I'm able to allow or not users on a ldap filter.
here, my filter :

<property name="filter" value="(&amp;(uid=%u)(|(aglnPersonStatus=OFFI)(aglnPersonStatus=PROV)))"/>

For the braces, yes, i found an exemple on the web, somewhere but i don't know where.

As i manage 12 CAS servers, i must now copy the deployerConfigContext in each src directory.
.
thanks, (merci beaucoup)

by
Philippe
-------------------------------------------------
Philippe BEUTIN
[email protected]
Groupement Gestion & Diffusion de Contenu - SIMSU
351, av. de la Bibliothèque
Domaine Universitaire - B.P. 53
38041 Grenoble Cedex 9
04.56.52.90.19
-------------------------------------------------
----- Original Message ----- From: "Marvin Addison" <[email protected]>
To: <[email protected]>
Sent: Wednesday, August 31, 2011 5:39 PM
Subject: Re: [cas-user] CAS - filtering users on ldap attribute


I found it !!! when i look in the LDAP logs files, i found an error on an attribute : {uid
...
I put
<property name="userDn" value="uid=monuser..."/>
<property name="password" value="*******"/>
and it works.

Bien fait!  The reason it works for FastBind is that it's never used.
The property value is a literal DN and enclosing in braces is simply
not supported.  Did you get the use of braces from our documentation?
If so we need to make clear to remove braces.

Now, trying to use my ldap filter...

Bon chance.  Let us know in any case whether you get it working.

M

--
You are currently subscribed to [email protected] as: [email protected] To unsubscribe, change settings or access archives, see http://www.ja-sig.org/wiki/display/JSG/cas-user





--
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to