Page 1 of 1

LDAP users cannot change their own password

PostPosted:Fri May 11, 2012 10:39 am
by hzen
dear all,

I have configured OpenKm to authenticate agains LDAP server. Users log into OpenKM successfully but they cannot change password (througt Tool-> Preferrence -> Password).
Admin user also cannot create new user.

Herre is my login-config.xml
Code: Select all
    <!-- OpenKM -->
    <application-policy name = "OpenKM">
       <authentication>
         <login-module code="org.jboss.security.auth.spi.LdapExtLoginModule" flag="required" >
          <module-option name="java.naming.provider.url">ldap://127.0.0.1:389</module-option>
          <module-option name="java.naming.security.authentication">simple</module-option>
          <module-option name="bindDN">cn=admin,dc=domain,dc=vn</module-option>
          <module-option name="bindCredential">passwordadmin</module-option>
          <module-option name="baseCtxDN">ou=people,dc=domain,dc=vn</module-option>
          <module-option name="baseFilter">(uid={0})</module-option>
          <module-option name="rolesCtxDN">ou=roles,dc=domain,dc=vn</module-option>
          <module-option name="roleFilter">(memberUid={0})</module-option>
          <module-option name="roleAttributeID">cn</module-option>
          <module-option name="roleAttributeIsDN">false</module-option>
          <module-option name="roleRecursion">-1</module-option>
          <module-option name="searchScope">SUBTREE_SCOPE</module-option>
          <module-option name="allowEmptyPasswords">false</module-option>
          </login-module>
       </authentication>
    </application-policy>
What should I do to solve this problem?

Thank you.

Re: LDAP users cannot change their own password

PostPosted:Mon May 14, 2012 6:05 am
by jllort
Obviously user can not change their ldap password from openkm. It's only a read integration is not able to write in ldap that is not the idea.

Re: LDAP users cannot change their own password

PostPosted:Thu May 17, 2012 6:20 am
by hzen
I actually have guessed that's the reason why users cannot change their password from OpenKM.

My solution is to deploy an independent user-management app.

Thanks for your reply.

Re: LDAP users cannot change their own password

PostPosted:Thu May 17, 2012 10:27 am
by jllort
if you doing it with java we can try integrating some parts of your code into openkm