Shibboleth Native LDAP Authentication and Binding with User Credentials

Nate Klingenstein ndk at sudonym.me
Wed May 9 15:19:26 EDT 2018


Roberto,

I assume that by "bind to LDAP using the user's credentials", that you mean
you do anonymous BINDs.  If so, you can probably use the
anonSearchAuthenticator, for which there is indeed a property.

https://wiki.shibboleth.net/confluence/display/IDP30/LDAPAuthnConfiguration

I don't believe that you'd want to store the user's credentials anywhere if
you can avoid it.

Hope this helps,
Nate.

On Wed, May 9, 2018 at 11:59 AM, Ullfig, Roberto Alfredo <rullfig at uic.edu>
wrote:

> I’m looking at configuring the native shibboleth authentication service
> but historically we bind to ldap using the user’s credentials (not root or
> admin). Are those stored in some variable that can be accessed in the bean
> in authn/ldap-authn-config.xml? Thanks!
>
>
>
> ---
>
> Roberto Ullfig - rullfig at uic.edu
>
> Systems Administrator
>
> Enterprise Architecture and Development | ACCC
>
> University of Illinois - Chicago
>
>
>
> --
> For Consortium Member technical support, see https://wiki.shibboleth.net/
> confluence/x/coFAAg
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20180509/78255285/attachment.html>


More information about the users mailing list