[jboss-user] [Security & JAAS/JBoss] - Re: j_security_check not working in LDAP based Authenticatio

jbosexplorer do-not-reply at jboss.com
Fri Dec 14 06:48:57 EST 2007


No takers so far?

Some more information. I've my LDAP setting as 
   <application-policy name = "myrealm">
  |        <authentication>
  | 	<login-module code = "org.jboss.security.auth.spi.LdapLoginModule" flag = "required">
  |              <module-option name="java.naming.factory.initial">com.sun.jndi.ldap.LdapCtxFactory</module-option>
  |              <module-option name="java.naming.provider.url">ldap://ldapserver:389/</module-option>
  |              <module-option name="java.naming.security.authentication">simple</module-option>
  | 			<module-option name="java.naming.security.principal">uid=admin,ou=administrators,ou=topologymanagement,o=netscaperoot</module-option>
  | 			<module-option name="java.naming.security.credentials">pwd</module-option>			  
  | 			 <module-option name="baseDN">dc=company,dc=co,dc=uk</module-option> 
  | 			 <module-option name="principalDNPrefix">uid=</module-option> 
  | 			 <module-option name="principalDNSuffix">,ou=people,dc=company,dc=co,dc=uk</module-option> 
  | 			 <module-option name="uidAttributeID">uid</module-option>
  | 			<module-option name="searchScope">SUBTREE_SCOPE</module-option>			  
  |                 <module-option name="rolesCtxDN">ou=Roles,dc=company,dc=co,dc=uk</module-option>
  |                 <module-option name="roleAttributeID">cn</module-option>
  |                 <module-option name="roleAttributeIsDN">false</module-option>
  | 				 <module-option name="matchOnUserDN">true</module-option>
  | 
  | 		</login-module>
  | 
  |       <login-module code="org.jboss.security.auth.spi.RoleMappingLoginModule" flag="optional"> 
  |         <module-option name="rolesProperties">props/propsrsdmRolesMapping.properties</module-option>
  | 		<module-option name="replaceRole">false</module-option>
  |       </login-module>
  | 
  | 	   </authentication>
  |     </application-policy>
  | 

My propsrsdmRolesMapping.properties file has 
deploymentRole=RSMDeployment
  | admRole=RSMADM
  | skillsRole=RSMSkills
  | projManRole=RSMProjMan
  | spaRole=RSMSPA
  | itbmRole=RSMITBM
  | RSMSkills=skillsRole
  | RSMDeployment=deploymentRole
  | RSMADM=admRole
  | RSMProjMan=projManRole
  | RSMSPA=spaRole
  | RSMITBM=itbmRole
  | 

Could anybody help?

Ta

View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=4112881#4112881

Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=4112881



More information about the jboss-user mailing list