Hi All,
I’ve been googling and searching through mail thread to get
the LDAP/AD finally working with our AD environment. The last hurdle is to get
accounts automatically created.
I’m running into the following errors:
Dec 27 15:39:31 XXXXXX OTRS-CGI-07[28959]:
[Error][Kernel::System::Auth::LDAP::Auth][Line:343]: Old config setting
detected, please use the new one from Kernel/Config/Defaults.pm (User* has been
added!).
Dec 27 15:39:31 XXXXX OTRS-CGI-07[28959]: [Notice][Kernel::System::User::GetUserData]
Panic! No UserData for user: 'testuser'!!!
Dec 27 15:39:31 XXXXX OTRS-CGI-07[28959]:
[Error][Kernel::System::User::UserAdd][Line:229]: Need UserFirstname!
Dec 27 15:39:31 XXXXX OTRS-CGI-07[28959]:
[Error][Kernel::System::Auth::LDAP::Auth][Line:400]: Can't create user
'testuser' (CN=testusers,OU=XXXXX,OU=XXXXX,OU=XXXXX,DC=marvell,DC=com) in
RDBMS!
Dec 27 15:39:31 mchinf11 OTRS-CGI-07[28959]:
[Notice][Kernel::System::User::GetUserData] Panic! No UserData for user:
'testuser'!!!
Here’s snippets of the Config.pm
$Self->{'CustomerUser'} = {
CustomerKey =>
'sAMAccountName',
Module =>
'Kernel::System::CustomerUser::LDAP',
Params => {
Host =>
'XX.XX.XX.XX',
BaseDN
=> 'DC=marvell,DC=com',
SSCOPE
=> 'sub',
UserDN
=> ‘otrs_binduser’,
UserPw
=> '*********',
},
# customer unique id
# customer #
CustomerID => 'mail',
CustomerUserListFields =>
['sAMAccountName', 'cn', 'mail'],
CustomerUserSearchFields
=> ['sAMAccountName', 'cn', 'mail'],
CustomerUserSearchPrefix
=> '',
CustomerUserSearchSuffix
=> '*',
CustomerUserSearchListLimit
=> 250,
CustomerUserPostMasterSearchFields => ['mail'],
CustomerUserNameFields => ['givenname',
'sn'],
Map => [
# note: Login,
Email and CustomerID needed!
# var, frontend,
storage, shown, required, storage-type
#[
'UserSalutation', 'Title', 'title', 1, 0, 'var' ],
[ 'UserLastname',
'Lastname', 'sn', 1, 1, 'var' ],
[
'UserFirstname', 'Firstname', 'givenName', 1, 1, 'var' ],
[ 'UserLogin',
'Login', 'sAMAccountName', 1, 1, 'var' ],
[ 'UserEmail',
'Email', 'mail', 1, 1, 'var' ],
[
'UserCustomerID', 'CustomerID', 'mail', 0, 1, 'var' ],
[ 'UserPhone',
'Phone', 'telephonenumber', 1, 0, 'var' ],
[ 'UserAddress',
'Address', 'streetaddress', 1, 0, 'var' ],
#[ 'UserComment',
'Comment', 'description', 1, 0, 'var' ],
],
};
$Self->{UserSyncLDAPMap} = {
# DB -> LDAP
Firstname =>
'givenName',
Lastname =>
'sn',
Email =>
'mail',
};
Using a LDAP browser I was able to confirm that ‘givenName’
was truly defined.
Any help would be appreciated.
Thx!
-dimitrius
"Without
passion ... what's the point?"