Products

Solutions

Resources

Partners

Community

Blog

About

QA

Ideas Test

New Community Website

Ordinarily, you'd be at the right spot, but we've recently launched a brand new community website... For the community, by the community.

Yay... Take Me to the Community!

Welcome to the DNN Community Forums, your preferred source of online community support for all things related to DNN.
In order to participate you must be a registered DNNizen

HomeHomeDNN Open Source...DNN Open Source...Provider and Extension ForumsProvider and Extension ForumsAuthenticationAuthenticationAD behaviour in DNNAD behaviour in DNN
Previous
 
Next
New Post
7/3/2009 10:57 AM
 

Hi all,

 

I’m now 3 weeks into incorporating a DotNetNuke solution for our company intranet. I have overcome plenty of hurdles and may be nearing the last one!

 

As a large company we have content management areas within the business that specific users can upload documents to. The objective is drive this security from AD.

 

Currently the AD provider picks up my credentials and logs me in to the site (im getting the windows login box at present because I cant alter my trusted sites, though this is being sorted).

 

To sync an AD role to DNN and prove it working I took the following steps:

 

  1. Created a group in AD called IntranetDNN.
  2. Added myself to that group.
  3. Created a role in DNN called IntranetDNN.
  4. Added a basic module and set view permissions to the IntranetDNN role.
  5. Closed the browser, deleted temp files and cookies as a precaution.

(I also created a role group called IntranetDNN and added a role in there but that didn’t work either, not sure if that’s how it should work?)

 

Anyway, I was then hoping to see this module the next time I hit the site, but that is not the case.

 

I have ensured “Synchronize roles” is ticked in the authentication settings. I checked the database to see if DNN had added a record in UserRoles relating the IntranetDNN role, but it hadn’t? I do already have the Registered Users and Subscribers roles against my login but im pretty sure that is standard?

 

Can anyone please advise if I have taken all the correct steps, or if there are any useful trouble shooting tips that might help.

 

I have already been through a number of threads on the DNN website before posting this but had no luck in finding a resolution

 

Any information would be greatly appreciated as once this is sorted im very nearly there! J

 

Thanks,

 

Kevin.

ps - Dan, i think in your last post you just meant to the tickbox in authentication settings, if so you dont need to respond to that post.

 

 
New Post
7/3/2009 11:05 AM
 

It will do that if you have Synchronize Role checked in the settings for the provider. That's what Dan meant.

 
New Post
7/6/2009 4:24 AM
 

Yeah, the sync option is already ticked, so unfortunatley the issues highlighted in my previous email still stand.

 
New Post
7/8/2009 6:10 AM
 

 

Thought i would just post a reply to my own post seens as i have resolved my issues, it might be of help to anyone experiencing the same.

Im not sure why but it started working once i had verified the root domain account with the 'Sync Roles' option ticked. Previously i just ticked the box and clicked update.

I didn’t need to create a group with a role in either. Some of the older posts suggest that you need to add the domain name to your role but you don’t. Just an identical role in AD that matches the role i created in my DNN solution, making sure that the pre-windows 2000 name in AD is also the same. It now works picking up roles and adding them to the database for the relevant user.

I have also moved a DNN solution from the test environment to the live server. The only issues i had with this was installing the AD provider again. I got an error ‘FCKeditorAPI is undefined’. To resolve this i followed the steps from another thread on this website:

http://www.dotnetnuke.com/Community/Forums/tabid/795/forumid/127/threadid/261614/scope/posts/threadpage/1/Default.aspx

After that everything is working as it should :)

 

 
Previous
 
Next
HomeHomeDNN Open Source...DNN Open Source...Provider and Extension ForumsProvider and Extension ForumsAuthenticationAuthenticationAD behaviour in DNNAD behaviour in DNN


These Forums are dedicated to discussion of DNN Platform and Evoq Solutions.

For the benefit of the community and to protect the integrity of the ecosystem, please observe the following posting guidelines:

  1. No Advertising. This includes promotion of commercial and non-commercial products or services which are not directly related to DNN.
  2. No vendor trolling / poaching. If someone posts about a vendor issue, allow the vendor or other customers to respond. Any post that looks like trolling / poaching will be removed.
  3. Discussion or promotion of DNN Platform product releases under a different brand name are strictly prohibited.
  4. No Flaming or Trolling.
  5. No Profanity, Racism, or Prejudice.
  6. Site Moderators have the final word on approving / removing a thread or post or comment.
  7. English language posting only, please.
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out