• principal.ldap.user.search.filter

  • OpenKM has many interesting features, but requires some configuration process to show its full potential.
OpenKM has many interesting features, but requires some configuration process to show its full potential.
Forum rules: Please, before asking something see the documentation wiki or use the search feature of the forum. And remember we don't have a crystal ball or mental readers, so if you post about an issue tell us which OpenKM are you using and also the browser and operating system version. For more info read How to Report Bugs Effectively.
 #28441  by vincentk222
 
I have create groups in my AD, all groups looks like
ROLE_XXX
ROLE_RH
ROLE_INVOICE
....
ROLE_USER
ROLE_ADMIN

my standard "principal.ldap.user.search.filter" works fine for ROLE_USER & ROLE_ADMIN
(&(objectclass=user)(|(memberOf=CN=ROLE_ADMIN,OU=CKBC,OU=Domain Controllers,DC=test,DC=org)(memberOf=CN=ROLE_USER,OU=CKBC,OU=Domain Controllers,DC=test,DC=org)))

I have lot of group
I try to modify the LDAP request like : ....memberOf=CN=ROLE_*.... this doesn't work
I try to modify the LDAP request like : ....memberOf=CN=ROLE_ALL .... where ROLE_ALL incule all group I wan to have, this doesn't work

Do I have to had all group manually in the principal.ldap.user.search.filter?
 #28452  by jllort
 
No necessary, because all users to login at least must have one of this two roles, if they do not have one of these roles will not be able to login. Simply filter for it is enought

About Us

OpenKM is part of the management software. A management software is a program that facilitates the accomplishment of administrative tasks. OpenKM is a document management system that allows you to manage business content and workflow in a more efficient way. Document managers guarantee data protection by establishing information security for business content.