portal authentication issues

 7 Replies
 0 Subscribed to this topic
 27 Subscribed to this forum
Sort:
Author
Messages
klive
Veteran Member
Posts: 40
Veteran Member

    ok, I have searched and searched and found nothing.  I need your expertise.  Back in January we did a mass load of roughly 600 users.  We did this based on a script that added common facts about each user, "ldusers.pl" (i.e. first, last name, userid, productline, roles...) but we are now having problems with those users as well as some older users not being able to login to the portal.  To test I enter the username and a fake password in the portal credentials and both blank out.  But if  I enter in the credentials and just the password disappears then all is fine...(i know that sounds crazy but that is how I am able to identify the userids that are working incorrectly without resetting all passwords).  I am unsure if the problem is in LDAP or somewhere else.  Regular network authentication works just find but not on the portal...any suggestions...?

    John Henley
    Posts: 3353
      I'm assuming this is LSF9, right?
      Did you check in Lawson Security Administrator for these users to make sure they have an SSOP identity?
      Thanks for using the LawsonGuru.com forums!
      John
      klive
      Veteran Member
      Posts: 40
      Veteran Member
        yes LSF 9.0 and they do have SSOP identies in the security administrator...
        Ben Coonfield
        Veteran Member
        Posts: 146
        Veteran Member
          So are you saying that some users are able to connect successfully to the portal, and other userids are not? Or or are all portal logins failing. Does it work if you reset the SSOP password?
          John Henley
          Posts: 3353
            Ben, he said in the initial post that some logins work, and others do not.
            klive, have you try deleting and re-adding the SSOP identity for one of these users.
            Thanks for using the LawsonGuru.com forums!
            John
            klive
            Veteran Member
            Posts: 40
            Veteran Member
              no I have not but I will. What has worked though is when I have deleted the entire user from lawson and created them as if they were a new user with the same credentials as before and they work fine...
              klive
              Veteran Member
              Posts: 40
              Veteran Member
                tried deleting the SSOP and that seem to have worked. Could I possibly do this in a mass amount for say 600 folk?
                John Henley
                Posts: 3353
                  Using ssoconfig, you can export and reload the SSOP service identities. This might fix what appears to be some corruption between the two records in the LDAP for each SSOP user (one in svcxref, and one in idxref). If you've not done this before, you will want to go carefully, and edit the .xml export file to just reload a couple of them as you test your procedure.
                  Thanks for using the LawsonGuru.com forums!
                  John