by saleht » Thu Dec 01, 2016 1:32 pm
my latest config is like this, any help, i am still not albe to see my AD group in OMERO
[omero@localhost OMERO.server]$ bin/omero config get --hide-password
omero.data.dir=/mnt/data/OMERO
omero.db.name=omero_database
omero.db.pass=********
omero.db.user=omero_user
omero.ldap.base=ou=IDMUsers,DC=AD,DC=hhu,DC=de
omero.ldap.config=true
omero.ldap.group_filter=(memberOf=cn=CAi_Allgemein,OU=FileShares,OU=Zentrum für Informations- und Medientechnologie,OU=Heinrich-Heine-Universität,dc=ad,dc=hhu,dc=de)
omero.ldap.group_mapping=name=cn
omero.ldap.new_user_group=:query:(&(OU=CAi_Allgemein)(member=@{dn}))
omero.ldap.password=********
omero.ldap.urls=ldap://XXXXXXXXX.de:389
omero.ldap.user_filter=(memberof:1.2.840.113556.1.4.1941:=cn=CAi_Allgemein,OU=FileShares,OU=Zentrum für Informations- und Medientechnologie,OU=Heinrich-Heine-Universität,dc=ad,dc=hhu,dc=de)
omero.ldap.user_mapping=omeName=sAMAccountName,firstName=givenName,lastName=sn,email=mail
omero.ldap.username=SVC_Omero
omero.web.application_server=wsgi-tcp
omero.web.debug=True
pay attention that the group CAi_Allgemein has many groups and these groups has the users which allow to use OMERO
i dont know if this will help, i have run this command
ldapsearch -x -LLL -D "SVC_Omero" -w ******************* -p 389 -h XXXXXXXX.de -b "OU=FileShares,OU=Zentrum für Informations- und Medientechnologie,OU=Heinrich-Heine-Universität,dc=ad,dc=hhu,dc=de" -s sub "(&(objectCategory=group)(memberOf=cn=CAi_Allgemein,OU=FileShares,OU=Zentrum für Informations- und Medientechnologie,OU=Heinrich-Heine-Universität,dc=ad,dc=hhu,dc=de))
this is a snap what i get , in Brwon color is the groups which i want to be showed in OMERO
dn:: Q049Q0FpX0FHX0hhcnRtYW5uLE9VPUZpbGVTaGFyZXMsT1U9WmVudHJ1bSBmw7xyIEluZm9yb
WF0aW9ucy0gdW5kIE1lZGllbnRlY2hub2xvZ2llLE9VPUhlaW5yaWNoLUhlaW5lLVVuaXZlcnNpdM
OkdCxEQz1BRCxEQz1oaHUsREM9ZGU=
objectClass: top
objectClass: group
cn: CAi_AG_Hartmann
member: CN=Zobel\, Thomas (zobelt),OU=IDMUsers,DC=AD,DC=hhu,DC=de
member: CN=Weidtkamp-Peters\, Stefanie (stwei004),OU=IDMUsers,DC=AD,DC=hhu,DC=
de
member:: Q049SMOkbnNjaFwsIFNlYmFzdGlhbiAoc2VoYWUxMDApLE9VPUlETVVzZXJzLERDPUFEL
ERDPWhodSxEQz1kZQ==
distinguishedName:: Q049Q0FpX0FHX0hhcnRtYW5uLE9VPUZpbGVTaGFyZXMsT1U9WmVudHJ1bS
Bmw7xyIEluZm9ybWF0aW9ucy0gdW5kIE1lZGllbnRlY2hub2xvZ2llLE9VPUhlaW5yaWNoLUhlaW5
lLVVuaXZlcnNpdMOkdCxEQz1BRCxEQz1oaHUsREM9ZGU=
instanceType: 4
whenCreated: 20150813080529.0Z
whenChanged: 20160520080031.0Z
uSNCreated: 76768050
info: v=stwei004;
memberOf:: Q049Q0FpX0FsbGdlbWVpbixPVT1GaWxlU2hhcmVzLE9VPVplbnRydW0gZsO8ciBJbmZ
vcm1hdGlvbnMtIHVuZCBNZWRpZW50ZWNobm9sb2dpZSxPVT1IZWlucmljaC1IZWluZS1Vbml2ZXJz
aXTDpHQsREM9QUQsREM9aGh1LERDPWRl
uSNChanged: 107361677
name: CAi_AG_Hartmann
objectGUID:: OAPVNL0I5keheg1667mHVQ==
objectSid:: AQUAAAAAAAUVAAAAPWyx+z7TI1czsNEl57UEAA==
sAMAccountName: CAi_AG_Hartmann
sAMAccountType: 268435456
groupType: -2147483646
objectCategory: CN=Group,CN=Schema,CN=Configuration,DC=AD,DC=hhu,DC=de
dSCorePropagationData: 20160811085358.0Z
dSCorePropagationData: 16010101000001.0Z
dn:: Q049Q0FpX0FHX0Zpc2NoZXJfTWVkUGhhcm1ha28sT1U9RmlsZVNoYXJlcyxPVT1aZW50cnVtI
GbDvHIgSW5mb3JtYXRpb25zLSB1bmQgTWVkaWVudGVjaG5vbG9naWUsT1U9SGVpbnJpY2gtSGVpbm
UtVW5pdmVyc2l0w6R0LERDPUFELERDPWhodSxEQz1kZQ==
objectClass: top
objectClass: group
cn: CAi_AG_Fischer_MedPharmako
member: CN=Zobel\, Thomas (zobelt),OU=IDMUsers,DC=AD,DC=hhu,DC=de
member: CN=Zimmermann\, Annika (anzim002),OU=IDMUsers,DC=AD,DC=hhu,DC=de
member: CN=Weidtkamp-Peters\, Stefanie (stwei004),OU=IDMUsers,DC=AD,DC=hhu,DC=
de
member:: Q049SMOkbnNjaFwsIFNlYmFzdGlhbiAoc2VoYWUxMDApLE9VPUlETVVzZXJzLERDPUFEL
ERDPWhodSxEQz1kZQ==
distinguishedName:: Q049Q0FpX0FHX0Zpc2NoZXJfTWVkUGhhcm1ha28sT1U9RmlsZVNoYXJlcy
xPVT1aZW50cnVtIGbDvHIgSW5mb3JtYXRpb25zLSB1bmQgTWVkaWVudGVjaG5vbG9naWUsT1U9SGV
pbnJpY2gtSGVpbmUtVW5pdmVyc2l0w6R0LERDPUFELERDPWhodSxEQz1kZQ==
instanceType: 4
whenCreated: 20150827065450.0Z
whenChanged: 20160520075814.0Z
uSNCreated: 78095703
info: v=stwei004;
memberOf:: Q049Q0FpX0FsbGdlbWVpbixPVT1GaWxlU2hhcmVzLE9VPVplbnRydW0gZsO8ciBJbmZ
vcm1hdGlvbnMtIHVuZCBNZWRpZW50ZWNobm9sb2dpZSxPVT1IZWlucmljaC1IZWluZS1Vbml2ZXJz
aXTDpHQsREM9QUQsREM9aGh1LERDPWRl
uSNChanged: 107361393
name: CAi_AG_Fischer_MedPharmako
objectGUID:: jpMAsq6/GEi9ES884oPvTQ==
objectSid:: AQUAAAAAAAUVAAAAPWyx+z7TI1czsNEl6ysFAA==
sAMAccountName: CAi_AG_Fischer_MedPharmako
sAMAccountType: 268435456
groupType: -2147483646
objectCategory: CN=Group,CN=Schema,CN=Configuration,DC=AD,DC=hhu,DC=de
dSCorePropagationData: 20160811085358.0Z
dSCorePropagationData: 16010101000001.0Z
dn:: Q049Q0FpX0FHX1JlaWNoZXJ0LE9VPUZpbGVTaGFyZXMsT1U9WmVudHJ1bSBmw7xyIEluZm9yb
WF0aW9ucy0gdW5kIE1lZGllbnRlY2hub2xvZ2llLE9VPUhlaW5yaWNoLUhlaW5lLVVuaXZlcnNpdM
OkdCxEQz1BRCxEQz1oaHUsREM9ZGU=
objectClass: top
objectClass: group
cn: CAi_AG_Reichert
member: CN=Kondadi\, Arun Kumar (kondadi),OU=IDMUsers,DC=AD,DC=hhu,DC=de
member: CN=Zobel\, Thomas (zobelt),OU=IDMUsers,DC=AD,DC=hhu,DC=de
member: CN=Weidtkamp-Peters\, Stefanie (stwei004),OU=IDMUsers,DC=AD,DC=hhu,DC=
de
member:: Q049SMOkbnNjaFwsIFNlYmFzdGlhbiAoc2VoYWUxMDApLE9VPUlETVVzZXJzLERDPUFEL
ERDPWhodSxEQz1kZQ==
distinguishedName:: Q049Q0FpX0FHX1JlaWNoZXJ0LE9VPUZpbGVTaGFyZXMsT1U9WmVudHJ1bS
Bmw7xyIEluZm9ybWF0aW9ucy0gdW5kIE1lZGllbnRlY2hub2xvZ2llLE9VPUhlaW5yaWNoLUhlaW5
lLVVuaXZlcnNpdMOkdCxEQz1BRCxEQz1oaHUsREM9ZGU=
instanceType: 4
whenCreated: 20150828053804.0Z
whenChanged: 20160701090719.0Z
uSNCreated: 78177213
info: v=stwei004;
memberOf:: Q049Q0FpX0FsbGdlbWVpbixPVT1GaWxlU2hhcmVzLE9VPVplbnRydW0gZsO8ciBJbmZ
vcm1hdGlvbnMtIHVuZCBNZWRpZW50ZWNobm9sb2dpZSxPVT1IZWlucmljaC1IZWluZS1Vbml2ZXJz
aXTDpHQsREM9QUQsREM9aGh1LERDPWRl
uSNChanged: 111797674
name: CAi_AG_Reichert
objectGUID:: NE9jxHNGeUC242JtNrReVA==
objectSid:: AQUAAAAAAAUVAAAAPWyx+z7TI1czsNElMDQFAA==
sAMAccountName: CAi_AG_Reichert
sAMAccountType: 268435456
groupType: -2147483646
objectCategory: CN=Group,CN=Schema,CN=Configuration,DC=AD,DC=hhu,DC=de
dSCorePropagationData: 20160811085358.0Z
dSCorePropagationData: 16010101000001.0Z