<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: LDAP v2 Query EDirectory in Web Security</title>
    <link>https://community.cisco.com/t5/web-security/ldap-v2-query-edirectory/m-p/956670#M239</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;figured it out...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 30 Jun 2008 23:45:17 GMT</pubDate>
    <dc:creator>mhorany_ironport</dc:creator>
    <dc:date>2008-06-30T23:45:17Z</dc:date>
    <item>
      <title>LDAP v2 Query EDirectory</title>
      <link>https://community.cisco.com/t5/web-security/ldap-v2-query-edirectory/m-p/956669#M238</link>
      <description>&lt;P&gt;S650 Upgraded to ASyncOS v5.2.1&lt;BR /&gt;&lt;BR /&gt;Attempting to write LDAP query to EDirectory server.&lt;BR /&gt;&lt;BR /&gt;Keep getting this error&lt;BR /&gt;Checking connectivity of LDAP Server(s)...&lt;BR /&gt;   Success: Server 'server ip omitted' responding to queries on port 389.&lt;BR /&gt;&lt;BR /&gt;Attempting to fetch user information...&lt;BR /&gt;   Failure: Unable to fetch user DN information from server 'server ip omitted'.Please check the Base DN, User Name Attribute and User Filter values.&lt;BR /&gt;&lt;BR /&gt;Attempting to fetch group information...&lt;BR /&gt;   Warning: Server 'server ip omitted' returned no valid groups for the configured Group parameters.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;My Query is as follows:&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;User Authentication:  	&lt;BR /&gt;Base DN: o=WFISD&lt;BR /&gt;	&lt;BR /&gt;&lt;BR /&gt;User Name Attribute: cn&lt;BR /&gt;		&lt;BR /&gt;User Filter Query: Custom - objectclass=users&lt;BR /&gt;&lt;BR /&gt;Query Credentials:  	&lt;BR /&gt;Server Accepts Anonymous Queries &lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt; 	&lt;BR /&gt;Define Group Authorization Query&lt;BR /&gt;Group Name Attribute: cn&lt;BR /&gt;		&lt;BR /&gt;Group Filter Query:  Custom - objectclass=group&lt;BR /&gt;	&lt;BR /&gt;&lt;BR /&gt;Group Membership Attribute:  member&lt;BR /&gt;&lt;BR /&gt;Any help would be appreciated....  note the same LDAP query in version ASyncOS 5.1 worked.&lt;BR /&gt;&lt;BR /&gt;Thanks in advance&lt;/P&gt;</description>
      <pubDate>Fri, 27 Jun 2008 21:27:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/web-security/ldap-v2-query-edirectory/m-p/956669#M238</guid>
      <dc:creator>mhorany_ironport</dc:creator>
      <dc:date>2008-06-27T21:27:32Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP v2 Query EDirectory</title>
      <link>https://community.cisco.com/t5/web-security/ldap-v2-query-edirectory/m-p/956670#M239</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;figured it out...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Jun 2008 23:45:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/web-security/ldap-v2-query-edirectory/m-p/956670#M239</guid>
      <dc:creator>mhorany_ironport</dc:creator>
      <dc:date>2008-06-30T23:45:17Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP v2 Query EDirectory</title>
      <link>https://community.cisco.com/t5/web-security/ldap-v2-query-edirectory/m-p/956671#M240</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Mhorany,&lt;BR /&gt;&lt;BR /&gt;If you wouldn't mind sharing, what did you do to remedy the problem?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Jul 2008 23:53:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/web-security/ldap-v2-query-edirectory/m-p/956671#M240</guid>
      <dc:creator>jowolfer</dc:creator>
      <dc:date>2008-07-01T23:53:17Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP v2 Query EDirectory</title>
      <link>https://community.cisco.com/t5/web-security/ldap-v2-query-edirectory/m-p/956672#M241</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Well, we thought we were running LDAP v2, but turns out...when I put the ironport to v3 the query worked beautifully.&lt;BR /&gt;&lt;BR /&gt;The base DN o=wfisd (our entire tree) with no custom query was sufficient.&lt;BR /&gt;&lt;BR /&gt;took the user filter query out of the base DN all together.&lt;BR /&gt;&lt;BR /&gt;Then, server accepts anonymous logins.  (no problem here either)&lt;BR /&gt;&lt;BR /&gt;For the group query, set it to custom, we set the search to:&lt;BR /&gt;&lt;BR /&gt;cn&lt;BR /&gt;&lt;BR /&gt;objectclass=group&lt;BR /&gt;&lt;BR /&gt;query members.&lt;BR /&gt;&lt;BR /&gt;I believe the entire problem however was the ldap v2 or v3 issue.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Jul 2008 00:01:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/web-security/ldap-v2-query-edirectory/m-p/956672#M241</guid>
      <dc:creator>mhorany_ironport</dc:creator>
      <dc:date>2008-07-02T00:01:09Z</dc:date>
    </item>
  </channel>
</rss>

