-
Type: Improvement
-
Status: Open
-
Priority: Minor
-
Resolution: Unresolved
-
Affects Version/s: None
-
Component/s: Configuration
-
Tags:
Under certain circumstances (to be determined), the presence of dynamicAttributeId="memberURL" in the LDAP configuration makes the reference search fail.
We could add a condition to make this part optional in the template templates/common/config/default-ldap-users-directory-bundle.xml.nxftl
<#if "${nuxeo.ldap.group.mapping.members.dynamicAttributeId.enabled}" == "true"> <ldapReference field="members" directory="ldapUserDirectory" forceDnConsistencyCheck="false" staticAttributeId="${nuxeo.ldap.group.mapping.members.staticAttributeId}" dynamicAttributeId="${nuxeo.ldap.group.mapping.members.dynamicAttributeId}" /> <ldapReference field="subGroups" directory="ldapGroupDirectory" forceDnConsistencyCheck="false" staticAttributeId="${nuxeo.ldap.group.mapping.members.staticAttributeId}" dynamicAttributeId="${nuxeo.ldap.group.mapping.members.dynamicAttributeId}" /> <#else> <ldapReference field="members" directory="ldapUserDirectory" forceDnConsistencyCheck="false" staticAttributeId="${nuxeo.ldap.group.mapping.members.staticAttributeId}" /> <ldapReference field="subGroups" directory="ldapGroupDirectory" forceDnConsistencyCheck="false" staticAttributeId="${nuxeo.ldap.group.mapping.members.staticAttributeId}" /> </#if>