You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@geronimo.apache.org by "Aaron Mulder (JIRA)" <de...@geronimo.apache.org> on 2004/11/02 02:47:32 UTC

[jira] Created: (GERONIMO-417) Provide an LDAP security realm

Provide an LDAP security realm
------------------------------

         Key: GERONIMO-417
         URL: http://nagoya.apache.org/jira/browse/GERONIMO-417
     Project: Apache Geronimo
        Type: Improvement
  Components: security  
    Versions: 1.0-M2    
    Reporter: Aaron Mulder
    Priority: Minor


It would be nice if one of the default security realms for Geronimo could authenticate against an LDAP server (including Active Directory with LDAP access enabled).

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
   http://nagoya.apache.org/jira/secure/Administrators.jspa
-
If you want more information on JIRA, or have a bug to report see:
   http://www.atlassian.com/software/jira


[jira] Assigned: (GERONIMO-417) Provide an LDAP security realm

Posted by "David Jencks (JIRA)" <de...@geronimo.apache.org>.
     [ http://issues.apache.org/jira/browse/GERONIMO-417?page=all ]

David Jencks reassigned GERONIMO-417:
-------------------------------------

    Assign To: David Jencks

> Provide an LDAP security realm
> ------------------------------
>
>          Key: GERONIMO-417
>          URL: http://issues.apache.org/jira/browse/GERONIMO-417
>      Project: Geronimo
>         Type: Improvement
>   Components: security
>     Versions: 1.0-M2
>     Reporter: Aaron Mulder
>     Assignee: David Jencks
>     Priority: Minor
>      Fix For: 1.0
>  Attachments: LDAPLoginModule.java, ldap-realm-demo.war, ldap-realm.ldif, ldap-realm.xml
>
> It would be nice if one of the default security realms for Geronimo could authenticate against an LDAP server (including Active Directory with LDAP access enabled).

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
   http://issues.apache.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
   http://www.atlassian.com/software/jira


[jira] Commented: (GERONIMO-417) Provide an LDAP security realm

Posted by "Jeff Genender (JIRA)" <de...@geronimo.apache.org>.
    [ http://issues.apache.org/jira/browse/GERONIMO-417?page=comments#action_12359975 ] 

Jeff Genender commented on GERONIMO-417:
----------------------------------------

Can we get the example application's source code as well so we can include it?

> Provide an LDAP security realm
> ------------------------------
>
>          Key: GERONIMO-417
>          URL: http://issues.apache.org/jira/browse/GERONIMO-417
>      Project: Geronimo
>         Type: Improvement
>   Components: security
>     Versions: 1.0-M2
>     Reporter: Aaron Mulder
>     Assignee: Jeff Genender
>     Priority: Minor
>      Fix For: 1.0
>  Attachments: LDAPLoginModule.java, ldap-realm-demo.war, ldap-realm.ldif, ldap-realm.xml
>
> It would be nice if one of the default security realms for Geronimo could authenticate against an LDAP server (including Active Directory with LDAP access enabled).

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
   http://issues.apache.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
   http://www.atlassian.com/software/jira


[jira] Assigned: (GERONIMO-417) Provide an LDAP security realm

Posted by "David Jencks (JIRA)" <de...@geronimo.apache.org>.
     [ http://issues.apache.org/jira/browse/GERONIMO-417?page=all ]

David Jencks reassigned GERONIMO-417:
-------------------------------------

    Assign To: Jeff Genender  (was: David Jencks)

> Provide an LDAP security realm
> ------------------------------
>
>          Key: GERONIMO-417
>          URL: http://issues.apache.org/jira/browse/GERONIMO-417
>      Project: Geronimo
>         Type: Improvement
>   Components: security
>     Versions: 1.0-M2
>     Reporter: Aaron Mulder
>     Assignee: Jeff Genender
>     Priority: Minor
>      Fix For: 1.0
>  Attachments: LDAPLoginModule.java, ldap-realm-demo.war, ldap-realm.ldif, ldap-realm.xml
>
> It would be nice if one of the default security realms for Geronimo could authenticate against an LDAP server (including Active Directory with LDAP access enabled).

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
   http://issues.apache.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
   http://www.atlassian.com/software/jira


[jira] Commented: (GERONIMO-417) Provide an LDAP security realm

Posted by "David Jencks (JIRA)" <de...@geronimo.apache.org>.
    [ http://issues.apache.org/jira/browse/GERONIMO-417?page=comments#action_12330386 ] 

David Jencks commented on GERONIMO-417:
---------------------------------------

Original copyright is from IBM.
I've added the login module but am less sure what to do with the example code.  I'd prefer to see a setup using directory as this would be self contained.

> Provide an LDAP security realm
> ------------------------------
>
>          Key: GERONIMO-417
>          URL: http://issues.apache.org/jira/browse/GERONIMO-417
>      Project: Geronimo
>         Type: Improvement
>   Components: security
>     Versions: 1.0-M2
>     Reporter: Aaron Mulder
>     Assignee: David Jencks
>     Priority: Minor
>      Fix For: 1.0
>  Attachments: LDAPLoginModule.java, ldap-realm-demo.war, ldap-realm.ldif, ldap-realm.xml
>
> It would be nice if one of the default security realms for Geronimo could authenticate against an LDAP server (including Active Directory with LDAP access enabled).

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
   http://issues.apache.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
   http://www.atlassian.com/software/jira


[jira] Updated: (GERONIMO-417) Provide an LDAP security realm

Posted by "Aaron Mulder (JIRA)" <de...@geronimo.apache.org>.
     [ http://issues.apache.org/jira/browse/GERONIMO-417?page=all ]

Aaron Mulder updated GERONIMO-417:
----------------------------------

    Fix Version: 1.0
    Environment: 

Happy to see the patch; we'd just like to confirm who has the original copyright before including this in Geronimo.

> Provide an LDAP security realm
> ------------------------------
>
>          Key: GERONIMO-417
>          URL: http://issues.apache.org/jira/browse/GERONIMO-417
>      Project: Geronimo
>         Type: Improvement
>   Components: security
>     Versions: 1.0-M2
>     Reporter: Aaron Mulder
>     Priority: Minor
>      Fix For: 1.0
>  Attachments: LDAPLoginModule.java, ldap-realm-demo.war, ldap-realm.ldif, ldap-realm.xml
>
> It would be nice if one of the default security realms for Geronimo could authenticate against an LDAP server (including Active Directory with LDAP access enabled).

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
   http://issues.apache.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
   http://www.atlassian.com/software/jira


[jira] Updated: (GERONIMO-417) Provide an LDAP security realm

Posted by "Catalino Pineda Jr. (JIRA)" <de...@geronimo.apache.org>.
     [ http://issues.apache.org/jira/browse/GERONIMO-417?page=all ]

Catalino Pineda Jr. updated GERONIMO-417:
-----------------------------------------

    Attachment: ldap-realm.xml
                ldap-realm-demo.war
                ldap-realm.ldif

Attached are three files used for testing LDAPLoginModule on openldap 2.0.27 (for windows)

1. ldap-realm.xml  - security realm configuration for LDAPLoginModule
2. ldap-realm-demo.war- modified demo from /applications  module of Geronimo which uses LDAP authentication rather that the PropertiesFileLoginModule
3. ldap-realm.ldif - sample ldif reflecting my openldap directory structure containg users/groups defined in geronimo-web.xml of ldap-realm-demo war. Can be imported on your openldap installation. 

Below are configuration entries  in openldap installation that matches the security configuration above:

([openldap_home/]slapd.conf)

.......
database	ldbm
suffix		  "dc=myhost,dc=com"
rootdn		cn=root,dc=myhost,dc=com
rootpw		admin
......

Thanks.


> Provide an LDAP security realm
> ------------------------------
>
>          Key: GERONIMO-417
>          URL: http://issues.apache.org/jira/browse/GERONIMO-417
>      Project: Geronimo
>         Type: Improvement
>   Components: security
>     Versions: 1.0-M2
>     Reporter: Aaron Mulder
>     Priority: Minor
>  Attachments: LDAPLoginModule.java, ldap-realm-demo.war, ldap-realm.ldif, ldap-realm.xml
>
> It would be nice if one of the default security realms for Geronimo could authenticate against an LDAP server (including Active Directory with LDAP access enabled).

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
   http://issues.apache.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
   http://www.atlassian.com/software/jira


[jira] Commented: (GERONIMO-417) Provide an LDAP security realm

Posted by "David Jencks (JIRA)" <de...@geronimo.apache.org>.
    [ http://issues.apache.org/jira/browse/GERONIMO-417?page=comments#action_12331189 ] 

David Jencks commented on GERONIMO-417:
---------------------------------------

The LDAPLoginModule should be in o/a/g/security/realm/providers with the other login modules.  In M5 it's in the right package but wrong directory.  In head it was in the wrong package and directory.  I moved head's copy to the correct package and directory.
Deleting       security/src/java/org/apache/geronimo/security/jaas/LDAPLoginModule.java
Adding         security/src/java/org/apache/geronimo/security/realm/providers/LDAPLoginModule.java
Transmitting file data .
Committed revision 293383.

> Provide an LDAP security realm
> ------------------------------
>
>          Key: GERONIMO-417
>          URL: http://issues.apache.org/jira/browse/GERONIMO-417
>      Project: Geronimo
>         Type: Improvement
>   Components: security
>     Versions: 1.0-M2
>     Reporter: Aaron Mulder
>     Assignee: David Jencks
>     Priority: Minor
>      Fix For: 1.0
>  Attachments: LDAPLoginModule.java, ldap-realm-demo.war, ldap-realm.ldif, ldap-realm.xml
>
> It would be nice if one of the default security realms for Geronimo could authenticate against an LDAP server (including Active Directory with LDAP access enabled).

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
   http://issues.apache.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
   http://www.atlassian.com/software/jira


[jira] Closed: (GERONIMO-417) Provide an LDAP security realm

Posted by "Jeff Genender (JIRA)" <de...@geronimo.apache.org>.
     [ http://issues.apache.org/jira/browse/GERONIMO-417?page=all ]
     
Jeff Genender closed GERONIMO-417:
----------------------------------

    Resolution: Duplicate

Duplicate of GERONIMO-1275

> Provide an LDAP security realm
> ------------------------------
>
>          Key: GERONIMO-417
>          URL: http://issues.apache.org/jira/browse/GERONIMO-417
>      Project: Geronimo
>         Type: Improvement
>   Components: security
>     Versions: 1.0-M2
>     Reporter: Aaron Mulder
>     Assignee: Jeff Genender
>     Priority: Minor
>      Fix For: 1.0
>  Attachments: LDAPLoginModule.java, ldap-realm-demo.war, ldap-realm.ldif, ldap-realm.xml
>
> It would be nice if one of the default security realms for Geronimo could authenticate against an LDAP server (including Active Directory with LDAP access enabled).

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
   http://issues.apache.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
   http://www.atlassian.com/software/jira


[jira] Updated: (GERONIMO-417) Provide an LDAP security realm

Posted by "Catalino Pineda Jr. (JIRA)" <de...@geronimo.apache.org>.
     [ http://issues.apache.org/jira/browse/GERONIMO-417?page=all ]

Catalino Pineda Jr. updated GERONIMO-417:
-----------------------------------------

    Attachment: LDAPLoginModule.java

LDAPLoginModuleClass which allows authentication againts LDAP server.

> Provide an LDAP security realm
> ------------------------------
>
>          Key: GERONIMO-417
>          URL: http://issues.apache.org/jira/browse/GERONIMO-417
>      Project: Geronimo
>         Type: Improvement
>   Components: security
>     Versions: 1.0-M2
>     Reporter: Aaron Mulder
>     Priority: Minor
>  Attachments: LDAPLoginModule.java
>
> It would be nice if one of the default security realms for Geronimo could authenticate against an LDAP server (including Active Directory with LDAP access enabled).

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
   http://issues.apache.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
   http://www.atlassian.com/software/jira