<div dir="ltr">Hi, <div><br></div><div><br></div><div>After many searches, it works for some of my users and don't work for some others.</div><div>Is it possible that parameter $RTAddressRegexp interfers with <span style="font-family:arial,sans-serif;font-size:13px">RT::Authen::ExternalAuth ?</span></div>
<div><span style="font-family:arial,sans-serif;font-size:13px"><br></span></div><div><span style="font-family:arial,sans-serif;font-size:13px">On Active directory side no error, only successes logs.</span></div><div><span style="font-family:arial,sans-serif;font-size:13px"><br>
</span></div><div><font face="arial, sans-serif">Do you no about any other debug options I could use ?</font></div><div><font face="arial, sans-serif"><br></font></div><div><font face="arial, sans-serif"><br></font></div>
<div><span style="font-family:arial,sans-serif;font-size:13px"><br></span></div><div><span style="font-family:arial,sans-serif;font-size:13px"><br></span></div><div><span style="font-family:arial,sans-serif;font-size:13px">Thanks</span></div>
<div class="gmail_extra"><br><br><div class="gmail_quote">On Wed, Aug 21, 2013 at 12:33 PM, Maximilien Drouet <span dir="ltr"><<a href="mailto:mdrouet@randco.fr" target="_blank">mdrouet@randco.fr</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div dir="ltr">Hi Nathan, <div><br></div><div>After many searchs with your help and our AD Administrator we found that the account was not authorized.</div>
<div><br></div><div>I was given another one and now, command line binds and authenticate well but no chance with RT. Here is the command line </div>
<div><font color="#0000ff"><br></font></div><div><font color="#0000ff"><font face="sans-serif" style="font-size:13px">ldapsearch -LLL -H ldap://myserver.mydomain.local -x -D 'mydomain\ldapuser' -W -b ou=FR,dc=mydomain,dc=local uid=mysuer</font><span style="font-size:13px;font-family:arial,sans-serif"> </span></font><br>
</div><div><br></div><div>and the output.</div>
<div><br></div><div><br><font color="#0000ff"><font face="sans-serif" style="font-size:13px">dn: CN=Firstname Lastname,OU=z - y - x,OU=city,OU=Users & Clients,OU=mydomain,OU=FR,DC=mydomain,DC=local</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> v</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">objectClass: top</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">objectClass: person</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">objectClass: organizationalPerson</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">objectClass: user</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">cn: Firstname Lastname</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">sn: Lastname</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">c: FR</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">l: city</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">title: myTitle</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">postalCode: Zipcode</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">physicalDeliveryOfficeName: z - y - x</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">telephoneNumber: myTelephonenumber</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">givenName: FirstName</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">distinguishedName: CN=Firstname Lastname,OU=z - y - x,OU=city,OU=Users & Clients,OU=mydomain,OU=FR,</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> DC=mydomain,DC=local</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">instanceType: 4</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">whenCreated: 20100701014148.0Z</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">whenChanged: 20130821001737.0Z</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">displayName: Firstname Lastname</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">uSNCreated: 73679</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">memberOf: CN=LL.microsoftproject,OU=SDG Groups,DC=mydomain,DC=local</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">memberOf: CN=LL.Crystal.Reports.XI,OU=SDG Groups,DC=mydomain,DC=local</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">memberOf: CN=LL.IE8,OU=SDG Groups,DC=mydomain,DC=local</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">memberOf: CN=LL.itop,OU=Groups,OU=mydomain,OU=FR,DC=mydomain,DC=local</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">memberOf: CN=LL.msvisio2003,OU=SDG Groups,DC=mydomain,DC=local</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">memberOf: CN=LL.ClickToCall,OU=SDG Groups,DC=mydomain,DC=local</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">memberOf: CN=mydomain.LL.dsi,OU=Groups,OU=mydomain,OU=FR,DC=mydomain,DC=local</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">uSNChanged: 10019507</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">co: FRANCE</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">department: z - y - x</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">streetAddress: myaddress</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">name: Firstname Lastname</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">objectGUID:: l8cI/GO3KEOyA0E8neccKA==</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">userAccountControl: 544</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">badPwdCount: 0</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">codePage: 0</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">countryCode: 250</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">badPasswordTime: 130215493735596806</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">lastLogoff: 0</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">lastLogon: 130214762950697235</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">pwdLastSet: 130214610102266437</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">primaryGroupID: 513</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">objectSid:: AQUAAAAAAAUVAAAAEQz3vwuoUpdtKTGZJPEAAA==</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">accountExpires: 130251384000000000</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">logonCount: 197</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">sAMAccountName: mysuer</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">sAMAccountType: 805306368</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">userPrincipalName: mymail</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">lockoutTime: 0</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">objectCategory: CN=Person,CN=Schema,CN=Configuration,DC=mydomain,DC=local</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">dSCorePropagationData: 20130524093118.0Z</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">dSCorePropagationData: 20130523093743.0Z</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">dSCorePropagationData: 16010101000001.0Z</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">lastLogonTimestamp: 130214610103032919</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">uid: mysuer</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">mail: mymail</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br>
</font></div><div><br><br><div></div><div class="gmail_extra"><br>I'm quite confused with the RT configuration file and it's option, even looking at the documentation I'm a litte bit lost, maybe the problem is there.</div>
<div class="gmail_extra"><br></div><div class="gmail_extra">Here is the RT_Config extract</div><div class="gmail_extra"><br></div><div class="gmail_extra"><font color="#9900ff"><font face="sans-serif" style="font-size:13px"># External Authentication Configuration</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">Set($ExternalAuthPriority, [ 'My_LDAP']);</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">Set($ExternalInfoPriority, [ 'My_LDAP']);</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">Set($ExternalSettings, {</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><div class="im"><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px"> # AN EXAMPLE LDAP SERVICE</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
</div><font face="sans-serif" style="font-size:13px"> 'My_LDAP' => {</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px"> 'type' => 'ldap',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'server' => 'myserver.mydomain.local',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'user' => 'ldapaccount',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'pass' => 'ldapaccountpassword',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'base' => 'ou=FR,dc=mydomain,dc=local',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'filter' => '(&(ObjectCategory=User)(ObjectClass=Person))',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><div class="im">
<br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'd_filter' => '(userAccountControl:1.2.840.113556.1.4.803:=2)',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
</div><font face="sans-serif" style="font-size:13px"> 'group' => 'OU=Users & Clients,OU=MYDOMAIN,OU=FR,DC=mydomain,DC=local',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'group_attr' => 'member',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'tls' => 0,</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'ssl_version' => 3,</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><div class="im"><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'net_ldap_args' => [ version => 3 ],</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
</div><font face="sans-serif" style="font-size:13px"> 'group_scope' => 'base',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'group_attr_value' => '*',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'attr_match_list' => ['Name'],</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'attr_map' => {</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px"> 'Name' => 'sAMAccountName',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'EmailAddress' => 'mail',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'Organization' => 'physicalDeliveryOfficeName',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'RealName' => 'cn',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'ExternalAuthId' => 'sAMAccountName',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'Gecos' => 'sAMAccountName',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'WorkPhone' => 'telephoneNumber',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'Address1' => 'streetAddress',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'City' => 'l',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'State' => 'st',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> 'Zip' => 'postalCode',</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px">'Country' => 'co'</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px"> },</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px">
<font face="sans-serif" style="font-size:13px"> },</font><span style="font-family:arial,sans-serif;font-size:13px"> </span><br style="font-family:arial,sans-serif;font-size:13px"><font face="sans-serif" style="font-size:13px">} );</font><span style="font-family:arial,sans-serif;font-size:13px"> </span></font><br>
</div><div class="gmail_extra"><br></div><div class="gmail_extra">
<br></div><div class="gmail_extra">Any other Idea ?<span class="HOEnZb"><font color="#888888"><br><br clear="all"><div><br></div>-- <br>Regards<br><br>Maximilien</font></span></div></div><br><br><div></div><br><br><div></div>
</div>
</blockquote></div><br><br clear="all"><div><br></div>-- <br>Regards</div><div class="gmail_extra"><br></div><div class="gmail_extra"><br></div><div class="gmail_extra">Maximilien</div></div>