW5tY2FyckBhdXN0aW4udXRleGFzLmVkdTEWMBQGA1UEAxQNQ2Fy ciwgQnJpYW4gTTFGMEQGA1UECxM9d3d3LnZlcmlzaWduLmNvbS9yZXBvc2l0b3J5L0NQUyBJ bmNvcnAuIGJ5IFJlZi4sTElBQi5MVEQoYyk5NjCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkC gYEA1vRY97YAwF28bE45fd4odj8JT9DmCryJgWw5330UTsTI9kUAqE5K+Jz6NjcUNTycVHqW qKw7AC7+sHm5nJRmAirRPev2FEUFtPkxjYDttzHB/JxHxwzeo2+FclpSOiKkC0pTeZf94tEo m0kwAwpgByq1O7axeqndwQirOHHpFgkCAwEAAaOCAWQwggFgMAkGA1UdEwQCMAAwCwYDVR0P BAQDAgeAMHEGA1UdHwRqMGgwZqBkoGKGYGh0dHA6Ly9vbnNpdGVjcmwudmVyaXNpZ24uY29t L1RoZVVuaXZlcnNpdHlvZlRleGFzU3lzdGVtVGhlVW5pdmVyc2l0eW9mVGV4YXNhdEF1c3Rp bkNBL0xhdGVzdENSTDCBrAYDVR0gBIGkMIGhMIGeBgtghkgBhvhFAQcBATCBjjAoBggrBgEF BQcCARYcaHR0cHM6Ly93d3cudmVyaXNpZ24uY29tL0NQUzBiBggrBgEFBQcCAjBWMBUWDlZl cmlTaWduLCBJbmMuMAMCAQEaPVZlcmlTaWduJ3MgQ1BTIGluY29ycC4gYnkgcmVmZXJlbmNl IGxpYWIuIGx0ZC4gKGMpOTcgVmVyaVNpZ24wEQYJYIZIAYb4QgEBBAQDAgeAMBEGCmCGSAGG +EUBBgkEAwEB/zANBgkqhkiG9w0BAQUFAAOBgQAk8I/iHBY5lHD2giCKlgjcK7b98ysai14t XvkBjWMpe9xy3cXqs51gO6YvzqmK6QKrdPtYl4718Ji8+GwFzu3DSiNlsJKxqYzujZAGrO7O jUucHkmYyStWfEcjUZ7E4W4g13Tri5W8GoWbk1TyL33NKO3LY+wDjV7BnTkm383/MjCCA9gw ggNBoAMCAQICEEZUa4Tf8i3zpTWHFJPX/hQwDQYJKoZIhvcNAQEFBQAwgcExCzAJBgNVBAYT AlVTMRcwFQYDVQQKEw5WZXJpU2lnbiwgSW5jLjE8MDoGA1UECxMzQ2xhc3MgMiBQdWJsaWMg UHJpbWFyeSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eSAtIEcyMTowOAYDVQQLEzEoYykgMTk5 OCBWZXJpU2lnbiwgSW5jLiAtIEZvciBhdXRob3JpemVkIHVzZSBvbmx5MR8wHQYDVQQLExZW ZXJpU2lnbiBUcnVzdCBOZXR3b3JrMB4XDTk5MDMzMTAwMDAwMFoXDTA5MDMzMDIzNTk1OVow geoxJzAlBgNVBAoTHlRoZSBVbml2ZXJzaXR5IG9mIFRleGFzIFN5c3RlbTEfMB0GA1UECxMW VmVyaVNpZ24gVHJ1c3QgTmV0d29yazE7MDkGA1UECxMyVGVybXMgb2YgdXNlIGF0IGh0dHBz Oi8vd3d3LnZlcmlzaWduLmNvbS9ycGEgKGMpOTkxMjAwBgNVBAsTKUNsYXNzIDIgQ0EgLSBP blNpdGUgSW5kaXZpZHVhbCBTdWJzY3JpYmVyMS0wKwYDVQQDEyRUaGUgVW5pdmVyc2l0eSBv ZiBUZXhhcyBhdCBBdXN0aW4gQ0EwgZ8wDQYJKoZIhvcNAQEBBQADgY0AMIGJAoGBAM424o67 hvIVJPwzYwUtsN1zZYiY6w94Y/iaY8Lcg7OgzpsfQKz7r0zS8bZ3lhtVio5zVV2TPod6DQtC cw28B3oOU1buf9VuyFZM04JMVGkMimykoyYTGt5ievAVOZ/SowAOMtQ89ocWzp2iDk2yW73d 11WS7xZck8/lbpgP0JQHAgMBAAGjgaUwgaIwKQYDVR0RBCIwIKQeMBwxGjAYBgNVBAMTEVBy aXZhdGVMYWJlbDEtMTM4MBEGCWCGSAGG+EIBAQQEAwIBBjBEBgNVHSAEPTA7MDkGC2CGSAGG +EUBBwEBMCowKAYIKwYBBQUHAgEWHGh0dHBzOi8vd3d3LnZlcmlzaWduLmNvbS9SUEEwDwYD VR0TBAgwBgEB/wIBADALBgNVHQ8EBAMCAQYwDQYJKoZIhvcNAQEFBQADgYEANNPBs2N5NFcI 9iN9wwBoa7V46biuFe0ZjLfloGSrfvS7yhLaZRkWzzqToruupwK+GXWANk6wfM8e8iDpaFaR pvd2ViDP2OCgRPe9+QIn+ODr3KZYwGlQB9/ZVxlW+trGSpDcLfb2GAP5jaw+UfyhnWR/Yfx/ MpIVY1Scu4uTAoMwggSFMIID7qADAgECAhAuu4q1B7e/MzcniFea7vkWMA0GCSqGSIb3DQEB BQUAMIHqMScwJQYDVQQKEx5UaGUgVW5pdmVyc2l0eSBvZiBUZXhhcyBTeXN0ZW0xHzAdBgNV BAsTFlZlcmlTaWduIFRydXN0IE5ldHdvcmsxOzA5BgNVBAsTMlRlcm1zIG9mIHVzZSBhdCBo dHRwczovL3d3dy52ZXJpc2lnbi5jb20vcnBhIChjKTk5MTIwMAYDVQQLEylDbGFzcyAyIENB IC0gT25TaXRlIEluZGl2aWR1YWwgU3Vic2NyaWJlcjEtMCsGA1UEAxMkVGhlIFVuaXZlcnNp dHkgb2YgVGV4YXMgYXQgQXVzdGluIENBMB4XDTA4MDMxMTAwMDAwMFoXDTA5MDMxMTIzNTk1 OVowgY0xKzApBgkqhkiG9w0BCQEWHGJyaWFubWNhcnJAYXVzdGluLnV0ZXhhcy5lZHUxFjAU BgNVBAMUDUNhcnIsIEJyaWFuIE0xRjBEBgNVBAsTPXd3dy52ZXJpc2lnbi5jb20vcmVwb3Np dG9yeS9DUFMgSW5jb3JwLiBieSBSZWYuLExJQUIuTFREKGMpOTYwgZ8wDQYJKoZIhvcNAQEB BQADgY0AMIGJAoGBALzer27geKSN6cmhKHQ4ulXR01TUo+3ZdQGAul+4hHk6lndqBraBD6Kw 2gJYfOARUHS+6QVU7QxvSIfrmWokm7OWJOZ2f2HvTWDBXC0il/z8ucD0cxzn4xG1XfcWAnHf Q2uisJHo9g6yggDfXPKBi8fw62p1YMZkN79P2XVYutbLAgMBAAGjggGFMIIBgTAJBgNVHRME AjAAMAsGA1UdDwQEAwIEMDBxBgNVHR8EajBoMGagZKBihmBodHRwOi8vb25zaXRlY3JsLnZl cmlzaWduLmNvbS9UaGVVbml2ZXJzaXR5b2ZUZXhhc1N5c3RlbVRoZVVuaXZlcnNpdHlvZlRl eGFzYXRBdXN0aW5DQS9MYXRlc3RDUkwwgawGA1UdIASBpDCBoTCBngYLYIZIAYb4RQEHAQEw gY4wKAYIKwYBBQUHAgEWHGh0dHBzOi8vd3d3LnZlcmlzaWduLmNvbS9DUFMwYgYIKwYBBQUH AgIwVjAVFg5WZXJpU2lnbiwgSW5jLjADAgEBGj1WZXJpU2lnbidzIENQUyBpbmNvcnAuIGJ5 IHJlZmVyZW5jZSBsaWFiLiBsdGQuIChjKTk3IFZlcmlTaWduMBEGCWCGSAGG+EIBAQQEAwIH gDARBgpghkgBhvhFAQYJBAMBAf8wHwYDVR0lBBgwFgYIKwYBBQUHAwQGCisGAQQBgjcKAwQw DQYJKoZIhvcNAQEFBQADgYEAoF7XbcVY4mWHfGsqSGAJVJ9QQxd6ercVJEWMcsomS1Rwu1P6 ybGPtQN1buG5QEoEBPGGskAd49weFIQPdrFi37sBpQun745gAY9qIUvnE5Y/lExpiHKkfmnX pc/riv//Ymg6V6s8VVj6BODhWIqxhIpSYivqYghdppiMLGwcJzgxggIEMIICAAIBATCB/jCB 6jEnMCUGA1UEChMeVGhlIFVuaXZlcnNpdHkgb2YgVGV4YXMgU3lzdGVtMR8wHQYDVQQLExZW ZXJpU2lnbiBUcnVzdCBOZXR3b3JrMTswOQYDVQQLEzJUZXJtcyBvZiB1c2UgYXQgaHR0cHM6 Ly93d3cudmVyaXNpZ24uY29tL3JwYSAoYyk5OTEyMDAGA1UECxMpQ2xhc3MgMiBDQSAtIE9u U2l0ZSBJbmRpdmlkdWFsIFN1YnNjcmliZXIxLTArBgNVBAMTJFRoZSBVbml2ZXJzaXR5IG9m IFRleGFzIGF0IEF1c3RpbiBDQQIPAfoRJjHQbtmjqVBh0/dJMAkGBSsOAwIaBQCgXTAjBgkq hkiG9w0BCQQxFgQUIhEJp5BghrwaZ8Q7UvVdr5yNF+AwGAYJKoZIhvcNAQkDMQsGCSqGSIb3 DQEHATAcBgkqhkiG9w0BCQUxDxcNMDgwOTAyMTYxMzU2WjANBgkqhkiG9w0BAQEFAASBgLVb q3Rc3tyca+41sV9PgoHOj3k0eApUJph63KnW7m8w4dBWzoQgUG4e56FVrIaf9iHNJYIpeLIG wZl/QwMifx1FsdN1H3hG3M0QchpE1TJXtaeQzzNh8QryWK3pVw6oHifmAFD6NYp+yC0XGHTH KUpB2I9/LDrntRsqGI4dc941 --B_3303198836_4220670--