Landmark Security

 3 Replies
 1 Subscribed to this topic
 32 Subscribed to this forum
Sort:
Author
Messages
kshields
Basic Member
Posts: 11
Basic Member

    We are testing a new build of an IPA server. Prior to ISS Federation with LSF, we were able to log in to Inbasket and other IPA-related URLs as well as Rich Client and Designer. Both LSF and LM have been bound to the client's corporate LDAP for sign on authentication.

     

    After Federating the two servers, Inbasket has worked as expected - you can navigate from Portal to Inbasket without being prompted for credentials by LM. However, any attempt to log in to Rich Client or IP Designer results in "Invalid user / password". I've checked the lsservice.properties files against those of working installations and I don't see any difference. I've had a case open with Infor Support for over a week, and I've checked with an experienced installer - neither has run into this situation before.

     

    Any ideas?

    jdever
    Advanced Member
    Posts: 29
    Advanced Member
      I just had the exact same issue with a LMK V11 update.
      The issue I had was that the SSOP LDAP bind login schema (in LMK) had a different user than the one that was used for the SSOPV2 LDAP bind.
      The SSOP LDAP bind user was not correct (I believe this is a bug).
      KB 1191644 has some good information on checking the information used for the LDAP bind.
      ...
      The fix was to go into the SSOP-LDAP bind schema and enter the correct search identity and password.
      This must match the SSOPV2-LDAP bind search identity and password.
      >>> This is all done in LMK (not LSF).
      Good luck.
      kshields
      Basic Member
      Posts: 11
      Basic Member
        Thanks - I will definitely check those items.
        kshields
        Basic Member
        Posts: 11
        Basic Member
          That fixed it. I sure spent a lot of time chasing that one down - thanks for the answer! You're the man!!