cancel
Showing results for 
Search instead for 
Did you mean: 

SMP/SUP 2.2 Active Directory Login

Former Member
0 Kudos

Hi Guys,

I have done the SUP620 training, in the documentation there is section to configure ldap authentication on SCC (and further on the device).

Now we have SUP 2.2 installed and the configuration does not work, I have nothing configured only created the authentication and authorization options

Has anybody configured it already?? Please Guys help me, I'm **** if I dont found a solution for that.

Best Regards

Michael

Accepted Solutions (1)

Accepted Solutions (1)

former_member199619
Participant
0 Kudos

Hi Michael,

This http://scn.sap.com/docs/DOC-25734 might be helpful for you.

Regards,

Shyam

Former Member
0 Kudos

Hi shyam,

Thank you very much for this...
I will try it today and give you a message if it is working...

Best Regards

Michael

Former Member
0 Kudos

Hi Shyam,

can you help us sup user creation and role mapping !!! please provide document for this ?

Best Regards,

Trinath.

Answers (6)

Answers (6)

Former Member
0 Kudos

Hello,

Thank you for your answere, I have successfully configured my login Module now.

But, for our AD I need the parameter "Role filter" (objectclass=group) and I dont need to enter a AD Port in the "Provider URL"...

But as I sad already my configuration is working fine with your Parameters and my changes..

THX
Michael

Former Member
0 Kudos

Hi Michael,

If it works for you. thanks to flag my answer as either correct answer or Helpful answer

Regards,

Mathieu

Former Member
0 Kudos

Hello

Tell me if it works for you.

Thanks.

Mathieu

Former Member
0 Kudos
Former Member
0 Kudos

Hello in fact, i didn't manage by modifying files

<SCC-install-directory>/conf/role-mapping.xml

<SCC-install-directory>/conf/ csi_config.xml. But it works when i have done this :

  1. Create groups "sybase” and  “SCC Administrator” in AD:
  2. I affect user in AD to these groups.
  3. In SCC, go in security on admin profil, in tab Authentification, i have created com.sybase.security.ldap.LDAPLoginModule profil:

controlFlag="sufficient"

AuthentificationSearchBase="ou=Users,dc=urb,dc=labo,dc=local"

ProviderURL="ldap://frrmurb-dct001.urb.labo.local:389"

RoleFilter="(&(objectClass=top)(objectClass=group))"

AuthenticationScope="subtree"

RoleScope="subtree"

BindDN="URB\SmpAdmin"

BindPassword="********"

DefaultSearchBase="ou=Users,dc=urb,dc=labo,dc=local"

RoleSearchBase="ou=Groups,dc=urb,dc=labo,dc=local"

ServerType="msad2k"

AuthentificationMethod="simple"

AuthenticationFilter="(&(sAMAccountName={uid})(objectclass=user))"

And remove other profils (if you want...).

Go to Role Mapping tab to mapp AD group with Role :

Former Member
0 Kudos

Hello,

No, I dont think that configuring these file are needed in SUP 2.2, and also the role mapping was configured in SCC.

But I have already the problem that the login is not working, so I m also waiting for a solution.

Br

Michael

Former Member
0 Kudos

Michael, Guys,

I am trying to configure the SUP 2.2.4 with the LDAP (Windows AD).

I configured the security. The communication with LDAP is ok, but I can´t authentic in SCC with network user

Doubt: Do I need to configure the file csi_conf to works? Do I need to create a role mapping?

Thank you.

Former Member
0 Kudos

Hi again,

I have configured sup 2.2 with your description but it doesnt work
Some points that look strange to me:
1. there is no csi.properties, only csi.config... is that the same? The use of this is not very good described... how can i uncommend things in there

2. the same with roles-map, the new name is role-mapping??
3. Is there any good log for troubleshooting? The errorcodes in the document are not realy clear, i get an other one.

4.Has anybody successfully configured SUP 2.2 with LDAP login for SCC?

Thanks and best regards

Michael

Former Member
0 Kudos

Hi Michel, how are you?

I have the same problema, the files csi.properties and raole-map does not existL

Can you configure the SUP with LDAP?

Thank you,

Eder.

Former Member
0 Kudos

Hello ,

In my case the csi.properties and role mapping are there, but they have an other format.

The naming of the 2 files are csi_config.xml and role-mappings.xml.

We havent successfully configured ldap at the moment, but we have opend an OSS Ticket by SAP.

I post the solution if I have one

Best Regards

Michael