IBM Support

LDAP server authenticates user

Question & Answer


Question

LDAP Troubleshooting Multipart Document - Part 6 of 11

Cause

Enhanced documentation

Answer

After:

* The user enters a URL to Maximo
* The JEE server is configured for J2EE server security
* The requested resource is protected
* The JEE server requests security authentication
* The browser displays the authentication dialog

What is the next step in the LDAP troubleshooting flow chart?

After the JEE server requests authentication from the client browser, the browser displays a login dialog box where the user enters their credentials. The user is then authenticated by the LDAP server. In order for the LDAP server to successfully authenticate a user, the username and password stored in the LDAP server must match the credentials entered by the user in the login dialog.

The screen below shows an Microsoft Active Directory 2012 system with a maximousers group and a wilson user.

Note: The full description of this user is CN=wilson, OU=Users, DC= litmaxsys, DC=maximo, DC=mro, DC=com

AttributeNameValue
cnCommon Namewilson
ouOrganizational UnitUsers
dcDomain ComponentMaximo
dcDomain Componentlitmaxsys
dcDomain Componentmaximo
dcDomain Componentmro
dcDomain Componentcom



If there are sub Organizational Units as shown below, they can be further described by additional OU definitions. In this example:
This user is CN=wilson, OU=Users, DC= litmaxsys, DC=maximo, DC=mro, DC=com


Note: All users who will be authenticated to use Maximo must be members of the group mapped to the maximouser role. In our example the group maximousers is mapped to the role maximouser.

The screens below show the users in the maximousers group.





Back to - Local client browser generates login dialog -
LDAP Troubleshooting Master Document
Forward to - J2EE Server checks user role mapping for member of authorized group -
LDAP Troubleshooting Multipart Document 5 of 11 – Local client browser generates login dialog

[{"Product":{"code":"SSLKT6","label":"IBM Maximo Asset Management"},"Business Unit":{"code":"BU055","label":"Cognitive Applications"},"Component":"Security Authentication","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"Version Independent","Edition":"","Line of Business":{"code":"LOB59","label":"Sustainability Software"}},{"Product":{"code":"SSLKTY","label":"Maximo Asset Management for IT"},"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Component":" ","Platform":[{"code":"","label":""}],"Version":"","Edition":"","Line of Business":{"code":"LOB59","label":"Sustainability Software"}},{"Product":{"code":"SSWK4A","label":"Maximo Asset Management Essentials"},"Business Unit":{"code":"BU055","label":"Cognitive Applications"},"Component":" ","Platform":[{"code":"","label":""}],"Version":"","Edition":"","Line of Business":{"code":"LOB59","label":"Sustainability Software"}},{"Product":{"code":"SSKTXT","label":"Tivoli Change and Configuration Management Database"},"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Component":" ","Platform":[{"code":"","label":""}],"Version":"","Edition":"","Line of Business":{"code":"LOB59","label":"Sustainability Software"}},{"Product":{"code":"SS6HJK","label":"Tivoli Service Request Manager"},"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Component":" ","Platform":[{"code":"","label":""}],"Version":"","Edition":"","Line of Business":{"code":"LOB59","label":"Sustainability Software"}},{"Product":{"code":"SSWT9A","label":"IBM Control Desk"},"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Component":" ","Platform":[{"code":"","label":""}],"Version":"","Edition":"","Line of Business":{"code":"LOB59","label":"Sustainability Software"}}]

Document Information

Modified date:
13 April 2021

UID

swg21304204