cancel
Showing results for 
Search instead for 
Did you mean: 

Access Control End User Verification Logon Fails

Former Member
0 Kudos

Hello experts,

I configured LDAP as authentication source and set end user verification

to YES. But when I try to lo logon to end user page via ldap user

and password, I get the error "Invalid user credentials". When I set end

user verification to NO, I can login without password and reach

to my profil page. My customer wants to use this system to use pss and

and it is urgent for them.

Can you advise me what to do please..

Best regards,

Begüm

Accepted Solutions (0)

Answers (3)

Answers (3)

Former Member
0 Kudos

This message was moderated.

Former Member
0 Kudos

Thanks for your advise. I am waiting reply for if LDAP allow authentication.

By the way, I have a new question. Is there any configuration due to pss to unlock the users which are trying to reset their passwords? They are resetting their passwords but it is not enough for them when their users are locked.

Thanks,

Begüm

Former Member
0 Kudos

Hello!

Have you configured LDAP as per the document attached here??: Note 1584110 - GRC Access Controls 10 - How to configure LDAP connectors

Cheers,

Diego.

Former Member
0 Kudos

Hi Diego,

Yes, I configured as same as document. Everything works fine, I can searc LDAP users, details. But I can not login with LDAP password.

Thanks,

Begüm

koehntopp
Product and Topic Expert
Product and Topic Expert
0 Kudos

Are you sure you mapped the fields correctly? Does your LDAP even allow authentication (some don't)?

When I configure this I usually try to make the Netweaver AS Java use LDAP as a data source, then configure GRC AC to use UME (and by that, LDAP). Never failed me.

In any case, most likely the LDAP config is wrong even though your search works. Try setting log level to DEBUG and see what it tells you.

Frank.

former_member184114
Active Contributor
0 Kudos

Frank,

I am now facing the same problem.

Can you help me confirm if my LDAP allows authentication? How do I do that?

Secondly, what I did for mapping fields is that, in "LDAPMAP" tcode when I press "F6" it is pointing to note#983808. I am quite unable to follow this note at this point of time.

Therefore, I maintained the fields mapping manually as below:

After that still I am getting the below error:

Can you please help me?

Regards,

Faisal