karaf-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Jean-Baptiste Onofré (JIRA) <j...@apache.org>
Subject [jira] [Assigned] (KARAF-3052) Karaf LDAP integration does not support REFERRAL setup
Date Tue, 17 Jun 2014 09:01:16 GMT

     [ https://issues.apache.org/jira/browse/KARAF-3052?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]

Jean-Baptiste Onofré reassigned KARAF-3052:
-------------------------------------------

    Assignee: Jean-Baptiste Onofré

> Karaf LDAP integration does not support REFERRAL setup
> ------------------------------------------------------
>
>                 Key: KARAF-3052
>                 URL: https://issues.apache.org/jira/browse/KARAF-3052
>             Project: Karaf
>          Issue Type: Bug
>          Components: karaf-security
>            Reporter: Iulius Hutuleac
>            Assignee: Jean-Baptiste Onofré
>             Fix For: 2.4.0, 4.0.0, 3.0.2, 2.3.6
>
>         Attachments: LDAPLoginModule.java.patch
>
>
> When we setup the user/group base location all queries are failing if we are at base
of the DC.
> As a workaround we could set follow referrals property to "follow" but this is not supported
at the moment using the standard config file.
> Using the modified source as described in the attached file and a config file entry this
would become feasible.
> org.apache.activemq.jaas.LDAPLoginModule optional
>   debug=true
>   initialContextFactory=com.sun.jndi.ldap.LdapCtxFactory
>   connectionURL="ldap://test.local:389"
>   connectionUsername="CN=testusr,DC=test,DC=local"
>           connectionPassword="XXXXXXXXXX"
>           connectionProtocol="s"
>           authentication=simple
>           userBase="DC=test,DC=local"
>           userSearchSubtree=true
>           userRoleName=sAMAccountName
>           userSearchMatching="(sAMAccountName={0})"
>           roleBase="DC=test,DC=local"
>           roleName=cn
>           roleSearchMatching="(member:=uid={1})"
> 	  java.naming.referral=follow
>           roleSearchSubtree=true;
> };



--
This message was sent by Atlassian JIRA
(v6.2#6252)

Mime
View raw message