<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Setting Geoportal / ArcGISPortal using LDAP in ArcGIS Enterprise Questions</title>
    <link>https://community.esri.com/t5/arcgis-enterprise-questions/setting-geoportal-arcgisportal-using-ldap/m-p/486202#M18841</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No.&lt;/P&gt;&lt;P&gt;I cant even connect. But, never mind. Problem is solved now. Checkout my reply.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 03 Sep 2019 03:09:39 GMT</pubDate>
    <dc:creator>yockee</dc:creator>
    <dc:date>2019-09-03T03:09:39Z</dc:date>
    <item>
      <title>Setting Geoportal / ArcGISPortal using LDAP</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-questions/setting-geoportal-arcgisportal-using-ldap/m-p/486200#M18839</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I succesfully&amp;nbsp;putting in parameter in&amp;nbsp;Geoportal administrator (Portal Administrator Directory) with LDAP.&lt;/P&gt;&lt;P&gt;This is the paramater that i use :&lt;/P&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;&lt;P&gt;{&lt;BR /&gt; "type": "LDAP",&lt;BR /&gt; "properties": {&lt;BR /&gt; "userPassword": "mysecret",&lt;BR /&gt; "sAMAccountName": "uid=username,ou=User Accounts,ou=xxx,ou=yyy",&lt;BR /&gt; "caseSensitive": "false",&lt;BR /&gt; "userEmailAttribute": "mail",&lt;BR /&gt; "usernameAttribute": "uid",&lt;BR /&gt; "userFullnameAttribute": "cn",&lt;BR /&gt; "ldapURLForUsers": "ldap://myserver.sumtin.com/ou=User Accounts,ou=xxx,ou=yyy,dc=sumtin,dc=com",&lt;BR /&gt; "isPasswordEncrypted": "true",&lt;BR /&gt; "userSearchAttribute": "sAMAccountName"&lt;BR /&gt; }&lt;BR /&gt;}&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Note : That parameter above is not exactly the same as Esri suggested. I changed the "user" parameter into "&lt;SPAN style="background-color: #f6f6f6;"&gt;sAMAccountName". If its not changed, the configuration will give out error "&lt;/SPAN&gt;Failed to connect to the user store."&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However, when I try to add member in Geoportal (Geoportal -&amp;gt; Organization -&amp;gt; Add members -&amp;gt; "Add members based on existing enterprise users", there is no users come up. The list is empty. Here is the picture :&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="458222" class="image-1 jive-image" src="https://community.esri.com/legacyfs/online/458222_pastedImage_3.png" /&gt;&lt;/P&gt;&lt;P&gt;it turns out that even-though it says "successful" during the Update Identity Store, it is actually not able to connect to the identity store. There is error when I try to search users in Get Enterprise User (portaladmin -&amp;gt; Home -&amp;gt; Security -&amp;gt; Users -&amp;gt; Get Enterprise Users) that says :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;"Error&lt;/STRONG&gt;&lt;/P&gt;&lt;DIV class=""&gt;&lt;H3&gt;&lt;STRONG&gt;[LDAP: error code 1 - 000004DC: LdapErr: DSID-0C0907C2, comment: In order to perform this operation a successful bind must be completed on the connection., data 0, v2580]&lt;/STRONG&gt;&lt;/H3&gt;&lt;/DIV&gt;&lt;P&gt;&lt;STRONG&gt;"&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;It seems to me that I need to bind it correctly first before able to list all the users.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any idea on how I should fix this problem ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;FYI : ArcGIS Portal 10.6.1; Browser is IE 11&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #a9a9a9; background-color: #ffffff; font-weight: 500;"&gt;@&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;A _jive_internal="true" class="" href="https://community.esri.com/thread/208299-portal-for-arcgis-enterprise-group#comment-744143" style="color: #a9a9a9; background-color: #ffffff; border: 0px; font-weight: 500; text-decoration: none; font-size: 12.5712px;" title="Go to message"&gt;PMcNeilly-esristaff&lt;/A&gt;&amp;nbsp;Please help.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Aug 2019 04:16:32 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-questions/setting-geoportal-arcgisportal-using-ldap/m-p/486200#M18839</guid>
      <dc:creator>yockee</dc:creator>
      <dc:date>2019-08-29T04:16:32Z</dc:date>
    </item>
    <item>
      <title>Re: Setting Geoportal / ArcGISPortal using LDAP</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-questions/setting-geoportal-arcgisportal-using-ldap/m-p/486201#M18840</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If you turn on automatic account creation, are accounts automatically created per a ldap user when they hit the portal home page?&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Sep 2019 00:42:56 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-questions/setting-geoportal-arcgisportal-using-ldap/m-p/486201#M18840</guid>
      <dc:creator>AngusHooper1</dc:creator>
      <dc:date>2019-09-03T00:42:56Z</dc:date>
    </item>
    <item>
      <title>Re: Setting Geoportal / ArcGISPortal using LDAP</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-questions/setting-geoportal-arcgisportal-using-ldap/m-p/486202#M18841</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No.&lt;/P&gt;&lt;P&gt;I cant even connect. But, never mind. Problem is solved now. Checkout my reply.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Sep 2019 03:09:39 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-questions/setting-geoportal-arcgisportal-using-ldap/m-p/486202#M18841</guid>
      <dc:creator>yockee</dc:creator>
      <dc:date>2019-09-03T03:09:39Z</dc:date>
    </item>
    <item>
      <title>Re: Setting Geoportal / ArcGISPortal using LDAP</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-questions/setting-geoportal-arcgisportal-using-ldap/m-p/486203#M18842</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="border: 0px; font-weight: inherit; margin: 0px 0px 0.0001pt;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;Here is the correct configuration thats working :&lt;/SPAN&gt;&lt;/P&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;&lt;P style="border: 0px; font-weight: inherit; margin: 0px 0px 0.0001pt;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;{&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="border: 0px; font-weight: inherit; margin: 0px 0px 0.0001pt;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;&amp;nbsp; "type": "LDAP",&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="border: 0px; font-weight: inherit; margin: 0px 0px 0.0001pt;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;&amp;nbsp; "properties": {&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="border: 0px; font-weight: inherit; margin: 0px 0px 0.0001pt;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;&amp;nbsp; &amp;nbsp;&amp;nbsp;"userPassword": "v24qDsZ1bH2U1cUst7n0Ng==",&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="border: 0px; font-weight: inherit; margin: 0px 0px 0.0001pt;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; "userEmailAttribute": "mail",&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="border: 0px; font-weight: inherit; margin: 0px 0px 0.0001pt;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; "usernameAttribute": "cn",&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="border: 0px; font-weight: inherit; margin: 0px 0px 0.0001pt;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; "&lt;SPAN style="border: 0px; font-weight: bold; font-size: 13.3333px;"&gt;&lt;STRONG&gt;user&lt;/STRONG&gt;&lt;/SPAN&gt;": "sAMAccountName=MY&amp;nbsp;Name,OU=XX,OU=User Accounts,OU=X,OU=Y,DC=Z,DC=com",&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="border: 0px; font-weight: inherit; margin: 0px 0px 0.0001pt;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; "ldapURLForUsers": "ldap://LDAP-address.com/OU=User Accounts,OU=X,OU=Y,DC=Z,DC=com",&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="border: 0px; font-weight: inherit; margin: 0px 0px 0.0001pt;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; "isPasswordEncrypted": "true"&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="border: 0px; font-weight: inherit; margin: 0px 0px 0.0001pt;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;&amp;nbsp; }&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="border: 0px; font-weight: inherit;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;}&lt;/SPAN&gt;&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P style="background-color: #ffffff; border: 0px;"&gt;&lt;SPAN style="border: 0px; font-weight: inherit; font-size: 10pt;"&gt;In LDAP, I can trace my user name by following this path : "&lt;SPAN style="background-color: #ffffff; border: 0px; font-weight: inherit; font-size: 13.3333px;"&gt;CN=MY Name,OU=XX,&lt;/SPAN&gt;&lt;SPAN style="background-color: #ffffff; border: 0px; font-weight: bold;"&gt;&lt;STRONG&gt;OU&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;SPAN style="background-color: #ffffff; border: 0px; font-weight: inherit; font-size: 13.3333px;"&gt;=User Accounts,&lt;/SPAN&gt;&lt;SPAN style="background-color: #ffffff; border: 0px; font-weight: bold;"&gt;&lt;STRONG&gt;OU&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;SPAN style="background-color: #ffffff; border: 0px; font-weight: inherit; font-size: 13.3333px;"&gt;=X,&lt;/SPAN&gt;&lt;SPAN style="background-color: #ffffff; border: 0px; font-weight: bold;"&gt;&lt;STRONG&gt;OU&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;SPAN style="background-color: #ffffff; border: 0px; font-weight: inherit; font-size: 13.3333px;"&gt;=Y,DC=Z,DC=com". This is, probably 95% sure, is the path that you should type on to the "&lt;SPAN style="border: 0px; font-weight: bold; font-size: 13.3333px;"&gt;&lt;STRONG&gt;user&lt;/STRONG&gt;&lt;/SPAN&gt;" parameter part. I remove some parameters as well, like : "&lt;SPAN style="color: #4c4c4c; border: 0px; font-weight: inherit; font-size: 9pt;"&gt;caseSensitive" and "userSearchAttribute".&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border: 0px;"&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border: 0px;"&gt;&lt;SPAN style="border: 0px; background-color: #ffffff; color: #4c4c4c; font-weight: inherit; font-size: 9pt;"&gt;@Angus Hooper. Thanks for replying.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Sep 2019 03:12:04 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-questions/setting-geoportal-arcgisportal-using-ldap/m-p/486203#M18842</guid>
      <dc:creator>yockee</dc:creator>
      <dc:date>2019-09-03T03:12:04Z</dc:date>
    </item>
  </channel>
</rss>

