Authenticated memberof group

Liam Hoekenga liamr at umich.edu
Wed May 3 16:38:14 EDT 2017


On Wed, May 3, 2017 at 3:30 PM, Daniel McDonald <daniel.mcdonald at umb.edu>
wrote:

> I tried this next line but it didnt seem to work, users not in the group
> are able to login:
>
>  <FilterTemplate>
>             <![CDATA[
>                 (&(mail=$requestContext.principalName)(memberOf=CN=
> MyGroup,CN=Users,DC=school,DC=net))
>             ]]>
>  </FilterTemplate>
>

Is your "mail" attribute unique to the principal?

Liam
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20170503/2dcad99d/attachment.html>


More information about the users mailing list