Skip to Content.
Sympa Menu

grouper-users - Re: [grouper-users] SASL TLS/EXTERNAL in grouper-loader.properties

Subject: Grouper Users - Open Discussion List

List archive

Re: [grouper-users] SASL TLS/EXTERNAL in grouper-loader.properties


Chronological Thread 
  • From: Francesco Malvezzi <>
  • To:
  • Subject: Re: [grouper-users] SASL TLS/EXTERNAL in grouper-loader.properties
  • Date: Wed, 11 Sep 2013 13:24:08 +0200
  • Unimore-x-sa-score: -1.2

Il 10/09/2013 22:01, Chris Hyzer ha scritto:
> For these three configs:
>
> ldap.personAuthLdap.pemCaFile=/etc/ssl/certs/tcs-chain.pem
> ldap.personAuthLdap.pemCertFile=/etc/ssl/certs/grouper.pem
> ldap.personAuthLdap.pemKeyFile=/opt/grouper/conf/grouper.key
>
> Did you see those options in an example config file, or just type
> them in? I don't think they are valid configs...

sorry, they come from psp package, from file:
psp-example-grouper-to-openldap/ldap.properties:

# authn for sasl external (certificates)
# edu.vt.middleware.ldap.authtype=EXTERNAL
# edu.vt.middleware.ldap.tls=true
# edu.vt.middleware.ldap.serviceUser=cn=admin.example.edu
# these to use PEM format cert and key
# pemCaFile=/path/to/ca.pem
# pemCertFile=/path/to/cert.pem
# pemKeyFile=/path/to/key.pem

but I did wrong to add a prefix.


>
> You can put this in (in 2.1.4+):
>
> ldap.personLdap.configFileFromClasspath = ldap.personLdap.properties
>
> And put any vt-ldap configs in there... does it work? If not, what
> version of Grouper do you have, can you upgrade to the latest?

I'm still on 2.1.2.

Let me do the upgrade before reporting if it works (but why shouldn't?)

thank you,

Francesco



Archive powered by MHonArc 2.6.16.

Top of Page