Uploaded image for project: 'Core Server'
  1. Core Server
  2. SERVER-24014

Cannot log in with native LDAP authentication, LDAP authorization, and ldapUserToDNMapping

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Major - P3
    • Resolution: Fixed
    • Affects Version/s: 3.3.5
    • Fix Version/s: 3.3.6
    • Component/s: None
    • Labels:
      None
    • Backwards Compatibility:
      Fully Compatible
    • Operating System:
      ALL
    • Epic Link:
    • Sprint:
      Security 14 (05/13/16)

      Description

      Both LDAP authentication and LDAP authorization perform userToDN mappings. The mapping performed by authentication is persisted and the resulting DN is used as the username during authorization. This is incorrect, because this postprocessed username might not match any rule in the ldapUserToDNMapping.

        Attachments

          Activity

            People

            • Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: