<?xml version="1.0" encoding="UTF-8"?><rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
> <channel><title>Comments on: Fitting Grails in an Active Directory and NTLM SSO Groove</title> <atom:link href="http://www.nslms.com/2010/02/10/fitting-grails-in-an-active-directory-and-ntml-sso-groove/feed/" rel="self" type="application/rss+xml" /><link>http://www.nslms.com/2010/02/10/fitting-grails-in-an-active-directory-and-ntml-sso-groove/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=rss</link> <description></description> <lastBuildDate>Fri, 02 Dec 2011 06:36:17 +0000</lastBuildDate> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3</generator> <item><title>By: siva</title><link>http://www.nslms.com/2010/02/10/fitting-grails-in-an-active-directory-and-ntml-sso-groove/comment-page-1/#comment-1622</link> <dc:creator>siva</dc:creator> <pubDate>Thu, 12 May 2011 09:46:15 +0000</pubDate> <guid
isPermaLink="false">http://www.nslms.com/?p=383#comment-1622</guid> <description>any updates???</description> <content:encoded><![CDATA[<p>any updates???</p> ]]></content:encoded> </item> <item><title>By: siva</title><link>http://www.nslms.com/2010/02/10/fitting-grails-in-an-active-directory-and-ntml-sso-groove/comment-page-1/#comment-1621</link> <dc:creator>siva</dc:creator> <pubDate>Thu, 12 May 2011 09:44:32 +0000</pubDate> <guid
isPermaLink="false">http://www.nslms.com/?p=383#comment-1621</guid> <description>i`m getting below error while following the tutorial ..
please help
The exception is org.springframework.security.AuthenticationServiceException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C090334, comment: AcceptSecurityContext error, data 525, vece</description> <content:encoded><![CDATA[<p>i`m getting below error while following the tutorial ..<br
/> please help</p><p>The exception is org.springframework.security.AuthenticationServiceException: [LDAP: error code 49 &#8211; 80090308: LdapErr: DSID-0C090334, comment: AcceptSecurityContext error, data 525, vece</p> ]]></content:encoded> </item> <item><title>By: javazquez</title><link>http://www.nslms.com/2010/02/10/fitting-grails-in-an-active-directory-and-ntml-sso-groove/comment-page-1/#comment-1586</link> <dc:creator>javazquez</dc:creator> <pubDate>Fri, 25 Feb 2011 20:21:27 +0000</pubDate> <guid
isPermaLink="false">http://www.nslms.com/?p=383#comment-1586</guid> <description>Hi Ryan, great post! I have an implementation up and running. After a period of time running this on my dev machine. I get the following error
//*********
jcifs.smb.SmbException: Connection timeoutjcifs.util.transport.TransportException: Connection timeout
at jcifs.util.transport.Transport.connect(Transport.java:178)
at jcifs.smb.SmbTransport.connect(SmbTransport.java:293)
at jcifs.smb.SmbSession.getChallenge(SmbSession.java:146)
at jcifs.smb.SmbSession.getChallenge(SmbSession.java:140)
//**********
Any ideas what is occuring?</description> <content:encoded><![CDATA[<p>Hi Ryan, great post! I have an implementation up and running. After a period of time running this on my dev machine. I get the following error</p><p>//*********<br
/> jcifs.smb.SmbException: Connection timeoutjcifs.util.transport.TransportException: Connection timeout<br
/> at jcifs.util.transport.Transport.connect(Transport.java:178)<br
/> at jcifs.smb.SmbTransport.connect(SmbTransport.java:293)<br
/> at jcifs.smb.SmbSession.getChallenge(SmbSession.java:146)<br
/> at jcifs.smb.SmbSession.getChallenge(SmbSession.java:140)</p><p>//**********</p><p>Any ideas what is occuring?</p> ]]></content:encoded> </item> <item><title>By: Tony Lim</title><link>http://www.nslms.com/2010/02/10/fitting-grails-in-an-active-directory-and-ntml-sso-groove/comment-page-1/#comment-1168</link> <dc:creator>Tony Lim</dc:creator> <pubDate>Fri, 01 Oct 2010 14:12:11 +0000</pubDate> <guid
isPermaLink="false">http://www.nslms.com/?p=383#comment-1168</guid> <description>Is there a way to authenticate with NTLM and then have it load the LDAP roles?  And what about it automatically creating users if they don&#039;t exist w/ the LDAP info?
Any advice on how to do that would be appreciated.
Thanks!</description> <content:encoded><![CDATA[<p>Is there a way to authenticate with NTLM and then have it load the LDAP roles?  And what about it automatically creating users if they don&#8217;t exist w/ the LDAP info?</p><p>Any advice on how to do that would be appreciated.</p><p>Thanks!</p> ]]></content:encoded> </item> <item><title>By: Luc</title><link>http://www.nslms.com/2010/02/10/fitting-grails-in-an-active-directory-and-ntml-sso-groove/comment-page-1/#comment-1165</link> <dc:creator>Luc</dc:creator> <pubDate>Wed, 29 Sep 2010 06:40:55 +0000</pubDate> <guid
isPermaLink="false">http://www.nslms.com/?p=383#comment-1165</guid> <description>Hi,
I tried the NTLM authentication and it works well, but only for the first user.
If another user try to connect, he can&#039;t and the logger says &quot;Credentials xxx were not accepted by the domain controller&quot; (Credentials provided are good, no doubt on this).
Did anyone managed to authenticate multiple users?
Rgs</description> <content:encoded><![CDATA[<p>Hi,</p><p>I tried the NTLM authentication and it works well, but only for the first user.<br
/> If another user try to connect, he can&#8217;t and the logger says &#8220;Credentials xxx were not accepted by the domain controller&#8221; (Credentials provided are good, no doubt on this).</p><p>Did anyone managed to authenticate multiple users?</p><p>Rgs</p> ]]></content:encoded> </item> <item><title>By: chhaya</title><link>http://www.nslms.com/2010/02/10/fitting-grails-in-an-active-directory-and-ntml-sso-groove/comment-page-1/#comment-1159</link> <dc:creator>chhaya</dc:creator> <pubDate>Fri, 24 Sep 2010 06:27:20 +0000</pubDate> <guid
isPermaLink="false">http://www.nslms.com/?p=383#comment-1159</guid> <description>Hi RyanG,
The problem with service account is that we need to configure users with service account (account to company policy) and when I am doing this way authencation is failing .
Can you help me to provide some good links of ldap  documents either by acegi or spring ldap security plugin.
Thanks</description> <content:encoded><![CDATA[<p>Hi RyanG,</p><p>The problem with service account is that we need to configure users with service account (account to company policy) and when I am doing this way authencation is failing .</p><p>Can you help me to provide some good links of ldap  documents either by acegi or spring ldap security plugin.</p><p>Thanks</p> ]]></content:encoded> </item> <item><title>By: RyanG</title><link>http://www.nslms.com/2010/02/10/fitting-grails-in-an-active-directory-and-ntml-sso-groove/comment-page-1/#comment-1140</link> <dc:creator>RyanG</dc:creator> <pubDate>Fri, 17 Sep 2010 23:30:54 +0000</pubDate> <guid
isPermaLink="false">http://www.nslms.com/?p=383#comment-1140</guid> <description>Chhaya,
The easiest solution to your problem would be to have your Active Directory admins create a service account for you.  The account could be configured to never have it&#039;s password expire.
If that is not an option, you may be able to get away with using Spring Security LDAP with the &quot;BindAuthenticator&quot; option.  This effectively tries to login as the user who&#039;s details have been entered.</description> <content:encoded><![CDATA[<p>Chhaya,</p><p>The easiest solution to your problem would be to have your Active Directory admins create a service account for you.  The account could be configured to never have it&#8217;s password expire.</p><p>If that is not an option, you may be able to get away with using Spring Security LDAP with the &#8220;BindAuthenticator&#8221; option.  This effectively tries to login as the user who&#8217;s details have been entered.</p> ]]></content:encoded> </item> <item><title>By: chhaya</title><link>http://www.nslms.com/2010/02/10/fitting-grails-in-an-active-directory-and-ntml-sso-groove/comment-page-1/#comment-1130</link> <dc:creator>chhaya</dc:creator> <pubDate>Fri, 17 Sep 2010 09:46:35 +0000</pubDate> <guid
isPermaLink="false">http://www.nslms.com/?p=383#comment-1130</guid> <description>Hi RyanG,
I am using acegi plugin  in my project . but the problem with acegi plugin is we are using active direcoty so the account password is expiring after some time. So we are looking for approach in which  password does not expire or dont need to use mngr and password .
I want to know is this poosible use acegi plugin without using mngr and password.
I am also trying to use spring ldap security plugin but facing some configuration issues in that also.
Please help me to resolve this issue.
Thanks</description> <content:encoded><![CDATA[<p>Hi RyanG,</p><p>I am using acegi plugin  in my project . but the problem with acegi plugin is we are using active direcoty so the account password is expiring after some time. So we are looking for approach in which  password does not expire or dont need to use mngr and password .</p><p>I want to know is this poosible use acegi plugin without using mngr and password.</p><p>I am also trying to use spring ldap security plugin but facing some configuration issues in that also.</p><p>Please help me to resolve this issue.</p><p>Thanks</p> ]]></content:encoded> </item> <item><title>By: Waseem Bashir</title><link>http://www.nslms.com/2010/02/10/fitting-grails-in-an-active-directory-and-ntml-sso-groove/comment-page-1/#comment-861</link> <dc:creator>Waseem Bashir</dc:creator> <pubDate>Wed, 10 Mar 2010 09:24:12 +0000</pubDate> <guid
isPermaLink="false">http://www.nslms.com/?p=383#comment-861</guid> <description>Hi RyanG,
Thanks for your help
indeed ldapSearchSubtree = true, this is what I wanted.
Thanks a ton.
Have some questions coming up for you in the pipeline. :D</description> <content:encoded><![CDATA[<p>Hi RyanG,</p><p>Thanks for your help<br
/> indeed ldapSearchSubtree = true, this is what I wanted.</p><p>Thanks a ton.</p><p>Have some questions coming up for you in the pipeline. <img
src='http://www.nslms.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' /></p> ]]></content:encoded> </item> <item><title>By: RyanG</title><link>http://www.nslms.com/2010/02/10/fitting-grails-in-an-active-directory-and-ntml-sso-groove/comment-page-1/#comment-860</link> <dc:creator>RyanG</dc:creator> <pubDate>Tue, 09 Mar 2010 17:09:44 +0000</pubDate> <guid
isPermaLink="false">http://www.nslms.com/?p=383#comment-860</guid> <description>Waseem,
I&#039;m afraid I don&#039;t have any experience with the SSL scenario you&#039;ve described, so I&#039;m not going to be of much assistance there.
As for the issue of the two sets of users.  You should be able to set your ldapSearchBase to &#039;dc=global, dc=myCompany, dc=com, ou=EMEA, ou=London&#039; and set the ldapSearchSubtree to true, and it will find any users at that branch of the LDAP hierarchy, or below.  You can go up as high in the tree as you like also, like up to &#039;dc=global,dc=myCompany,dc=com&#039;.  Then any LDAP record with an attribute that matches the LDAP query you have in ldapSearchFilter will be found and treated as a user.</description> <content:encoded><![CDATA[<p>Waseem,</p><p>I&#8217;m afraid I don&#8217;t have any experience with the SSL scenario you&#8217;ve described, so I&#8217;m not going to be of much assistance there.</p><p>As for the issue of the two sets of users.  You should be able to set your ldapSearchBase to &#8216;dc=global, dc=myCompany, dc=com, ou=EMEA, ou=London&#8217; and set the ldapSearchSubtree to true, and it will find any users at that branch of the LDAP hierarchy, or below.  You can go up as high in the tree as you like also, like up to &#8216;dc=global,dc=myCompany,dc=com&#8217;.  Then any LDAP record with an attribute that matches the LDAP query you have in ldapSearchFilter will be found and treated as a user.</p> ]]></content:encoded> </item> </channel> </rss>
