• Active Directory groups to user role

  • OpenKM has many interesting features, but requires some configuration process to show its full potential.
OpenKM has many interesting features, but requires some configuration process to show its full potential.
Forum rules: Please, before asking something see the documentation wiki or use the search feature of the forum. And remember we don't have a crystal ball or mental readers, so if you post about an issue tell us which OpenKM are you using and also the browser and operating system version. For more info read How to Report Bugs Effectively.
 #15678  by teh.support
 
Hello!
I have OpenKM version 5.1.9 installed. JBOSS is configured to use both OpenKM database and MS AD authentication in three sections of jBOSS login-config.xml
one for the okmAdmin, one for AD users with admin role and another one for AD users with user role.
There in my AD I create OU "okm" for all okm-related stuff, and, inside it, user okm for reading AD, group okmUsers, group okmAdmins.
All works fine except one thing: I can add any user to members of group okmUsers and they will be able to log-in, but when I add a group ("finance", for example) to members of okmUsers, members of group "finance" can`t log-in with error "no matches found" in jboss security log.
I don`t understand what should I change in the login-config.xml to enable group adding to the OKM-users.
Sure, I can add all users manually, but our AD contains more than 1000 users and groups, and I don`t need all of them inside OKM, only 300-400.
 #16734  by jllort
 
great job, it's not trivial configure AD and need pacience and some time for doing it.
 #16745  by teh.support
 
Thanks :)
Yes, it was very difficult, and take a lot of my time, but I understand that there no way to make it much easier, because it depends on type of ldap server, ldap structure and needs of company.

About Us

OpenKM is part of the management software. A management software is a program that facilitates the accomplishment of administrative tasks. OpenKM is a document management system that allows you to manage business content and workflow in a more efficient way. Document managers guarantee data protection by establishing information security for business content.