[jboss-user] [Security & JAAS/JBoss] - Re: j_security_check not working in LDAP based Authenticatio
jbosexplorer
do-not-reply at jboss.com
Fri Dec 14 06:48:57 EST 2007
No takers so far?
Some more information. I've my LDAP setting as
<application-policy name = "myrealm">
| <authentication>
| <login-module code = "org.jboss.security.auth.spi.LdapLoginModule" flag = "required">
| <module-option name="java.naming.factory.initial">com.sun.jndi.ldap.LdapCtxFactory</module-option>
| <module-option name="java.naming.provider.url">ldap://ldapserver:389/</module-option>
| <module-option name="java.naming.security.authentication">simple</module-option>
| <module-option name="java.naming.security.principal">uid=admin,ou=administrators,ou=topologymanagement,o=netscaperoot</module-option>
| <module-option name="java.naming.security.credentials">pwd</module-option>
| <module-option name="baseDN">dc=company,dc=co,dc=uk</module-option>
| <module-option name="principalDNPrefix">uid=</module-option>
| <module-option name="principalDNSuffix">,ou=people,dc=company,dc=co,dc=uk</module-option>
| <module-option name="uidAttributeID">uid</module-option>
| <module-option name="searchScope">SUBTREE_SCOPE</module-option>
| <module-option name="rolesCtxDN">ou=Roles,dc=company,dc=co,dc=uk</module-option>
| <module-option name="roleAttributeID">cn</module-option>
| <module-option name="roleAttributeIsDN">false</module-option>
| <module-option name="matchOnUserDN">true</module-option>
|
| </login-module>
|
| <login-module code="org.jboss.security.auth.spi.RoleMappingLoginModule" flag="optional">
| <module-option name="rolesProperties">props/propsrsdmRolesMapping.properties</module-option>
| <module-option name="replaceRole">false</module-option>
| </login-module>
|
| </authentication>
| </application-policy>
|
My propsrsdmRolesMapping.properties file has
deploymentRole=RSMDeployment
| admRole=RSMADM
| skillsRole=RSMSkills
| projManRole=RSMProjMan
| spaRole=RSMSPA
| itbmRole=RSMITBM
| RSMSkills=skillsRole
| RSMDeployment=deploymentRole
| RSMADM=admRole
| RSMProjMan=projManRole
| RSMSPA=spaRole
| RSMITBM=itbmRole
|
Could anybody help?
Ta
View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=4112881#4112881
Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=4112881
More information about the jboss-user
mailing list