On Thu, Mar 13, 2014 at 10:15 AM, <bjoern.bec...@easycash.de> wrote: > Hello, > > server.xml: > <Realm className="org.apache.catalina.realm.JNDIRealm" debug="99" > connectionName="CN=SVC,OU=Service > Accounts,OU=SITES,OU=\#KONFIGURATION,DC=DOM,DC=de" > connectionPassword="_2VK!WHzybn1SJ8P" > > connectionURL="ldap://server:389/OU=SITES,OU=\#KONFIGURATION,DC=DOM,DC=de?sAMAccountName?sub?(objectClass=*)" > > userSearch="(sAMAccountName={0})" > userSubtree="true" > > roleSearch="(memberof={0})" > roleSubtree="true" > userRoleName="CN=Tomcat Admins,OU=Roles,OU=Spezielle > Gruppen,OU=SITES,OU=\#KONFIGURATION,DC=DOM,DC=de " > /> > > <!-- roleBase="DC=DOM,DC=de" > roleName="cn" > --> >
Lines that are different in my context: connectionURL="ldap://fully.qualified.server.name:389" userSearch="(&(objectCategory=person)(sAMAccountName={0}))" roleSearch="(member={0})" userRoleName="memberOf" I don't know if it makes a difference for you or not.