IDP 3.3 and Active Directory Account State

Daniel Fisher dfisher at vt.edu
Tue Oct 11 23:48:20 EDT 2016


I wanted to make note of an improvement for deployers who are using
the adAuthenticator LDAP authn configuration.

Setting
idp.authn.LDAP.returnAttributes=msDS-UserPasswordExpiryTimeComputed
should return account state warnings for password expirations.

For any Active Directory deployers who are planning on beta testing the
forthcoming release, I would appreciate any feedback you could offer on
this feature.
Thanks.

--Daniel Fisher
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20161011/84a5eb9b/attachment.html>


More information about the users mailing list