Products

Solutions

Resources

Partners

Community

Blog

About

QA

Ideas Test

New Community Website

Ordinarily, you'd be at the right spot, but we've recently launched a brand new community website... For the community, by the community.

Yay... Take Me to the Community!

Welcome to the DNN Community Forums, your preferred source of online community support for all things related to DNN.
In order to participate you must be a registered DNNizen

HomeHomeDNN Open Source...DNN Open Source...Provider and Extension ForumsProvider and Extension ForumsAuthenticationAuthenticationSynchronizing groupsSynchronizing groups
Previous
 
Next
New Post
9/6/2012 4:19 AM
 

Hi,

I'm having a problem with the group synchronization.

I have 2 security groups created in the AD.
I have created the 2 corresponding groups in DNN.
I checked the "Synchronize Role?" option in the DNN_ActiveDirectoryAuthentication extension.

I tried it and it is working.

But, when I deploy it in production, it doesn't work anymore.
When the user is logged in (automatically), the user is created in DNN, but it's not added to the group.

Can anyone help me with this issue ?

Thanks.


 
New Post
9/6/2012 10:11 AM
 
Have you tried using impersonation in your web.config?
 
New Post
9/6/2012 10:21 AM
 
I had a lot of problems after putting a web site from the testing environment (in the same domain) to a production server. Finally, uninstalling and reinstalling the AD provider was the solution (and between that, I deleted the install directory, stopped the web site and the app pool, deleted the .Net Temporary Files and restarted the app pool and web site).

Best wishes
Michael

Michael Tobisch
DNN★MVP

dnn-Connect.org - The most vibrant community around the DNN-platform
 
New Post
9/12/2012 3:18 PM
 

I'm having the same problem as YB, except I'm not migrating from a testing environment.  I am able to log into Portal 0 through our Juniper MAG and view all tabs of the site.  However, when I log into either of the two children portals through the MAG, I get the message "You do not have access to view this tab within the portal."  The user is logged in successfully.

In my Authentication Settings of the DNN_ADAuth, I have enabled AD Auth.  I checked Synchronize Role.   I have ADSIAuthenticationProvider for Provider, Delegation for Auth Type, correct Root Domain, User Name (with read access to AD), Password, Email Domain, and Auto-login IP Address.  I get a green check and box showing a successful update.

I have created Security Roles for each portal and have ensured that they matched the Pre-Windows 2000 Group Name in AD.  I have also ensured that, within each tab of each portal in the Page Settings on the Permissions tab, there is a green check next to the Security Role under View Page and no checks or red mark for any of the other roles (except Admin).  I have created one user each in each of those groups, within AD.

When I go to either of the children portals, and go to Manage Users in Role, the user does not appear and is not an option in the User Name drop down to Add User to Role.  When I attempt to add the user manually in DNN, it will not let me because the user already exists.

All of this works fine for Portal 0.  We contracted with a "professional" web developer and he got Portal 0 working by adjusting some settings in IIS.  We have since parted ways.  I have followed instructions from the following link:  http://www.getyourowntots.com/Blog/tabid/57/EntryId/218/Setting-up-Dotnetnuke-DNN-to-work-with-Active-Directory.aspx and my IIS settings appear to be correct, but I'm not sure and I think this is the only other piece that could be misconfigured.

Any guidance is much appreciated!

DNN Version 6.1.5, DNN_ActiveDirectoryAuthentication 5.0.4, IIS7

 
Previous
 
Next
HomeHomeDNN Open Source...DNN Open Source...Provider and Extension ForumsProvider and Extension ForumsAuthenticationAuthenticationSynchronizing groupsSynchronizing groups


These Forums are dedicated to discussion of DNN Platform and Evoq Solutions.

For the benefit of the community and to protect the integrity of the ecosystem, please observe the following posting guidelines:

  1. No Advertising. This includes promotion of commercial and non-commercial products or services which are not directly related to DNN.
  2. No vendor trolling / poaching. If someone posts about a vendor issue, allow the vendor or other customers to respond. Any post that looks like trolling / poaching will be removed.
  3. Discussion or promotion of DNN Platform product releases under a different brand name are strictly prohibited.
  4. No Flaming or Trolling.
  5. No Profanity, Racism, or Prejudice.
  6. Site Moderators have the final word on approving / removing a thread or post or comment.
  7. English language posting only, please.
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out