LDAP authentication against eDirectory

Added by Daniel Wells about 10 years ago

I am missing something somewhere. Has anyone configured LDAP authentication against Novell eDirectory. I am able to successfully connect suing the "test" link, but I cannot authenticate an LDAP user.

What am I missing?

Replies (7)

RE: LDAP authentication against eDirectory - Added by Felix Schäfer about 10 years ago

The test link only tests connectivity, i.e. if it can open the port on the remote end, nothing more. Have a look at the redmine logs (redmine_dir/logs/production.log) after trying to authenticate with an LDAP user.

Please provide details about your configuration and possibly the interesting bits of the LDIF export of a user account in your LDAP if you still can't find the root of your problem.

RE: LDAP authentication against eDirectory - Added by Daniel Wells about 10 years ago

My configuration is the virtual Bitnami stack built on opensuse 11.1.

It will take a little head scratching to get an LDIF (I don't work with it very often, so. . .)

The log isn't telling me much, here is the attempted login entry:

Processing AccountController#login (for 192.168.1.209 at 2010-06-04 14:36:52) [POST]
Parameters: {"back_url"=>"http%3A%2F%2Fredmine.mhtn.com%2Fredmine%2F", "action"=>"login", "authenticity_token"=>"7yg0ug5iUH14wRoiUm9gmlES5RvNYD/LHCjZ1SxLi0U=", "username"=>"DanW", "controller"=>"account", "password"=>"[FILTERED]", "login"=>"Login \302\273"}
Rendering template within layouts/base
Rendering account/login
Completed in 34ms (View: 13, DB: 1) | 200 OK [http://redmine.mhtn.com/redmine/login]

Is there a step up in logging that would give more information (verbose)?

RE: LDAP authentication against eDirectory - Added by Daniel Wells about 10 years ago

Here is what I think are the pertinent parts of the LDIF for the user in question (myself).

danw.ldif (9.41 KB)

RE: LDAP authentication against eDirectory - Added by Felix Schäfer about 10 years ago

Ok. so this being an "enterprise" solution (or at least it sounds like it), I suppose you will have to create an LDAP user for redmine to have access to the 4 fields you have configured at the bottom of the Redmine LDAP configuration pane. Could you provide some info about you have entered there? Furthermore: does the user DanW already exist in Redmine? IF yes have you switched him to the LDAP authentication scheme? If not, have you activated the automatic user creation?

RE: LDAP authentication against eDirectory - Added by Daniel Wells about 10 years ago

OK, I, went to check the settings and had a v-8 moment. The user used to connect to the LDAP server was not fully distinguished. Once that was taken care of, it worked.

Thanks for your help, you asked the right question to make me look and find my mistake.

I really appreciate the assistance!

RE: LDAP authentication against eDirectory - Added by Harrie Kierkels over 9 years ago

Hello Daniel,

Can you tell me what your Novell edirectory-setting are?
I'm facing the same problem.

Harrie

(1-7/7)