You are viewing limited content. For full access, please sign in.

Question

Question

Adding Laserfiche Directory Users to Repository when LFDS server is on another computer

asked on May 29 Show version history

I am trying to add Laserfiche Directory Users to the Laserfiche Administration Console, the locations available to me are 'lfds' although after inputting a user query i get the following error as the LFDS server is on another computer.. I have STS setup successfully and can authenticate into forms etc although cannot add users from the LFDS to the repository to assign rights. How would I add a new location to the add directory users? I am running the latest version of Laserfiche 10.4,

Thanks in advance!

Error Code: 9357
Error Message: LDAP query could not be completed. [9357]

------------ Technical Details: ------------

LFSO:
    Call Stack: (Exception)
        CLFDirectorySearcher::ThrowLastError
    Additional Details:
        HRESULT: 0xc004248d (CLFDirectorySearcher::ThrowLastError, lfdirectorysearcher.cpp:330)
         (LFSO/10.4.0.63)
LFCommonDialogs104.dll (10.4.0.103):
    Call Stack: (Current)
        CLFObjectPickerMain::FindLDAPAccounts
        CLFObjectPicker::DoPicker
    Call History:
        CLFObjectPicker::DoPicker
         CLFObjectPickerLocationTreeCtrl::GetDefaultPath
         CLFObjectPickerLocationTreeCtrl::InitializeCtrl
         CLFObjectPickerLocationTreeCtrl::GetSelection
         CLFObjectPickerMain::FindLDAPAccounts
        CLFObjectPicker::DoPicker
         CLFObjectPickerLocationTreeCtrl::GetDefaultPath
         CLFObjectPickerMain::FindLDAPAccounts

 

Capture.PNG
Capture.PNG (15.19 KB)
2 0

Answer

SELECTED ANSWER
replied on May 29

Christian,

 

To be able to utilize Laserfiche Directory Accounts this way, the Laserfiche Application Server & Directory Server machines need to be on the same domain (or there should be trust between the domains if they are on different domains).

Is your Laserfiche Server & Directory servers on the same domain? 

2 0
replied on May 29 Show version history

Hello Karim,

 

Thank you for your response. The LFDS and Application Server are on seperate domains although have a certificate trust setup to allow authentication through STS to the Laserfiche applications and this works fine. Am i not able to add the LFDS users to the repository this way?

1 0
replied on May 29

From my understanding, there needs to be a two-way trust between the Laserfiche Server & LFDS domains in this case for it to work.

0 0
replied on May 29

I agree that is definetly the case, and i have this two way trust setup already. The problem is finding where i can configure this setting that is defaulting to the local LFDS, there must be a config file or utility to use an external lfds through editing the hostname or by using the STS server, just no luck finding this

replied on May 29

I have this trust setup for other application using the XMLEndpointUtilities to edit the config files and add certificates to assure this trust? Do you know how to enable this trust for the laserfiche admin console to access the LFDS Users?

Thanks!

0 0
replied on May 29

As long as the trust exists at the Windows Domain/network level, there shouldn't be be any additional configurations for the Laserfiche Administration console.

 

Perhaps try a simple test. Let's assume LFS is on DomainA and LFDS is DomainB. Create a Windows User in DomainB, add it to LFDS then Add it to the Laserfiche Administration Console for LFS on DomainA. Then try login to Laserfiche Desktop Client with this account from DomainB using Windows Authentication. This should at least confirm the two-way Domain Trust.

1 0
replied on May 30

Thank you i misunderstood the domain trust and i see what you mean now! Thank you very much! This will almost certainly solve the problem 

0 0

Replies

You are not allowed to reply in this post.
You are not allowed to follow up in this post.

Sign in to reply to this post.