Jazz Forum Welcome to the Jazz Community Forum Connect and collaborate with IBM Engineering experts and users

Read-only LDAP + Tomcat

Hi,

We are using 2.0.0.2 standard edition. We need to use LDAP for authentication. But we are not able to change the LDAP group definition. That is, Jazz groups can not be added on the LDAP server. Anyone knows how to do group mapping in other ways? We have to use Tomcat, the LDAP (Microsoft Active Directory) is read-only.

Any suggestion is appreciated. Thank you very much.

Lin

0 votes



2 answers

Permanent link
Hi Lin,
We had a similar issue during the period we set up RTC where we are. Even though the user that tomcat used to communicate with the LDAP server had permission to modify the members of the JazzUsers and JazzAdmin groups, it still said Read Only. The IBM/Rational consultant looked into this and found that when using LDAP, it is hard coded to be Read Only so there was no chance of getting this working.

We now manually add the users to the required groups.

I've just spotted this work item though which sounds promising:

https://jazz.net/jazz/web/projects/Rational%20Team%20Concert#action=com.ibm.team.workitem.viewWorkItem&id=86995

Jas

Hi,

We are using 2.0.0.2 standard edition. We need to use LDAP for authentication. But we are not able to change the LDAP group definition. That is, Jazz groups can not be added on the LDAP server. Anyone knows how to do group mapping in other ways? We have to use Tomcat, the LDAP (Microsoft Active Directory) is read-only.

Any suggestion is appreciated. Thank you very much.

Lin

0 votes


Permanent link
Hi Jas,

Thank you very much for your help. Finally we decided to use tomcat-users.xml as the user data source.

Lin

Hi Lin,
We had a similar issue during the period we set up RTC where we are. Even though the user that tomcat used to communicate with the LDAP server had permission to modify the members of the JazzUsers and JazzAdmin groups, it still said Read Only. The IBM/Rational consultant looked into this and found that when using LDAP, it is hard coded to be Read Only so there was no chance of getting this working.

We now manually add the users to the required groups.

I've just spotted this work item though which sounds promising:

https://jazz.net/jazz/web/projects/Rational%20Team%20Concert#action=com.ibm.team.workitem.viewWorkItem&id=86995

Jas

Hi,

We are using 2.0.0.2 standard edition. We need to use LDAP for authentication. But we are not able to change the LDAP group definition. That is, Jazz groups can not be added on the LDAP server. Anyone knows how to do group mapping in other ways? We have to use Tomcat, the LDAP (Microsoft Active Directory) is read-only.

Any suggestion is appreciated. Thank you very much.

Lin

0 votes

Your answer

Register or log in to post your answer.

Dashboards and work items are no longer publicly available, so some links may be invalid. We now provide similar information through other means. Learn more here.

Search context
Follow this question

By Email: 

Once you sign in you will be able to subscribe for any updates here.

By RSS:

Answers
Answers and Comments
Question details

Question asked: Jan 27 '10, 10:54 a.m.

Question was seen: 5,381 times

Last updated: Jan 27 '10, 10:54 a.m.

Confirmation Cancel Confirm