|
RSS Feed - WebSphere MQ Support
|
RSS Feed - Message Broker Support
|
 |
|
Nested LDAP group support in WMB |
« View previous topic :: View next topic » |
Author |
Message
|
nize |
Posted: Tue Mar 15, 2011 12:10 am Post subject: Nested LDAP group support in WMB |
|
|
Voyager
Joined: 02 Sep 2009 Posts: 90
|
Background
I have the following config in the MS (Active Directory) AD:
* a group called "MyADGroup"
* "MyADGroup" is containing another group "WSAdmins" and a user "app1"
* "WSAdmins" is containing the user "admin1".
I have configured a security profile "MyADGroup" as follows:
Authentication: LDAP
Mapping: NONE
Authorization: LDAP
Propagation: TRUE
Password Value: PLAIN
LDAP host: ldaps://LDAPSe01.microweb.com:3269
LDAP baseDN: dc=global,dc=vmd,dc=microweb,dc=com
LDAP uid attr: sAMAccountName
LDAP search scope: sub
LDAP group baseDN: CN=MyADGroup,OU=Groups,OU=Research and Development,OU=Alabama,OU=US,DC=global,DC=vmd,DC=microweb,DC=com
LDAP group member attr: member
I have referenced this security profile from a flow "MyFlow". When I invoke the flow with the user "app1" the authorization check is passed.
Problem
When I invoke the flow with the user "admin1" the authorization check does not pass! Is this due to admin1 being a member of a nested group? |
|
Back to top |
|
 |
|
|
 |
|
Page 1 of 1 |
|
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
|
|
|