CredentialsToLDAPAttributePrincipalResolver and LDAPv3 referrals

Michael Ströder michael at stroeder.com
Mon Jun 2 08:55:04 EDT 2008


Scott Battaglia wrote:
> 
> Is it a problem with the CAS code or with the PersonDirectory code that 
> it uses?  If its actual PersonDirectory code, then I would say file a 
> JIRA issue for an enhancement/bug with the PersonDirectory project 
> (which conveniently is in the same JIRA instance as CAS ;-)).  We try 
> and keep our libraries up to date.

It's an issue with the CredentialsToLDAPAttributePrincipalResolver. Is 
this class the PersonDirectory code?

I've filed http://www.ja-sig.org/issues/browse/CAS-663 and I consider 
this to be a bug.

See also my comment
news:microsoft.public.windows.server.active_directory:
to a similar issue:
<http://groups.google.com/group/microsoft.public.windows.server.active_directory/msg/d061e0398cc366a5>

This can be worked around by searching AD's Global Catalog (on port 
3268). But the attribute I'm using to be mapped to is not replicated to 
the GC. So this would require a schema change in AD.

Ciao, Michael.



More information about the cas mailing list