Digital Developer Conference: a FREE half-day online conference focused on AI & Cloud – North America: Nov 2 – India: Nov 9 – Europe: Nov 14 – Asia Nov 23 Register now

Close outline
  • United States
IBM?
  • Site map
IBM?
  • Marketplace

  • Close
    Search
  • Sign in
    • Sign in
    • Register
  • IBM Navigation
IBM Developer Answers
  • Spaces
    • Blockchain
    • IBM Cloud platform
    • Internet of Things
    • Predictive Analytics
    • Watson
    • See all spaces
  • Tags
  • Users
  • Badges
  • FAQ
  • Help
Close

Name

Community

  • Learn
  • Develop
  • Connect

Discover IBM

  • ConnectMarketplace
  • Products
  • Services
  • Industries
  • Careers
  • Partners
  • Support
10.190.13.195

Refine your search by using the following advanced search options.

Criteria Usage
Questions with keyword1 or keyword2 keyword1 keyword2
Questions with a mandatory word, e.g. keyword2 keyword1 +keyword2
Questions excluding a word, e.g. keyword2 keyword1 -keyword2
Questions with keyword(s) and a specific tag keyword1 [tag1]
Questions with keyword(s) and either of two or more specific tags keyword1 [tag1] [tag2]
To search for all posts by a user or all posts with a specific tag, start typing and choose from the suggestion list. Do not use a plus or minus sign with a tag, e.g., +[tag1].
  • Ask a question

Performing Authentication Using LLDAP

restuser gravatar image
Question by restuser  (11440) | May 18, 2015 at 04:00 AM datacap

Hi All,

I am trying to perform Authentication using LLDAP wherein I am using a LDAP configured on a remote server to perform authentication.

Can anyone please help me with the steps to be followed for changing the authentication from TMA to LLDAP ?

The steps provided in the knowledge center only covers how to change the authentication in Taskmaster Server Manager (Datacap 9.0).

But I do not get how one login once the authentication is changed.

Regards,

Akash

People who like this

  0
Comment
10 |3000 characters needed characters left characters exceeded
  • Viewable by all users
  • Viewable by moderators
  • Viewable by moderators and the original poster

13 answers

  • Sort: 
2700069UG4 gravatar image

Answer by ShaunM2 (51) | Jun 01, 2015 at 10:55 AM

Hi Akash,

I think you won't need the suffix .dou.com on the group name in Taskmaster. This is necessary in LDAP but not in LLLDAP. Try renaming the Group to fdrfdev_ts_team, save the group, log out, restart the Datacap Server service and then try logging in again.

Shaun

Comment

People who like this

  0   Share
10 |3000 characters needed characters left characters exceeded
  • Viewable by all users
  • Viewable by moderators
  • Viewable by moderators and the original poster
2700006BSN gravatar image

Answer by jfernan147 (4089) | Jun 01, 2015 at 09:27 PM

For LLLDAP, you don't need to append the domain name to the group name. The group name in Taskmaster should match exactly to the group name in your directory server.

From the logs, it actually appears that the directory provider did not return any groups. Could be a problem with the groupmembershipsearchfilter and/or groupsearchfilter.

Groupsearchfilter is a query that is supposed to return all relevant groups and membershipsearchfilter is supposed to return groups that user is a member of.

You might want to try those two LDAP queries outside of Datacap in something like LDP.exe or LDAP Browser, etc. to see if they return expected results.

Comment

People who like this

  0   Share
10 |3000 characters needed characters left characters exceeded
  • Viewable by all users
  • Viewable by moderators
  • Viewable by moderators and the original poster
restuser gravatar image

Answer by restuser (11440) | Jun 02, 2015 at 04:22 AM

Thanks Shaun and jfernan for you replies!!!

I have removed the domain name from the group in Taskmaster.

I used LDP.EXE and I was actually able to search for the user and group from my LDAP with the above search filters:

USER:

***Searching...
ldap_search_s(ld, "o=dou.com", 1, "(&(objectClass=person)(uid=fdrfdev_user1))", attrList, 0, &msg)
Result <0>: (null)
Matched DNs:
Getting 1 entries:
>> Dn: uid=fdrfdev_user1,o=dou.com
4> objectClass: top; person; organizationalPerson; inetOrgPerson;
1> cn: fdrfdev_user1;

GROUP :

***Searching...
ldap_search_s(ld, "o=dou.com", 2, "(|(&(objectclass=groupOfNames)(member=uid=fdrfdev_user1,o=dou.com))(&(objectclass=groupOfUniqueNames)(uniqueMember=uid=fdrfdev_user1,o=dou.com)))", attrList, 0, &msg)
Result <0>: (null)
Matched DNs:
Getting 1 entries:
>> Dn: cn=fdrfdev_ts_team,ou=dougroups,o=dou.com
3> objectClass: ibm-nestedGroup; groupOfUniqueNames; top;
2> ou: memberlist; dougroups;
1> cn: fdrfdev_ts_team;

For searching groups, I have to check the subtree option to get the above results.

What I feel at this point is that its unable to match this user group from ldap to the one in taskmaster .

LOGS :

06/01/15 14:39:58.516 1 3de0 <LLLDAP Groups> Taskmaster Group Authentication selected.
06/01/15 14:39:58.516 1 3de0 <LLLDAP Groups> Number of Groups Found "0".
06/01/15 14:39:58.516 4 3de0 <ITMA> Authenticator reported the user belongs to 0 groups
06/01/15 14:39:58.516 4 3de0 <ITMA> Login fails. Couldn't find matching Taskmaster group

Do you think is there some thing which can be missing from taskmaster settings ? I am using Datacap 9.0 if I have not mentioned it before.

Again, Thanks a lot for your help !

Regards,

Akash

Comment

People who like this

  0   Share
10 |3000 characters needed characters left characters exceeded
  • Viewable by all users
  • Viewable by moderators
  • Viewable by moderators and the original poster
  • ‹
  • 1
  • 2

Follow this question

103 people are following this question.

Answers

Answers & comments

Related questions

How to rename a Datacap Application? 2 Answers

Export .TIF or .TIO 1 Answer

NEW!! IBM Datacap Mobile SDK and Shrink Wrapped App 1 Answer

Auto deletion of Blank Pages and Separator in FastDoc. 1 Answer

Create New Dictionary using API 1 Answer

  • Contact
  • Privacy
  • IBM Developer Terms of use
  • Accessibility
  • Report Abuse
  • Cookie Preferences

Powered by AnswerHub

Authentication check. Please ignore.
  • Anonymous
  • Sign in
  • Create
  • Ask a question
  • Spaces
  • API Connect
  • Analytic Hybrid Cloud Core
  • Application Performance Management
  • Appsecdev
  • BPM
  • Blockchain
  • Business Transaction Intelligence
  • CAPI
  • CAPI SNAP
  • CICS
  • Cloud Analytics
  • Cloud Automation
  • Cloud Object Storage
  • Cloud marketplace
  • Collaboration
  • Content Services (ECM)
  • Continuous Testing
  • Courses
  • Customer Experience Analytics
  • DB2 LUW
  • Data and AI
  • DataPower
  • Decision Optimization
  • DevOps Build
  • DevOps Services
  • Developers IBM MX
  • Digital Commerce
  • Digital Experience
  • Finance
  • Global Entrepreneur Program
  • Hadoop
  • Hybrid Cloud Core
  • Hyper Protect
  • IBM Cloud platform
  • IBM Design
  • IBM Forms Experience Builder
  • IBM Maximo Developer
  • IBM StoredIQ
  • IBM StoredIQ-Cartridges
  • IIDR
  • ITOA
  • InformationServer
  • Integration Bus
  • Internet of Things
  • Kenexa
  • Linux on Power
  • LinuxONE
  • MDM
  • Mainframe
  • Messaging
  • Node.js
  • ODM
  • Open
  • PartnerWorld Developer Support
  • PowerAI
  • PowerVC
  • Predictive Analytics
  • Product Insights
  • PureData for Analytics
  • Push
  • QRadar App Development
  • Run Book Automation
  • Search Insights
  • Security Core
  • Storage
  • Storage Core
  • Streamsdev
  • Supply Chain Business Network
  • Supply Chain Insights
  • Swift
  • UBX Capture
  • Universal Behavior Exchange
  • UrbanCode
  • WASdev
  • WSRR
  • Watson
  • Watson Campaign Automation
  • Watson Content Hub
  • Watson Marketing Insights
  • dW Answers Help
  • dW Premium
  • developerWorks Sandbox
  • developerWorks Team
  • Watson Health
  • More
  • Tags
  • Questions
  • Users
  • Badges