Focal Point
Problems with LDAP configuration.

This topic can be found at:
https://forums.informationbuilders.com/eve/forums/a/tpc/f/7971057331/m/2451018331

November 29, 2004, 05:54 PM
newtofocus
Problems with LDAP configuration.
Hi,

I have added my self as an administrator in MRE and then configured WebFOCUS to use LDAP.
When I login it works great. But if I add a new user(of course with no password in MRE) the LDAP authentication fails for the new user inspite of supplying correct password that is in the LDAP repository. Any help is greatly appreciated.


Thanks.
November 29, 2004, 08:45 PM
George Brown
This may sound silly but did you set your "local" password for MRE to be the same as your LDAP password?

If you did, I would login to MRE and change the password to something other than your LDAP password to make sure that you are indeed authenticating to LDAP.

It's not much but at least you'll know if your ID is actually authenticating to LDAP or not.
December 01, 2004, 06:07 PM
newtofocus
Finally, I was succesful with authenticating over port 389(non secured).

I was wondering if there is any one out there that succesfully implemented authentication over port 636(SSL)?. If yes can you pleae tell me how to deal with the generation and importing of the certificates into keystore.

Thanks,
Chandra.
December 07, 2004, 05:17 PM
<Jim Thorstad - WF Product Mgt.>
Both the 52 MR LDAP Wizard authentication driver and the 53 MR Realm Driver support secure LDAP connections as an option. If you need help configuring your JVM to make SSL connections you should contact Customer Support and open up a Hottrack case. There are people in support who are specifically trained to answer security questions and they have helped several customers with LDAP / SSL issues, including tips on setup issues that are outside the scope of our product (such as certificates).

You'll need to provide your MR release, App Server make and version, JVM make and version, and the operating system your App server runs on.

We are working to enhance the documentation on these kinds of topics but let's get you running first. Perhaps you can post a conclusion to this thread after you are up and running.