2.8 LDAP using MS Active Directory

Discuss problems installing or using TrackStudio.

2.8 LDAP using MS Active Directory

Postby victor » Wed Sep 24, 2003 10:25 pm

Hello,

I am going to test the LDAP facility over a MS-Windows 2000 installation using Active Directory (that is supposed to be LDAP compliant).

Are you tested LDAP over this environment? any tip?

Thanks a lot,
Víctor J. Tomás
Computer Engineer
victor
 
Posts: 253
Joined: Tue Sep 23, 2003 11:03 pm
Location: Bs.As, Argentina

Re: 2.8 LDAP using MS Active Directory

Postby admin » Thu Sep 25, 2003 12:35 am

victor wrote:Hello,

I am going to test the LDAP facility over a MS-Windows 2000 installation using Active Directory (that is supposed to be LDAP compliant).

Are you tested LDAP over this environment? any tip?

Thanks a lot,


Yes, we test it, you can use Active Directory for user authentication. Just point TrackStudio to your server url and send how to authenticate users - by login or by name.
Maxim Kramarenko (mailto: maximkr@trackstudio.com)
TrackStudio - Hierarchical Bug & Issue Tracking Software
http://www.trackstudio.com
admin
Site Admin
 
Posts: 7452
Joined: Thu Jan 01, 1970 3:00 am
Location: Smolensk, Russia

Re: 2.8 LDAP using MS Active Directory

Postby victor » Thu Sep 25, 2003 9:28 pm

admin wrote:
victor wrote:Hello,

I am going to test the LDAP facility over a MS-Windows 2000 installation using Active Directory (that is supposed to be LDAP compliant).

Are you tested LDAP over this environment? any tip?

Thanks a lot,


Yes, we test it, you can use Active Directory for user authentication. Just point TrackStudio to your server url and send how to authenticate users - by login or by name.


Trying it I obtain this error:

09/25 15:10:40.427|gran.app.adapter.kernel.user.BaseUserAdapter | authenticate called
09/25 15:10:40.477|gran.app.adapter.auth.SimpleAuthAdapter | authorize called
09/25 15:10:40.517|gran.app.adapter.auth.LDAPAuthAdapter | authorize called
09/25 15:10:40.707|gran.app.adapter.auth.LDAPAuthAdapter | Connecting to aries 389
09/25 15:10:40.787|gran.app.adapter.auth.LDAPAuthAdapter | Authenticating vtomas
09/25 15:10:40.937|gran.app.adapter.auth.LDAPAuthAdapter | Failed to authenticate to aries: netscape.ldap.LDAPException: error result (49); 80090308: LdapErr: DSID-0C09030B, comment: AcceptSecurityContext error, data 525, v893
Víctor J. Tomás
Computer Engineer
victor
 
Posts: 253
Joined: Tue Sep 23, 2003 11:03 pm
Location: Bs.As, Argentina

Re: 2.8 LDAP using MS Active Directory

Postby admin » Thu Sep 25, 2003 10:07 pm

victor wrote:09/25 15:10:40.937|gran.app.adapter.auth.LDAPAuthAdapter | Failed to authenticate to aries: netscape.ldap.LDAPException: error result (49); 80090308: LdapErr: DSID-0C09030B, comment: AcceptSecurityContext error, data 525, v893


I found post about such error:
http://www.atmarkit.co.jp/bbs/phpBB/vie ... 6&forum=12

But I am not very good with Japaneese ;-(

You should have user with equal login (or name) both in TrackStudio and ADS. Have you ?
Maxim Kramarenko (mailto: maximkr@trackstudio.com)
TrackStudio - Hierarchical Bug & Issue Tracking Software
http://www.trackstudio.com
admin
Site Admin
 
Posts: 7452
Joined: Thu Jan 01, 1970 3:00 am
Location: Smolensk, Russia

Re: 2.8 LDAP using MS Active Directory

Postby victor » Fri Sep 26, 2003 3:28 pm

admin wrote:You should have user with equal login (or name) both in TrackStudio and ADS. Have you ?


Yes, I have a user with the login in ADS equal to the login and name in TS, is it ok?

Do I need any account to use ADS?
Do I need install or configure any thing to use the LDAP of ADS?

Actually we are using ADS but not his LDAP port, I test it with TS and it is ok, but I dont know more about it and our administrator neither.
Víctor J. Tomás
Computer Engineer
victor
 
Posts: 253
Joined: Tue Sep 23, 2003 11:03 pm
Location: Bs.As, Argentina

Re: 2.8 LDAP using MS Active Directory

Postby admin » Fri Sep 26, 2003 3:33 pm

victor wrote:
admin wrote:You should have user with equal login (or name) both in TrackStudio and ADS. Have you ?


Yes, I have a user with the login in ADS equal to the login and name in TS, is it ok?

Yes

victor wrote:Do I need any account to use ADS?
Do I need install or configure any thing to use the LDAP of ADS?


No, you need to know just server name and port.

victor wrote:Actually we are using ADS but not his LDAP port, I test it with TS and it is ok, but I dont know more about it and our administrator neither.

We test it with LDAP port and all works find with our ADS.
OK, I'll try to reproduce this bug.
Maxim Kramarenko (mailto: maximkr@trackstudio.com)
TrackStudio - Hierarchical Bug & Issue Tracking Software
http://www.trackstudio.com
admin
Site Admin
 
Posts: 7452
Joined: Thu Jan 01, 1970 3:00 am
Location: Smolensk, Russia

Re: 2.8 LDAP using MS Active Directory

Postby victor » Fri Sep 26, 2003 3:56 pm

[quote="admin
We test it with LDAP port and all works find with our ADS.
OK, I'll try to reproduce this bug.[/quote]

I find a MS article: "How to Configure Active Directory to Allow Anonymous Queries" (http://support.microsoft.com/default.as ... -us;320528)

Do you need anonymous access?
Víctor J. Tomás
Computer Engineer
victor
 
Posts: 253
Joined: Tue Sep 23, 2003 11:03 pm
Location: Bs.As, Argentina

Re: 2.8 LDAP using MS Active Directory

Postby admin » Fri Sep 26, 2003 3:59 pm

[quote="victorI find a MS article: "How to Configure Active Directory to Allow Anonymous Queries" (http://support.microsoft.com/default.as ... -us;320528)
Do you need anonymous access?[/quote]

I don't know. I'll check this article.
Maxim Kramarenko (mailto: maximkr@trackstudio.com)
TrackStudio - Hierarchical Bug & Issue Tracking Software
http://www.trackstudio.com
admin
Site Admin
 
Posts: 7452
Joined: Thu Jan 01, 1970 3:00 am
Location: Smolensk, Russia

Re: 2.8 LDAP using MS Active Directory

Postby victor » Fri Sep 26, 2003 4:03 pm

admin wrote:I don't know. I'll check this article.


One thing: we are using MS Windows 2000 (not 2003)

Maybe you know it but I find this too:
http://www.activedir.org/ (with faq included)
Víctor J. Tomás
Computer Engineer
victor
 
Posts: 253
Joined: Tue Sep 23, 2003 11:03 pm
Location: Bs.As, Argentina

Re: 2.8 LDAP using MS Active Directory

Postby victor » Fri Sep 26, 2003 4:30 pm

admin wrote:
victor wrote:09/25 15:10:40.937|gran.app.adapter.auth.LDAPAuthAdapter | Failed to authenticate to aries: netscape.ldap.LDAPException: error result (49); 80090308: LdapErr: DSID-0C09030B, comment: AcceptSecurityContext error, data 525, v893


I found post about such error:
http://www.atmarkit.co.jp/bbs/phpBB/vie ... 6&forum=12

But I am not very good with Japaneese ;-(

You should have user with equal login (or name) both in TrackStudio and ADS. Have you ?


I discovered that error is: ERROR_NO_SUCH_USER (Hex.525)

Maybe we have not the users in the LDAP database. I dont know this because we are not using it.

Note: I solve the error code looking a windows powerpoint (page 91 of 102):
http://www.microsoft.com/windows2000/te ... y/ldap.asp
(http://download.microsoft.com/download/ ... /uldap.exe)
Víctor J. Tomás
Computer Engineer
victor
 
Posts: 253
Joined: Tue Sep 23, 2003 11:03 pm
Location: Bs.As, Argentina

Next

Return to TrackStudio Support

Who is online

Users browsing this forum: No registered users and 1 guest