Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations IamaSherpa on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

LDAP Authentication

Status
Not open for further replies.

teccum

Technical User
Aug 19, 2001
98
US

I am trying to configure the LDAP Authentication for the group of users.

I have imported the users from the NT domain and have defined the Group Distinguished Name in the Authentication Tab of the Group editor.

when I try to logon, I am receiving an error message like

"(MicroStrategy Intelligence Server is not configured to support LDAP authentication.)"

I understand that it say's that I need to configure the I-server to support LDAP authentication, but I do not find the settings or options to specify any LDAP setting when I go to the Configure Intelligence Server Tool.

All, I see for configuration is three options namely,
which I have already done.
1. Metadata repository and statistics tables.
2. Set up Microstrategy Intelligent Server
3. Project Sources.

So, where do I define this settings and how do i link the
LDAP users to Microstrategy, so that when they login to
their desktop through their windows login Id then they
should be able to login into the Microstrategy Desktop
with entering a microstrategy user id and password.

kindly give your suggestion and your help is appreciated.

thanks
teccum.
 

I am sorry, I know the I-Server settings location, but I am trying to figure out what setting I should change or set to avoid this error.

thanks
teccum.
 
In the Project Source Manager, on the Advanced tab, set the authentication to LDAP.

In the IS config editor, under LDAP, you will need to specify the appropriate LDAP config settings.

You can link a user in the User Editor > Authentication tab > LDAP Authentication. I believe there's a Command Manager script also in case you have a lot of users who require linking.
 


I have already specified the authentication setting in the Intelligence Server configuration Menu, from the 3-tier project source.

I have also defined the setting in General, Configuration and User/Group Import locations, but I am getting an error message which is

"An error occured during authentication. Please contact your administrator: the required LDAP components could not be found or are not LDAP V3 compliant."

How to resolve this error message and what should I do.
I have checked the machine where I-Server is located for the WLdap32.dll file and this file is available in the machine. Also the i checked with the system administrator and it is V3 compliant.

Any other ideas.

thanks
teccum.
 

All,

I was able to resolve this error message.

I was getting this error message because the calling convention should be set to "Cdecl" in the -- Microstrategy I-Server Configuration area. Under General Tab, there is an option for Calling Convention.

The calling calling convention should be set to
'Cdecl' instead of standard when we use Microsoft
Active Directory.

The other mistake which we should not do and we should remember is, the 'user distinguished name' should be given completely.

(i.e.) In my case it is a_user_mpmg@mpmg.com, but I
was giving a_user_mpmg.

Now I am able to test the connection successfully, but
when I try to login through Web, I get a different
error message. It is

"Error in login

MicroStrategy Server error: (You do not have access
privileges to project 'MPMG Datawarehouse'.) "

I have given the privileges for this project for my
user id in the user editor. I checked by restarting and
logging into my desktop but here too I was not able to
login into the project directly.

Do anyone have idea on where I am going wrong.

Thanks
teccum.

 


All,

I figured out why I got this error. Funny though, however, there was a period(.) in the LDAP I-Server configuration. In the general tab, for D.N(distinguished name) there was a dot at the end of the paramaters. So, once I noticed it and removed it, it was working well.
For eg (dc=inside,dc=mpmg,dc=com), I had (dc=inside,dc=mpmg,dc=com.) as the paramater.

Now only thing is, I am still not able to enable the windows authentication for the users so that when they login through web they need not provide the mstr credentials onceagain. I had 2 hrs of discussion on this with the tech support and they are doing some research on this.

Have anyone enabled windows authentication and have the project or reports within the company Intranet.

share your experiences.

thanks
teccum.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top