Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations wOOdy-Soft on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

AMM, IX WorkPlace, LDAP. AADS 2

Status
Not open for further replies.
Nov 22, 2013
600
US
I am banging my head on a wall.

I had a post a few weeks ago about issues with IX workplace, but it got really long so started a new one since I changed a bit since.

I have the following
SMGR 8.1
AADS 8.0
SM 8.1
LDAP Win Server 2016
IX WorkPlace on Windows

Trying to login to my IX workplace using Presence and AMM (messaging) I got presence working and I am able to login into IX workplace using just the email address. the PTR, SRV and TXT records in my DNS are working properly for auto logging in using just email and grabbing the 46xxsettings from the AADS server. LDAP is correctly setup in AADS as far as I can tell anyway.
I have a few screenshots, perhaps someone can point me in the right direction?

My problem is, I cannot get messaging to work. I get

Code:
Error 401: Full authentication is required to access this resource\x0A
According to SOLN339549 it is something with my LDAP, but for the life of me cannot figure out what is wrong.

In AADS I am using the following
fail1_rx47qq.jpg


In SMGR I have the following set.
fail2_m89reg.jpg


and for Breeze / presence I have
fail3_hdkspo.jpg
 
Congrats on the little one! I've got one showing up before the end of the year.

Try enterprise realm digifix.org
 
Thanks Kyle! And grats on whats to come!!

I made that change earlier but had no change. I am sure when I look at my LDAP server that the attributes are set correctly, such as mail and userPrincipalName are the user@domain (albert einstein) aeinstein@digifix.org for both attributes, that is also what it is in SMGR for login name and email address. I must have the search string wrong or something not sure.

My distinguished name is CN=Albert Einstein, CN=Users,DC=digifix,DC=org
I added them to specific groups as well.


ldap4_nzu6vg.jpg

ldap1_rdvaf6.jpg

ldap2_wx7cs1.jpg

ldap3_x2fikt.jpg


update:
forgot to add aads ldap info
for AADS attributes I am using SMGRLoginname = mail
ImHandle is blank per what the document says that it defaults to SMGRLoginname if left blank.
 
Think I got it!!

My IX workplace was on avaya authorization and not unifed login.

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top