That is one way of doing it. An option should be added to indicate whether the username as passed to the login module should be used or the userDN.
Thanks for changing the code to allow this
Can anyone pls tell me how to configure LDAP with JBoss ???
I m very new to LDAP & have no idea abt LDAP.
Does it require any LDAP s/w ??? If so, how to configure it with JBoss ??? From where will I get it ??
Also, is there any sample code provided using LDAP with JBoss ????
Thanks & Regards,
lrem, can you please provide the .ldif files that makes up your db,
along with your auth.conf file??
I mean it seems to me that the LdapLoginModule is designed
as to *select* the rolenames where uidattribute=*user supplied id",
or uidattribute="user's DN", but what we need at the end is
a list of pure role names like:
and so on.
If we set up the roles to be uniquemembers of
a groupofuniquenames object, all we get is something like
uniquemember: cn=role2, which clearly will fail the authorization
since what we need is to get role1,role2.
Am i missing some part?
How did you do it?
Also, since most commercial ldap configurations (like lotus domino notes server), represent the groups like a set of persons,
it would be natural to search for group names that *have* this
user instead of searching for the roles of a user.
Groups = Roles