How to use LDAP configured email address as the login id

How to use LDAP configured email address as the login id

book

Article ID: KB0075362

calendar_today

Updated On:

Products Versions
Spotfire Server All Versions

Description

By default the Spotfire Server LDAP configuration for Active Directory servers, the user-name-attribute value defaults to sAMAccountName, which specifies the name of the LDAP attribute containing the user account names.

There have been scenarios where the organization would like to map the user to the email address while integrating with external Authentications using OpenID etc

 

Issue/Introduction

How to use LDAP configured email address as the login id

Resolution

While using Activedirectory as User directory you can configure/map the user-name-attribute with the equivalent Active directory attribute for e.g.  email address parameter which by default is set to the UserPrincipalname

Below is the screenshot of the LDAP attributes using the LDAP Browser

User-added image

Below is the screenshot of the Spotfire Configuration tool, mapping the userprincipal name

User-added image

If the full email address is required for authentication, disable the option to "Parse User and  Domain name" as in the image below

User-added image

 

Additional Information

https://docs.tibco.com/pub/spotfire_server/10.3.0/doc/html/TIB_sfire_server_tsas_admin_help/GUID-88F57426-44C3-4FA5-BD49-ED8A849200E3.html

https://docs.tibco.com/pub/spotfire_server/10.3.0/doc/html/TIB_sfire_server_tsas_admin_help/GUID-ADB761AC-FA25-4C1D-991B-56A287D8B60B.html