Products

Solutions

Resources

Partners

Community

Blog

About

QA

Ideas Test

New Community Website

Ordinarily, you'd be at the right spot, but we've recently launched a brand new community website... For the community, by the community.

Yay... Take Me to the Community!

Welcome to the DNN Community Forums, your preferred source of online community support for all things related to DNN.
In order to participate you must be a registered DNNizen

HomeHomeDNN Open Source...DNN Open Source...Provider and Extension ForumsProvider and Extension ForumsAuthenticationAuthenticationAD Provider Auto Login and Role SynchronizationAD Provider Auto Login and Role Synchronization
Previous
 
Next
New Post
10/15/2008 10:51 PM
 

Hobie wrote
 

Been having the same problems using the AD Module. When a user visits the portal for the first time it correctly creates an account for the user in DNN. However if the user logs out of the portal when they revisit it they are not logged in automatically again. The only way back is to sit out waiting for the cookie to expire or the user to delete cookies and revist the site. Is this a bug with the module ??

Using the windows login screen doesn`t work either

I`ve also noticed that when the user account is created in DNN it is not picking up the correct details from AD either e.g. email address

rather than picking up an email address as firstname.lastname@domain.co.uk it getting loginid@domain.co.uk.

Also roles assigned in AD are not being created in DNN, I have tried using impersonation as suggested but still it doesn`t work.

I`ve spent sometime trying to get the AD DNN Module to work with my installation with not much success. Am I missing something or are there issues with this module ??

 

As I stated in my first post this is not a bug but a necessity. I can't blow away the cookie when a user logs out because they would immediately be logged in again. Then two things would happen. You wouldn't be able to login as a DNN Host or Admin user so you would be posting here on the forum about it and, secondly, you would have your users bothering you because "I clicked logout and it didn't log me out" to which you would be posing here on the forum about it.

Email address. When you look at the properties of your user in the AD is there an email listed there for them? If it's blank in the AD then the provider is going to take whatever they logged in with and put it in front of whatever you setup as a default email in the settings.

I think Craig answered the last part. If you haven't then download the latest documentation for the provider (http://www.dotnetnuke.com/Products/Development/Forge/ProviderAuthentication/Downloads/tabid/852/Default.aspx) as it explains the Roles/AD Groups relationship.

 
New Post
11/26/2008 4:42 PM
 

WOW - I Just got this exact issue to work and it was such a simple fix, but took soo many hours to find.

If you want to do a automatic login for active directory, yes, you follow the manual and yes to set it up for Windows Auth. BUT - I made the mistake of making the site a trusted site. - You don't want it to be a trusted site. You need to make it an intranet site. If you have IE7 - go to tools -> Internet options -> security tab -> local intranets icon -> sites button ->advanced -> add site as intranet site.

Doing that prevented me getting the login pop up box. -So it appears that for the automatic Login (takes your windows machine's credentials and passes them to Active directoryfor authentication) to work, you have to have this setting in place or else you will get a pop up window every time your users try to login.

Also, I'm running IIS 7 and SQL 2008 express on a win2008 box. You have to run the application pool in classic mode and I am running the site with inpersonate on, no anonymous access - BUT I do have forms and Windows Auth. Activated. When I disabled forms, the site went into an infinate loop. Even though the mesage at the top says you need to disable one of them - don't. It works. Also, I didn't have to modify the web.confi file.

I'm done with this issue and won't be monitering this thread. - if anyone has a question, email our general email address. You can find it at www.DallasPartners.com

Good Luck.

 
New Post
11/26/2008 10:35 PM
 

Hmmm I've had no problems with my sites just in the Trusted Sites list but I'll have to remember this as suggestion for others in the future. Thanks Stephen.

 
Previous
 
Next
HomeHomeDNN Open Source...DNN Open Source...Provider and Extension ForumsProvider and Extension ForumsAuthenticationAuthenticationAD Provider Auto Login and Role SynchronizationAD Provider Auto Login and Role Synchronization


These Forums are dedicated to discussion of DNN Platform and Evoq Solutions.

For the benefit of the community and to protect the integrity of the ecosystem, please observe the following posting guidelines:

  1. No Advertising. This includes promotion of commercial and non-commercial products or services which are not directly related to DNN.
  2. No vendor trolling / poaching. If someone posts about a vendor issue, allow the vendor or other customers to respond. Any post that looks like trolling / poaching will be removed.
  3. Discussion or promotion of DNN Platform product releases under a different brand name are strictly prohibited.
  4. No Flaming or Trolling.
  5. No Profanity, Racism, or Prejudice.
  6. Site Moderators have the final word on approving / removing a thread or post or comment.
  7. English language posting only, please.
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out