Ldap breaks after moving to M5
I get this error when logging into my new M5 repository:
My ldap authenticaion in Beta 2 was via Websphere Application Server. I checked "Enterprise Applications > jazz_war > Security role to user/group mapping" in the WAS Admin console and everything checks out. I also saw this in the Jazz Admin console: com.ibm.team.repository.service.internal.userregistry.LDAPUserRegistryProvider Edit View Do I need to set the Ldap in WAS and the Jazz Admin Console? Thanks! |
15 answers
M5a is available at
https://jazz.net/downloads/DownloadItem.jsp?type=milestone&href=milestones/data/0.6M5a -- Balaji "David Ward" <davidward@us.ibm.com> wrote in message news:fq6cv8$7ep$1@localhost.localdomain... Thanks Ritchie |
Thanks Ritchie
I'll wait for the patch Ritchie Schacher wrote: See Ability to map Jazz role names to LDAP group names in order to use the |
See Ability to map Jazz role names to LDAP group names in order to use the
Import users from LDAP feature (45900) (web). -- Ritchie ********************************************** Ritchie Schacher Jazz Repository/Server Team "David Ward" <davidward@us.ibm.com> wrote in message news:fq4d7n$bu5$1@localhost.localdomain... OK, so no IBM team using Jazz with bluepages for authentication will be |
Daan,
There is a Defect (46090) that is tracking issues blocking adoption of LDAP import feature. Please make sure any blocking issues you may have are addressed in it. |
We currently use LDAP to authenticate Jazz users to a Windows-AD domain. Our corporate guidelines mandate strict naming conventions on active-directory user and group names.
So we should probably also wait for this patch before upgrading to M5 ? regards Daan. |
OK, so no IBM team using Jazz with bluepages for authentication will be
able to use M5 except for, perhaps, the first team who grabbed the bluegroup names starting with Jazz*. Is my understanding correct here ? If so, I'll have to shelve my plans to use M5 until this patch is released. Balaji Krish wrote: David, |
David,
We had plans to support mapping of Jazz group names to actual LDAP group names. We did not get a chance to finish the implementation by M5. We might provide this feature as a patch if this is a restriction for other groups at IBM to move to M5. I will keep you updated about our plans for a M5 patch. ------ Balaji "David Ward" <davidward@us.ibm.com> wrote in message news:fq2ii5$g9j$1@localhost.localdomain... I'm about to upgrade from Beta2a to M5. Using Bluegroups and WAS |
I created this enhancement request https://jazz.net/jazz/web/projects/Jazz%20Project#action=com.ibm.team.workitem.viewWorkItem&id=45900.
|
I created this enhancement request https://jazz.net/jazz/web/projects/Jazz%20Project#action=com.ibm.team.workitem.viewWorkItem&id=45900.
|
I'm about to upgrade from Beta2a to M5. Using Bluegroups and WAS
and everything's working well. Did I understand correctly that M5 requires the LDAP group names (i.e. blue group names) to match the Jazz roles ? I don't see how that can be done if the LDAP server is shared by multiple (separate) Jazz projects each with their own servers. Any help appreciated Ritchie Schacher wrote: Hi Aaron, |
Your answer
Dashboards and work items are no longer publicly available, so some links may be invalid. We now provide similar information through other means. Learn more here.