Uploaded image for project: 'OpenAM'
  1. OpenAM
  2. OPENAM-14262

Active Directory Data Store configuration of LDAP User & Groups Container Value - can be blank

    Details

    • Sprint:
      2019.2 - AM Docs - Hmm
    • Story Points:
      1
    • Needs backport:
      No
    • Support Ticket IDs:
    • Needs QA verification:
      No
    • Functional tests:
      No
    • Are the reproduction steps defined?:
      Yes and I used the same an in the description

      Description

      Docs for the Active Directory DataStore configuration , should explain that the LDAP People and Group Container value field can be blank. If you put a value in the field, it will force AM to look in that specific container for users and/or groups. But if you leave the LDAP People Container Value and LDAP Group Container Value blank, it will list ALL users and groups in AD.

      Current docs show this:

      LDAP People Container Value
      RDN attribute value of the LDAP base DN which contains user profiles.
      
      ssoadm attribute: sun-idrepo-ldapv3-config-people-container-value
      
      Default: users
      

      and

      LDAP Groups Container Value
      RDN attribute value of the LDAP base DN which contains group profiles.
      
      ssoadm attribute: sun-idrepo-ldapv3-config-group-container-value
      
      Default: users
      

      These do not explain what happens if there is no value, or that it can even be blank.

        Attachments

          Activity

            People

            • Assignee:
              chris.lee Chris Lee
              Reporter:
              david.bate David Bate
            • Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: