Question on idp.authn.LDAP.dnFormat

Jessica Coltrin jcoltrin at pdx.edu
Thu Oct 13 16:05:35 EDT 2016


We are adding service accounts to our IdP (version 3.2.1) and they have a
different dn format and we're trying to figure out how to do this. Any help
would be appreciated.

current dns for users are uid=jcoltrin,ou=people,dc=pdx,dc=edu
dns for service accounts are uid=iamtest,ou=service,dc=pdx,dc=edu

We've set this parameter
idp.authn.LDAP.userFilter  =
(&(|(ou:dn:=people)(ou:dn:=service))(uid={user}))

But are a little stuck on dnFormat, previously we had
idp.authn.LDAP.dnFormat = uid=%s,ou=people,dc=pdx,dc=edu

Thanks,
Jessica
-- 
*Jessica Coltrin*
Associate Director of IAM, Middleware & Databases
Computing Infrastructure Services
Office of Information Technology
Portland State University
503-725-9599
jcoltrin at pdx.edu
www.pdx.edu/oit
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20161013/e3664576/attachment.html>


More information about the users mailing list