By: Bruce Tucker user 01 Dec 2022 at 10:02 a.m. CST

3 Responses
Bruce Tucker gravatar
New to GLUU / 1st time user Cache Refresh is set and Sync's with Active Directory. Keep external persons is checked. LDAP Auth is Local. I don't remember what Default Auth method was, but I did not change it from installation. Only local admin can login, AD users can't login to GLUU server Change LDAP Auth to Active Directory Default Auth is CASA AD users can login to GLUU but Local Admin can't login. I had thought we could pull Auth / Logins from the Local DB, including users pulled from Active Directory so we can use federation. What am I missing ?

By Mohib Zico Account Admin 01 Dec 2022 at 12:08 p.m. CST

Mohib Zico gravatar
Hello Bruce, Yes, that's correct behavior. - When you set "Auth server" as 'Manage Authentication", only AD users will be able to login. ( Why? because local "admin" user is _not_ in backend AD server ). You can add one AD backend user in [Gluu Admin Group](https://www.gluu.org/docs/gluu-server/4.4/user-management/local-user-management/#manage-groups-in-oxtrust), so that user can have administrative privilege. - When you set "Local" as "Manage Authentication", only local user will be able to login, no AD users. If you want to use both users, then you can use a custom script called [Multi_Login](https://github.com/GluuFederation/oxAuth/tree/master/Server/integrations/basic.multi_auth_conf).

By Bruce Tucker user 01 Dec 2022 at 1:34 p.m. CST

Bruce Tucker gravatar
Thanks,

By Bruce Tucker user 01 Dec 2022 at 2:54 p.m. CST

Bruce Tucker gravatar
closing