Products

Solutions

Resources

Partners

Community

Blog

About

QA

Ideas Test

New Community Website

Ordinarily, you'd be at the right spot, but we've recently launched a brand new community website... For the community, by the community.

Yay... Take Me to the Community!

Welcome to the DNN Community Forums, your preferred source of online community support for all things related to DNN.
In order to participate you must be a registered DNNizen

HomeHomeDNN Open Source...DNN Open Source...Provider and Extension ForumsProvider and Extension ForumsAuthenticationAuthenticationDNN AD-Role-Sync worked only with Security-Group UniversalDNN AD-Role-Sync worked only with Security-Group Universal
Previous
 
Next
New Post
4/23/2010 12:20 PM
 

We have search yesterday many hours to find out wy our DNN-Installations >5 no AD-Groups synchronised.

The Effect is each AD-User can logged in via Integrated or Windows Authentication but not Roles-Membership is synchronised with the specified AD-Groups.

We find out that we must use in the Active-Directory Groups of Type "Security-Group Universal"

We change all neded Groups and all is synchronised to all DNN- Installations.

Its a Must-Info for the Active-Directory-Dotnetnuke-Documentation!

But where we can send this Info for the Documentation for a Extension?

 


Guido Kuehler
Founder and CEO of "ITP - Business IT Power" and "DNNSkin-Makers".
Get was you need!

 
New Post
4/23/2010 12:55 PM
 
You can send it to me (mhorton@telus.net). However, All of my groups are Security->Global so it's not 100% one way or the other. Are you using multi-domains? Perhaps that has something to do with it (I don't have a multi-domain setup so I can't test against it).
 
New Post
4/28/2010 2:48 PM
 

We also experienced this same issue, and we do have a multi-domain setup. The odd part is that it appears the child domain groups do not need to be universal, it only seems to affect groups in the root domain. I also noticed that the entry in the log view for a new user in the parent domain is very brief (UserID, names, email, server), however for new users in child domains the log is pretty large but only has two fields, logdetail and server. The logdetail field for child domain users is populated with a bunch of xml containing the AD information. Not sure if that helps any, but I'm glad I found this thread - it seems to have solved our problem. Very nice job with the authentication provider overall, though, it may have it's quirks but the fact that we can have a group with the same name in three different subdomains and have them all auto-assign to the same role is great, thanks again for the work you guys put into this.

 
New Post
4/29/2010 11:00 AM
 

Just an update, I was incorrect when I said that groups in subdomains do not need to have Universal scope, it appears that they do.

                -Julius

 
Previous
 
Next
HomeHomeDNN Open Source...DNN Open Source...Provider and Extension ForumsProvider and Extension ForumsAuthenticationAuthenticationDNN AD-Role-Sync worked only with Security-Group UniversalDNN AD-Role-Sync worked only with Security-Group Universal


These Forums are dedicated to discussion of DNN Platform and Evoq Solutions.

For the benefit of the community and to protect the integrity of the ecosystem, please observe the following posting guidelines:

  1. No Advertising. This includes promotion of commercial and non-commercial products or services which are not directly related to DNN.
  2. No vendor trolling / poaching. If someone posts about a vendor issue, allow the vendor or other customers to respond. Any post that looks like trolling / poaching will be removed.
  3. Discussion or promotion of DNN Platform product releases under a different brand name are strictly prohibited.
  4. No Flaming or Trolling.
  5. No Profanity, Racism, or Prejudice.
  6. Site Moderators have the final word on approving / removing a thread or post or comment.
  7. English language posting only, please.
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out