<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic LDAP integration query in HPE Morpheus Enterprise Software</title>
    <link>https://community.hpe.com/t5/hpe-morpheus-enterprise-software/ldap-integration-query/m-p/7247593#M767</link>
    <description>&lt;P&gt;Hi Expert, I have question regarding LDAP integration.&lt;BR /&gt;
We have successfully integrate with LDAP with below, and user LDAP can logging in&lt;BR /&gt;
&lt;/P&gt;&lt;DIV class="lightbox-wrapper"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="Screenshot 2023-05-26 195501"&gt;&lt;img src="https://community.hpe.com/t5/image/serverpage/image-id/150193iE9217037ECC568A3/image-size/large?v=v2&amp;amp;px=2000" role="button" title="950851e6ef9dd97c67d9bd7e2515d77807cc26e1.png" alt="950851e6ef9dd97c67d9bd7e2515d77807cc26e1.png" /&gt;&lt;/span&gt;&lt;/DIV&gt;&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Now customer has additional requirement to smaller group of users and create cn in ldap, ou=KAWAN_GROUPS &amp;amp; cn=SP&lt;BR /&gt;
&lt;/P&gt;&lt;DIV class="lightbox-wrapper"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="Screenshot 2023-05-26 195617"&gt;&lt;img src="https://community.hpe.com/t5/image/serverpage/image-id/150135i324C0854F14C2DF2/image-size/large?v=v2&amp;amp;px=2000" role="button" title="c1bed4eb6ef988553d3c6e502bfc787aa1e220ff.png" alt="c1bed4eb6ef988553d3c6e502bfc787aa1e220ff.png" /&gt;&lt;/span&gt;&lt;/DIV&gt;&lt;BR /&gt;
and put additional parameter REQUIRED LDAP GROUP DN&lt;BR /&gt;
&lt;DIV class="lightbox-wrapper"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="Screenshot 2023-05-26 195545"&gt;&lt;img src="https://community.hpe.com/t5/image/serverpage/image-id/149970i704E8A7BDC5E954D/image-size/large?v=v2&amp;amp;px=2000" role="button" title="17196fbc6c780287ca6829c7f4e48bdc1e65dfe7.png" alt="17196fbc6c780287ca6829c7f4e48bdc1e65dfe7.png" /&gt;&lt;/span&gt;&lt;/DIV&gt;&lt;BR /&gt;
but this doesnt work.&lt;BR /&gt;
Question is above understanding correct regarding REQUIRED LDAP GROUP DN parameter?&lt;BR /&gt;
If not, please help explain what REQUIRED LDAP GROUP DN for?&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Another question, we trying use ROLE MAPPINGS in right section , when we put LDAP DN member on SYSTEM ADMIN , but after logging in user still created as DEFAULT ROLE which is Standart User. Is it expected behaviour?&lt;/P&gt;
&lt;P&gt;For better understanding, this question come from my customer, they want to know what feature/capability of ldap integration, not much information with this parameter in morpheus doc.&lt;/P&gt;</description>
    <pubDate>Fri, 26 May 2023 13:58:31 GMT</pubDate>
    <dc:creator>Sam Shen_1</dc:creator>
    <dc:date>2023-05-26T13:58:31Z</dc:date>
    <item>
      <title>LDAP integration query</title>
      <link>https://community.hpe.com/t5/hpe-morpheus-enterprise-software/ldap-integration-query/m-p/7247593#M767</link>
      <description>&lt;P&gt;Hi Expert, I have question regarding LDAP integration.&lt;BR /&gt;
We have successfully integrate with LDAP with below, and user LDAP can logging in&lt;BR /&gt;
&lt;/P&gt;&lt;DIV class="lightbox-wrapper"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="Screenshot 2023-05-26 195501"&gt;&lt;img src="https://community.hpe.com/t5/image/serverpage/image-id/150193iE9217037ECC568A3/image-size/large?v=v2&amp;amp;px=2000" role="button" title="950851e6ef9dd97c67d9bd7e2515d77807cc26e1.png" alt="950851e6ef9dd97c67d9bd7e2515d77807cc26e1.png" /&gt;&lt;/span&gt;&lt;/DIV&gt;&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Now customer has additional requirement to smaller group of users and create cn in ldap, ou=KAWAN_GROUPS &amp;amp; cn=SP&lt;BR /&gt;
&lt;/P&gt;&lt;DIV class="lightbox-wrapper"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="Screenshot 2023-05-26 195617"&gt;&lt;img src="https://community.hpe.com/t5/image/serverpage/image-id/150135i324C0854F14C2DF2/image-size/large?v=v2&amp;amp;px=2000" role="button" title="c1bed4eb6ef988553d3c6e502bfc787aa1e220ff.png" alt="c1bed4eb6ef988553d3c6e502bfc787aa1e220ff.png" /&gt;&lt;/span&gt;&lt;/DIV&gt;&lt;BR /&gt;
and put additional parameter REQUIRED LDAP GROUP DN&lt;BR /&gt;
&lt;DIV class="lightbox-wrapper"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="Screenshot 2023-05-26 195545"&gt;&lt;img src="https://community.hpe.com/t5/image/serverpage/image-id/149970i704E8A7BDC5E954D/image-size/large?v=v2&amp;amp;px=2000" role="button" title="17196fbc6c780287ca6829c7f4e48bdc1e65dfe7.png" alt="17196fbc6c780287ca6829c7f4e48bdc1e65dfe7.png" /&gt;&lt;/span&gt;&lt;/DIV&gt;&lt;BR /&gt;
but this doesnt work.&lt;BR /&gt;
Question is above understanding correct regarding REQUIRED LDAP GROUP DN parameter?&lt;BR /&gt;
If not, please help explain what REQUIRED LDAP GROUP DN for?&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Another question, we trying use ROLE MAPPINGS in right section , when we put LDAP DN member on SYSTEM ADMIN , but after logging in user still created as DEFAULT ROLE which is Standart User. Is it expected behaviour?&lt;/P&gt;
&lt;P&gt;For better understanding, this question come from my customer, they want to know what feature/capability of ldap integration, not much information with this parameter in morpheus doc.&lt;/P&gt;</description>
      <pubDate>Fri, 26 May 2023 13:58:31 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-morpheus-enterprise-software/ldap-integration-query/m-p/7247593#M767</guid>
      <dc:creator>Sam Shen_1</dc:creator>
      <dc:date>2023-05-26T13:58:31Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP integration query</title>
      <link>https://community.hpe.com/t5/hpe-morpheus-enterprise-software/ldap-integration-query/m-p/7247594#M768</link>
      <description>&lt;P&gt;Hi CBunge ,&lt;BR /&gt;
Thanks for response,&lt;BR /&gt;
actually what we want to achive is create group of user with cn inside ou, and only allow those particular user with specified cn able to login.&lt;BR /&gt;
I found discussion reference below&lt;/P&gt;&lt;ASIDE class="quote quote-modified" data-post="1" data-topic="516"&gt;
  &lt;DIV class="title"&gt;
    &lt;DIV class="quote-controls"&gt;&lt;/DIV&gt;
    &lt;IMG loading="lazy" alt="" width="24" height="24" src="https://sea2.discourse-cdn.com/flex020/user_avatar/discuss.morpheusdata.com/lim900309/48/321_2.png" class="avatar" /&gt;
    &lt;A href="https://discuss.morpheusdata.com/t/i-want-to-know-how-to-integrated-hierarchical-structure-ldap-user/516"&gt;I want to know how to integrated hierarchical structure LDAP (user)&lt;/A&gt; &lt;A class="badge-category__wrapper " href="https://community.hpe.com/c/administration/14"&gt;&lt;SPAN data-category-id="14" data-drop-close="true" class="badge-category " title="The Administration category is focused on the administrative settings and concepts within the Morpheus platform.  This includes groups, users, roles, tenants, policies, plans &amp;amp; pricing, reporting, and others."&gt;&lt;SPAN class="badge-category__name"&gt;Administration&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/A&gt;
  &lt;/DIV&gt;
  &lt;BLOCKQUOTE&gt;
    LDAP integration is not described in detail in the official documentation. 
I looked at the post linked below and referenced it. 
&lt;A href="https://support.morpheusdata.com/s/article/Tips-for-integrating-LDAP-and-LDAPS-identity-sources?language=en_US" class="onebox" target="_blank" rel="noopener nofollow ugc"&gt;https://support.morpheusdata.com/s/article/Tips-for-integrating-LDAP-and-LDAPS-identity-sources?language=en_US&lt;/A&gt; 

&lt;A name="the-ldap-hierarchical-structure-in-my-test-environment-is-as-follows-1" class="anchor" href="#the-ldap-hierarchical-structure-in-my-test-environment-is-as-follows-1"&gt;&lt;/A&gt;The LDAP hierarchical structure in my test environment is as follows.

&lt;A name="dctcdclocal-ouou1-cngroup11-cnuser111-cnuser112-cngroup12-cnuser121-cnuser122-2" class="anchor" href="#dctcdclocal-ouou1-cngroup11-cnuser111-cnuser112-cngroup12-cnuser121-cnuser122-2"&gt;&lt;/A&gt;dc=tc,dc=local 
ou=ou1 
ㅡㄴcn=group11 
ㅡㅡㄴcn=user111 
ㅡㅡㄴcn=user112 
ㅡㄴcn=group12 
ㅡㅡㄴcn=user121 
ㅡㅡㄴcn=user122
My goal is to register all 4 users. ( usre111 , user112 , user121, user122 …
  &lt;/BLOCKQUOTE&gt;
&lt;/ASIDE&gt;

&lt;P&gt;But when I put parameter “USER DN EXPRESSION” with cn specified as above discussion reference cn=$username,cn=group,ou=ou1,dc=tc,dc=local, it always give error, and couldnt do SAVE CHANGES.&lt;/P&gt;
&lt;P&gt;Any insight?&lt;/P&gt;</description>
      <pubDate>Mon, 29 May 2023 06:46:38 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-morpheus-enterprise-software/ldap-integration-query/m-p/7247594#M768</guid>
      <dc:creator>Sam Shen_1</dc:creator>
      <dc:date>2023-05-29T06:46:38Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP integration query</title>
      <link>https://community.hpe.com/t5/hpe-morpheus-enterprise-software/ldap-integration-query/m-p/7247595#M769</link>
      <description>&lt;P&gt;&lt;CODE style="background : #f0f1f2;"&gt;Required Group&lt;/CODE&gt; means everyone authenticating to Morpheus with your LDAP integration &lt;STRONG&gt;must&lt;/STRONG&gt; belong to that group to even be able to log in.&lt;/P&gt;
&lt;P&gt;Now &lt;CODE style="background : #f0f1f2;"&gt;Required Group&lt;/CODE&gt; and &lt;CODE style="background : #f0f1f2;"&gt;Role Mappings&lt;/CODE&gt; both require group membership being passed and parsed correctly.  At the lower left of the Identity Source you’ll see &lt;CODE style="background : #f0f1f2;"&gt;LDAP Attribute Names&lt;/CODE&gt; where you must define &lt;CODE style="background : #f0f1f2;"&gt;Member of Attribute Name&lt;/CODE&gt; (normally this is just ‘memberOf’):&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image"&gt;&lt;img src="https://community.hpe.com/t5/image/serverpage/image-id/150161i8930C260EFD449C5/image-size/large?v=v2&amp;amp;px=2000" role="button" title="4feaa4feac4fc2bb50de0a9dfec0be0f8249f5a7.png" alt="4feaa4feac4fc2bb50de0a9dfec0be0f8249f5a7.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 26 May 2023 14:04:39 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-morpheus-enterprise-software/ldap-integration-query/m-p/7247595#M769</guid>
      <dc:creator>cbunge</dc:creator>
      <dc:date>2023-05-26T14:04:39Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP integration query</title>
      <link>https://community.hpe.com/t5/hpe-morpheus-enterprise-software/ldap-integration-query/m-p/7247596#M770</link>
      <description>&lt;P&gt;Your logs under Administration &amp;gt; Health &amp;gt; Morpheus Logs would give you more insight on why the save is possibly failing.  It may be best to open a support ticket if you continue to have issues.&lt;/P&gt;
&lt;P&gt;Also, a note, if you are using OpenLDAP you’ll need to be on at least Morpheus 6.0.1 per that previously linked thread.&lt;/P&gt;</description>
      <pubDate>Tue, 30 May 2023 12:31:46 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-morpheus-enterprise-software/ldap-integration-query/m-p/7247596#M770</guid>
      <dc:creator>cbunge</dc:creator>
      <dc:date>2023-05-30T12:31:46Z</dc:date>
    </item>
  </channel>
</rss>

