Spectrum Spatial (SSA/LIM)

Welcome to the Spectrum Spatial (SSA/LIM) community - start a discussion in the discussion tab or join in a conversation.

SSA Documentation  LIM Documentation  SSA Ideas  LIM Ideas

Discussions

Members

Resources

Events

 View Only
  • 1.  Spectrum Spatial and Ldap configuration

    Posted 08-25-2017 03:24

     I have Spectrum Spatial and SSA configured for LDAP and it is working ok, although the way it needs to be setup confines the searches to a single OU in active directory.

    Is there a way to setup Spectrum Spatial to iterate through multiple OU

    Our active directory has primary users and service account users defined in separate locations in multiple OU.

    Any thoughts would be appreciated

     cheers

    Here is some additional info on searching multiple ou

    https://stackoverflow.com/questions/9184978/ldap-root-query-syntax-to-search-more-than-one-specific-ou



  • 2.  RE: Spectrum Spatial and Ldap configuration

    Posted 08-28-2017 00:57

    It would be just as useful to utilise Active Directory security group membership?s for this purpose.



  • 3.  RE: Spectrum Spatial and Ldap configuration

    Posted 08-28-2017 18:12

    ?Hi Amita, thanks for that.

    This ability to iterate through multiple OU as a basic functionality and flexibility will be needed by most corporate environments that make use of Active Directory, nested OU structures are common and allow granular application of global security policies.

    cheers



  • 4.  RE: Spectrum Spatial and Ldap configuration

    Posted 08-28-2017 19:29

    Hi Amita,

    Thanks i'll do that, I realise that this is a tricky one with various ways of tackling the technical side of it.

    cheers

     



  • 5.  RE: Spectrum Spatial and Ldap configuration

    Posted 09-13-2017 18:58

    Hi Amita,

    After extensive testing of all the combination of settings available, I have found a ?combination that works for what I am trying to achieve.

    Spectrum.ldap.dn.format set at %s@domain

    Spectrum.ldap.dn.base set at DC=adc,DC=govt,DC=nz    :(top of the domain tree)

    Spectrum.ldap.search.filter set at sAMAccountName={user}

    I have let PB support know to update engineering with this and to maybe include this as a note in the Ldap settings document, that if your having issues try that combination.

    Hopefully this helps others

    cheers