> I think the CredentialsToLDAPAttributePrincipalResolver is the one that must > be different for multiple LDAPs.
That's correct. The inner UsernamePasswordCrednetialsToPrincipalResolver is used to seed the LDAP query with the user name used in the LDAP search filter, but CredentialsToLDAPAttributePrincipalResolver has the directory-specific LDAP details such as host name, base DN, search scope, and filter. Hope that helps, M -- You are currently subscribed to cas-user@lists.jasig.org as: arch...@mail-archive.com To unsubscribe, change settings or access archives, see http://www.ja-sig.org/wiki/display/JSG/cas-user