HTML Logo by World Wide Web Consortium (www.w3.org). Click to learn more about our commitment to accessibility and standards.

Moving forward with Composr

ocPortal has been relaunched as Composr CMS, which is now in beta. ocPortal 9 will be superseded by Composr 10.

Head over to compo.sr for our new site, and to our migration roadmap. Existing ocPortal member accounts have been mirrored.


LDAP Invalid DN syntax

Login / Search

 [ Join | More ]
 Add topic 
Posted
Rating:
#109526 (In Topic #21616)
Avatar

Fan in training

Hi,
New to ocPortal but not with similar platforms. I have configured LDAP in Setup->Member->LDAP and confirmed the binding account and password. Created a member group in AD and set the search query. I have the Base DN set to dc=[domain],dc=com. I have configured LDAP on other systems and i have never had an issue with the base DN. I have run through a bunch of iterations of bases always getting the error. Any help or guidance would be much appriciated.

LDAP: Invalid DN syntax
Back to the top
 
Posted
Rating:
#109540
Avatar

Fan in training

Had the memberOf= in the member search qualifier. Once it was removed ldap started working.
Back to the top
 
Posted
Rating:
#109547
Avatar

Thanks for sharing :). Sorry no one could help initially, not many people know much about LDAP and even I'm very rusty.


Become a fan of ocPortal on Facebook or add me as a friend. Add me on on Twitter.
Was I helpful?
  • If not, please let us know how we can do better (please try and propose any bigger ideas in such a way that they are fundable and scalable).
  • If so, please let others know about ocPortal whenever you see the opportunity.
  • If my reply is too Vulcan or expressed too much in business-strategy terms, and not particularly personal, I apologise. As a company & project maintainer, time is very limited to me, so usually when I write a reply I try and make it generic advice to all readers. I'm also naturally a joined-up thinker, so I always express my thoughts in combined business and technical terms. I recognise not everyone likes that, don't let my Vulcan-thinking stop you enjoying ocPortal on fun personal projects.
  • If my response can inspire a community tutorial, that's a great way of giving back to the project as a user.
Back to the top
 
Posted
Rating:
#109552
Avatar

Fan in training

Hi,
Np, but i do have a question now. I can see the AD Groups in the admin security section now but when i try to login with a windows account that is a member of the group designated in the search i get The member does not exist. I thought that once ldap worked and users had been added to the search group it should allow login and then ask for the secondary details like email?
Back to the top
 
Posted
Rating:
#109554
Avatar

That's what is supposed to happen. It's really hard for me to comment on a forum though, I'd need to research your configuration, have access to your network to run tests, and potentially step through the code to see what exact LDAP queries are being made. It'd take a few hours, and it's very specialist work.


Become a fan of ocPortal on Facebook or add me as a friend. Add me on on Twitter.
Was I helpful?
  • If not, please let us know how we can do better (please try and propose any bigger ideas in such a way that they are fundable and scalable).
  • If so, please let others know about ocPortal whenever you see the opportunity.
  • If my reply is too Vulcan or expressed too much in business-strategy terms, and not particularly personal, I apologise. As a company & project maintainer, time is very limited to me, so usually when I write a reply I try and make it generic advice to all readers. I'm also naturally a joined-up thinker, so I always express my thoughts in combined business and technical terms. I recognise not everyone likes that, don't let my Vulcan-thinking stop you enjoying ocPortal on fun personal projects.
  • If my response can inspire a community tutorial, that's a great way of giving back to the project as a user.
Back to the top
 
There are too many online users to list.
Control functions:

Quick reply   Contract

Your name:
Your message: