<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FTD REST API - LdapAttributeMap  v6.7 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftd-rest-api-ldapattributemap-v6-7/m-p/4501576#M361</link>
    <description>&lt;P&gt;Hello Craig,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;were you able to fix the issue? I can see that there was a closing square bracket missing in your snippet. Could the be the reason for the UnclosableInputStream error?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;"name": "BW_Attributes",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ldapAttributeMaps": [&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;{&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ldapName": "memberOf",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ciscoName": "GROUP_POLICY",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"valueMappings": [&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;{&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ldapValue": "CN=VPN Admins,OU=VPN Groups,OU=Cisco_Accounts,OU=Bobs_World,DC=bobworld,DC=int",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ciscoValue": "VPN_Admins",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"type": "ldaptociscovaluemapping"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;},&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;{&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ldapValue": "CA VPN - Staff,OU=VPN Groups,OU=Cisco_Accounts,OU=Bobs_World,DC=bobworld,DC=int",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ciscoValue": "Anyconnect_CA",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"type": "ldaptociscovaluemapping"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;}&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;],&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"type": "ldapattributemapping"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;}&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;]&lt;/STRONG&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 11 Nov 2021 15:51:26 GMT</pubDate>
    <dc:creator>osanniko</dc:creator>
    <dc:date>2021-11-11T15:51:26Z</dc:date>
    <item>
      <title>FTD REST API - LdapAttributeMap  v6.7</title>
      <link>https://community.cisco.com/t5/network-security/ftd-rest-api-ldapattributemap-v6-7/m-p/4446293#M355</link>
      <description>&lt;P&gt;Hey all, I'm sure this question is a longshot but I'm stuck.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;See the attached document TAC gave me to create a LdapAttributeMap using the FTD REST API Explorer integrated in FDM.&lt;/P&gt;&lt;P&gt;The first screenshot is the specific body of the LdapAAttributeMap Model.&amp;nbsp; The 2nd is the entire document TAC sent me.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My code (which throws an error) my first guess the API has changed since this document was created?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The Example Values have whole other Model&amp;nbsp;ldapAttributeToGroupPolicyMappings just below where Cisco's Example ends?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Anyone ever pull this off?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My Code:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;"name": "BW_Attributes",&lt;BR /&gt;"ldapAttributeMaps": [&lt;BR /&gt;{&lt;BR /&gt;"ldapName": "memberOf",&lt;BR /&gt;"ciscoName": "GROUP_POLICY",&lt;BR /&gt;"valueMappings": [&lt;BR /&gt;{&lt;BR /&gt;"ldapValue": "CN=VPN Admins,OU=VPN Groups,OU=Cisco_Accounts,OU=Bobs_World,DC=bobworld,DC=int",&lt;BR /&gt;"ciscoValue": "VPN_Admins",&lt;BR /&gt;"type": "ldaptociscovaluemapping"&lt;BR /&gt;},&lt;BR /&gt;{&lt;BR /&gt;"ldapValue": "CA VPN - Staff,OU=VPN Groups,OU=Cisco_Accounts,OU=Bobs_World,DC=bobworld,DC=int",&lt;BR /&gt;"ciscoValue": "Anyconnect_CA",&lt;BR /&gt;"type": "ldaptociscovaluemapping"&lt;BR /&gt;}&lt;BR /&gt;],&lt;BR /&gt;"type": "ldapattributemapping"&lt;BR /&gt;}&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Throws a "&lt;SPAN&gt; "&lt;/SPAN&gt;&lt;SPAN class="hljs-attr"&gt;description&lt;/SPAN&gt;&lt;SPAN&gt;": &lt;/SPAN&gt;&lt;SPAN class="hljs-string"&gt;"InvalidTypeIdException: Missing type id when trying to resolve subtype of [simple type, LdapAttributeMap]: missing type id property 'type'\n at [Source: (UnclosableInputStream); line: 1, column: 3]"&lt;/SPAN&gt;&lt;SPAN&gt;,"&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks all,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Aug 2021 08:55:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-rest-api-ldapattributemap-v6-7/m-p/4446293#M355</guid>
      <dc:creator>CraigBelcher80625</dc:creator>
      <dc:date>2021-08-09T08:55:44Z</dc:date>
    </item>
    <item>
      <title>Re: FTD REST API - LdapAttributeMap  v6.7</title>
      <link>https://community.cisco.com/t5/network-security/ftd-rest-api-ldapattributemap-v6-7/m-p/4501576#M361</link>
      <description>&lt;P&gt;Hello Craig,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;were you able to fix the issue? I can see that there was a closing square bracket missing in your snippet. Could the be the reason for the UnclosableInputStream error?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;"name": "BW_Attributes",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ldapAttributeMaps": [&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;{&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ldapName": "memberOf",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ciscoName": "GROUP_POLICY",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"valueMappings": [&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;{&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ldapValue": "CN=VPN Admins,OU=VPN Groups,OU=Cisco_Accounts,OU=Bobs_World,DC=bobworld,DC=int",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ciscoValue": "VPN_Admins",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"type": "ldaptociscovaluemapping"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;},&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;{&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ldapValue": "CA VPN - Staff,OU=VPN Groups,OU=Cisco_Accounts,OU=Bobs_World,DC=bobworld,DC=int",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"ciscoValue": "Anyconnect_CA",&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"type": "ldaptociscovaluemapping"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;}&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;],&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;"type": "ldapattributemapping"&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;}&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;]&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 11 Nov 2021 15:51:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-rest-api-ldapattributemap-v6-7/m-p/4501576#M361</guid>
      <dc:creator>osanniko</dc:creator>
      <dc:date>2021-11-11T15:51:26Z</dc:date>
    </item>
    <item>
      <title>Re: FTD REST API - LdapAttributeMap  v6.7</title>
      <link>https://community.cisco.com/t5/network-security/ftd-rest-api-ldapattributemap-v6-7/m-p/4537563#M378</link>
      <description>&lt;P&gt;I believe I know the fix to your issue (and thank you to &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/451692"&gt;@osanniko&lt;/a&gt; for pointing out the missing closing bracket as well).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I had this exact same issue and could not fix it for a while until I double checked the REST API docs and noticed something. You're (understandably) using JUST the LdapAttributeMapping section when in reality, you need to encapsulate LdapAttributeMapping in the broader LdapAttributeMapWrapper for the configuration to work. (Though note that I'm running 6.6.5 so YMMV for different versions).&lt;/P&gt;&lt;P&gt;Currently, from the REST API docs, the following example template is shown for LDAP Attribute Maps:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="FTD-Rest-API.PNG" style="width: 290px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/142036i292E088564194A38/image-size/large?v=v2&amp;amp;px=999" role="button" title="FTD-Rest-API.PNG" alt="FTD-Rest-API.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm undoubtedly going to go against best-practices with this config, but at a minimum, this is what worked for me (mapped to your hypothetical config).&lt;/P&gt;&lt;P&gt;{&lt;BR /&gt;&amp;nbsp; "name": "BW_Attributes",&lt;BR /&gt;&amp;nbsp; "ldapAttributeMaps": [&lt;BR /&gt;&amp;nbsp; &amp;nbsp; {&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; "ldapName": "memberOf",&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; "ciscoName": "GROUP_POLICY",&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; "valueMappings": [&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; {&lt;BR /&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;nbsp; "ldapValue": "CN=VPN Admins,OU=VPN Groups,OU=Cisco_Accounts,OU=Bobs_World,DC=bobworld,DC=int",&lt;BR /&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;nbsp; "ciscoValue": "VPN_Admins",&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; "type": "ldaptociscovaluemapping"&lt;BR /&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp; }&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ],&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; "type": "ldapattributemapping"&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; }&lt;BR /&gt;&amp;nbsp; ],&lt;BR /&gt;&amp;nbsp; "type": "ldapattributemap",&lt;BR /&gt;&amp;nbsp; "links": {&lt;BR /&gt;&amp;nbsp; "self": ""&lt;BR /&gt;&amp;nbsp; }&lt;BR /&gt;}&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've left out optional parameters such as &lt;STRONG&gt;version&lt;/STRONG&gt;, &lt;STRONG&gt;ldapAttributeToGroupPolicyMappings&lt;/STRONG&gt;, &lt;STRONG&gt;id&lt;/STRONG&gt;, and a sub definition within the "self" field, but this worked first try for me. Let me know if you have any questions! &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jan 2022 00:15:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-rest-api-ldapattributemap-v6-7/m-p/4537563#M378</guid>
      <dc:creator>christianh98114</dc:creator>
      <dc:date>2022-01-25T00:15:20Z</dc:date>
    </item>
    <item>
      <title>Re: FTD REST API - LdapAttributeMap  v6.7</title>
      <link>https://community.cisco.com/t5/network-security/ftd-rest-api-ldapattributemap-v6-7/m-p/4537723#M380</link>
      <description>&lt;P&gt;Thank you&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jan 2022 05:31:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-rest-api-ldapattributemap-v6-7/m-p/4537723#M380</guid>
      <dc:creator>CraigBelcher80625</dc:creator>
      <dc:date>2022-01-25T05:31:53Z</dc:date>
    </item>
  </channel>
</rss>

