Filtered Role

Can filtered role be used to filter users in the external ldap.

I hav added another datastore in access manager which is also used for authentication of users. Now i want to create a role for making policies. It is not possible to select individual users as the number of users is very high.

So i created a filtered role. But this filter role in not filtering users from the external ldap, its applying filter only on users listed in the AM's ldap.

Any suggestion for doing it?

Thanks in advance

[527 byte] By [Java_Dev] at [2007-11-26 7:50:32]
# 1
Which version of Access Manager are you using? If you're using 2005Q4, which patch level and which data store type?
dgolds at 2007-7-6 20:08:36 > top of Java-index,Web & Directory Servers,Directory Servers...
# 2
I am using JES 2005Q4. No patched applied.I am using another LDAP as data store of type 'LDAPv3 Repository Plugin'Thanks
Java_Dev at 2007-7-6 20:08:36 > top of Java-index,Web & Directory Servers,Directory Servers...
# 3

What do you mean by "other LDAP" - is it an LDAP other than Sun DS?

Also, should have asked before but I forgot - realm mode or legacy mode?

I'm guessing realm mode. There is support for filtered roles in Sun DS in realm mode, but you have to apply Access Manager patch 1. If a DS other than Sun, no support.

HTH,

David

dgolds at 2007-7-6 20:08:36 > top of Java-index,Web & Directory Servers,Directory Servers...
# 4

Other LDAP just means Sun DS running on a separate machine, other than the Sun DS used by AM for its own DIT.

The AM is running in realm mode.

I couldn抰 find the Access Manager Patch 1 on sun download site. Can you please provide me the URL?

I am getting the option of 慒iltered Role?in Access manager but as posted in earlier in this thread, the filtered role in unable to filter users from the external ldap. The filter is only applied to the users which are there in AM DIT. I want to apply the filter on the users which are there in the 慹xternal ldap?added through data store.

Hope I am clear with my problem.

Please advice.

Thanks

Java_Dev at 2007-7-6 20:08:36 > top of Java-index,Web & Directory Servers,Directory Servers...
# 5

The place to go for information about patches to AM is the Release Notes (http://docs.sun.com/app/docs/doc/819-2134). They provide patch numbers, download locations, etc.

Go to sunsolve.sun.com and pull down patch #120954-02, which is patch 2. Filtered role support requires patch 1 or higher, but since patch 2 is out, why not use it instead? Be sure to read the release notes as there are some instructions specific to installing patch 2 that you might want to know about.

The section in the Release Notes about patch 1 contains information about the support for filtered roles, be sure to read it after you have applied the patch.

HTH,

David

dgolds at 2007-7-6 20:08:36 > top of Java-index,Web & Directory Servers,Directory Servers...
# 6

Hi

I am using Sun access manager 7 2005Q4 patch 120955-05

I can create the filtered role but i dont see the service tab for the filtered for external direcotry (Sun directory version 5.2).

When i add amSDK datastore then is see along with ldapv3 datastore then is see the services tab for filtered role but if i give session or auth configuration for the role that is created in the AM configuration directory.

Read urgent help .Desperately waiting for response.Thanks in advance.

dio6666 at 2007-7-6 20:08:36 > top of Java-index,Web & Directory Servers,Directory Servers...
# 7

if you want to see filtered role with ldap v3 you have to enterd in support opereation filteredrole=create,edit,delete (check release notes for exact string)

Doing the above you will see filtered role tab with ldapv3 repo but

I think there some bug with ldapv3.............because you wont see service tab with filtered role.............

Crazt

anujeverett at 2007-7-6 20:08:36 > top of Java-index,Web & Directory Servers,Directory Servers...