Skip to Content
author's profile photo Former Member
Former Member

Setting up an LDAP data source as an xMII (12.0.4) data server

I'm trying to set up an LDAP data source as an xMII data server in order to retrieve user attributes from our company's Active Directory. I downloaded an LDAP jdbc driver from Novell and deployed it. I set up an IDBC data server with the following parameters:

JDBC Driver: com.novell.sql.LDAPDriver

Server Package: com.sap.xmii.Illuminator.connectors.IDBC

ServerURL: jdbc:ldap://DCSERVER.na.com:389/dc=na,dc=com?SEARCH_SCOPE:=subTreeScope

I used the same AD account that we used in xMII 11.5 to authenticate to LDAP to authenticate users to xMII. (We're still using Netweaver accounts in 12.0.4 but will migrate to LDAP in the next month or so.)

When I check the data server status I get 'Error'.

Any ideas?

David Macindoe

Add a comment
10|10000 characters needed characters exceeded

Related questions

3 Answers

  • Best Answer
    author's profile photo Former Member
    Former Member
    Posted on Sep 03, 2008 at 08:34 PM

    Hi David,

    We connect to LDAP with our own driver that's not meant for jdbc access. The question I suppose is how does the jdbc-ldap driver work, does it do similar namespace browsing? Perhaps you could connect somehow, but I have not seen it done nor have I run into a similar issue. I was hoping the log file would provide more meaningful information - maybe you could try changing the log level, not sure if that would help at all. You could also review the Default Trace log. Sorry I can't be of better help.

    Regards,

    Diana

    Add a comment
    10|10000 characters needed characters exceeded

  • author's profile photo Former Member
    Former Member
    Posted on Sep 03, 2008 at 02:34 PM

    Hi David,

    Have you checked the Netweaver logs? I would suggest you recreate the issue, noting the time you did so, and then peruse the logs for more detailed information as to why the connection is failing.

    Kind Regards,

    Diana Hoppe

    Add a comment
    10|10000 characters needed characters exceeded

    • Former Member Former Member

      The User Attributes I was referring to were the common user information like Email,telefone,address etc.

      Now I have very little knowledge on the AD side but as I understand, these are the most common user attributes apart from which I am sure AD would allow you to define more.

      As far as the AD Group is concerned , I am not sure if this could be defined as an attribute, I may be wrong. Moreover in my experience so far I have not come accross any instance wherein I was able to see the AD group info in xMII although it is very much accessible from the Netweaver UME.

      Also, are you not thinking of defining Netweaver Roles (which should be mapped to the AD groups) for assigning the permissions in MII? As far as I know this is the cleanest way to secure your application because as far as the Navigation is concerned you will be able to see only the Users and the Netweaver Roles in MII.

  • author's profile photo Former Member
    Former Member
    Posted on Sep 03, 2008 at 03:13 PM

    Hi David,

    I've done some asking around here in the office - the LDAP server is not a relational database, and uses a different protocol, so there does not appear to be a way to connect to it as such.

    Kind Regards,

    Diana Hoppe

    Add a comment
    10|10000 characters needed characters exceeded

Before answering

You should only submit an answer when you are proposing a solution to the poster's problem. If you want the poster to clarify the question or provide more information, please leave a comment instead, requesting additional details. When answering, please include specifics, such as step-by-step instructions, context for the solution, and links to useful resources. Also, please make sure that you answer complies with our Rules of Engagement.
You must be Logged in to submit an answer.

Up to 10 attachments (including images) can be used with a maximum of 1.0 MB each and 10.5 MB total.