RE: JNDI realm - recursive group/role matching (Tomcat 4.1.18)

2003-03-14 Thread Philippe Maseres
t;SmartJNDIRealm"; } } Philippe Maseres <<>> -Message d'origine- <<>> De : Jon Roberts [mailto:[EMAIL PROTECTED] <<>> Envoye : jeudi 13 mars 2003 20:21 <<>> A : Tomcat Users List <<>> Objet : Re: JNDI real

Re: JNDI realm - recursive group/role matching (Tomcat 4.1.18)

2003-03-13 Thread Jon Roberts
I can't speak for tomcat, but I can say that what you are asking is not trivial. LDAP was not designed to support multi-join queries. However, as I recall the iPlanet/Sun ONE directory server has a feature called "dynamic groups" that may help you solve this problem on the directory side. Jon R

JNDI realm - recursive group/role matching (Tomcat 4.1.18)

2003-03-13 Thread Philippe Maseres
Hello all. I need to set up Tomcat to use a LDAP directory for authentication and authorization. I successfully configured my iPlanet directory and a JNDI realm in Tomcat, and users and roles checkings work well, but with a restriction. My directory schema, which is quite classical, provides a dedi