Shibboleth Identity Provider 3.2.1 custom authentication configuration

Daniel Fisher dfisher at vt.edu
Sat Jul 9 00:38:26 EDT 2016


On Fri, Jul 8, 2016 at 12:42 PM, Raymond Gardner <r.gardner at ntta.com> wrote:

> I looked into an “aggregateAuthenticator” configuration.  Here
> <https://wiki.shibboleth.net/confluence/display/IDP30/LDAPAuthnConfiguration#LDAPAuthnConfiguration-AuthenticatorConfiguration>
> is some good wiki info.
>
> I’m not having any luck getting this to work.  I need a searchDnResolver
> for LDAP1 but LDAP2 is an AD instance and it is not setup to support
> searching.
>
> LDAP2 requires a direct bind using the usernamePrime.  (I don’t administer
> this AD server.  I’m trying to work with it as is.)
>

I'm confused. LDAP2 is an AD instance. Can the DNs for LDAP2 be resolved
using the FormatDnResolver? Or do you have to search a database to resolve
them?

--Daniel Fisher
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20160709/93664b62/attachment.html>


More information about the users mailing list