LDAP Multi Search Base
Switch branches/tags
Nothing to show
Clone or download
Fetching latest commit…
Cannot retrieve the latest commit at this time.
Permalink
Failed to load latest commit information.
src
tomcat
.gitignore
README.md
pom.xml
run.sh

README.md

LDAP Multi Search Base

This Alfresco AMP module overrides the default beans for LDAP authentication/synchronization to allow authentication and synchronization of multiple user and group search bases within a single subsystem.

Disclaimer: This module has undergone limited testing. Use at your own risk.

Tested against Alfresco 5.0.c.

Configuration

The LDAP subsystem in the authentication chain must be named "ldap1" for this to work. Multiple ldap-multi-search-base LDAP subsystems are not yet supported.

In alfresco-global.properties: Both ldap.synchronization.userSearchBase and ldap.synchronization.groupSearchBase can take multiple distinguished names, which must be separated by a colon (:).

For example:

authentication.chain=alfrescoNtlm1:alfrescoNtlm,ldap1:ldap
ldap.synchronization.userSearchBase=ou\=mathematicians,dc\=example,dc\=com:ou\=scientists,dc\=example,dc\=com
ldap.synchronization.groupSearchBase=ou\=mathematicians,dc\=example,dc\=com:ou\=scientists,dc\=example,dc\=com