You are viewing limited content. For full access, please sign in.

Question

Question

AD user having Admin privilages before assigning full user rights

asked on November 28, 2017

Hi 

Recently one of our client raised a concern where a newly created Active directory user (not yet a LF user),  tries logging in to LF using LF client / windows authentication, the user has Admin rights. Now, if the user is created in laserfiche and then added onto a group within laserfiche, then the user inherits the rights from the LF group. 

Has anyone come across similar concerns? Please let me know if there is any place where I can start investigating. Client is still on LF Avante (hence LFDS is not in picture). 

Thank you.

 

 

0 0

Replies

replied on November 29, 2017

In the Laserfiche Administration console, you can go to the Windows Accounts node, select the account in question, open its properties and look at the effective rights to see which group(s) it's inheriting those rights from.

2 0
replied on November 29, 2017

hello Bipin,

try to use Laserfiche LDAP Management option configure LDAP Server profile so new account created in AD can log in to Laserfiche with user@domain.com

Thank you.

0 0
replied on December 6, 2017

Thank you for your response Miruna, I will check/review with the client .

0 0
You are not allowed to follow up in this post.

Sign in to reply to this post.