<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: Apache Zeppelin - AD integration Version 0.8.2 in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/Apache-Zeppelin-AD-integration-Version-0-8-2/m-p/301872#M220883</link>
    <description>&lt;P&gt;Why this $ before CN?&lt;/P&gt;&lt;P&gt;&lt;A href="https://zeppelin.apache.org/docs/0.9.0-SNAPSHOT/setup/security/shiro_authentication.html" target="_blank" rel="noopener"&gt;https://zeppelin.apache.org/docs/0.9.0-SNAPSHOT/setup/security/shiro_authentication.html&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 25 Aug 2020 09:00:53 GMT</pubDate>
    <dc:creator>BGabor</dc:creator>
    <dc:date>2020-08-25T09:00:53Z</dc:date>
    <item>
      <title>Apache Zeppelin - AD integration Version 0.8.2</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Apache-Zeppelin-AD-integration-Version-0-8-2/m-p/301867#M220880</link>
      <description>&lt;P&gt;please suggest if anyone has successfully integrated with AD.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm trying to use below configs and it's not working&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ldapRealm= org.apache.zeppelin.realm.LdapRealm&lt;BR /&gt;ldapRealm.contextFactory.url = ldap://ad.abc.com:389&lt;BR /&gt;ldapRealm.contextFactory.authenticationMechanism = simple&lt;BR /&gt;ldapRealm.contextFactory.systemUsername = svc_abc&lt;BR /&gt;ldapRealm.contextFactory.systemPassword = passwdddd&lt;BR /&gt;#ldapRealm.searchBase = DC=abc,DC=abc,DC=COM&lt;BR /&gt;ldapRealm.userSearchBase = OU=IDM,DC=abc,DC=abc,DC=com&lt;BR /&gt;ldapRealm.userSearchScope = subtree&lt;BR /&gt;ldapRealm.userSearchAttributeName = sAMAccountName&lt;BR /&gt;ldapRealm.userSearchFilter = (&amp;amp;(objectclass=person)(sAMAccountName={0}))&lt;/P&gt;&lt;P&gt;ldapRealm.authorizationEnabled = true&lt;BR /&gt;ldapRealm.groupSearchBase = OU=abcGroups,DC=abc,DC=abc,DC=com&lt;BR /&gt;ldapRealm.groupObjectClass = group&lt;BR /&gt;ldapRealm.memberAttribute= member&lt;BR /&gt;ldapRealm.groupSearchScope = subtree&lt;BR /&gt;ldapRealm.groupSearchFilter = (&amp;amp;(objectclass=group)(member={0}))&lt;BR /&gt;ldapRealm.memberAttributeValueTemplate= $CN=g_app_zep,OU=abcGroups,DC=abc,DC=abc,DC=com&lt;BR /&gt;ldapRealm.groupSearchEnableMatchingRuleInChain = true&lt;BR /&gt;ldapRealm.rolesByGroup = Zeppelin_Admin: admin_role&lt;BR /&gt;ldapRealm.allowedRolesForAuthentication = admin_role,user_role&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ERROR:&lt;BR /&gt;&lt;BR /&gt;WARN [2020-08-24 16:31:14,497] ({main} WebAppContext.java[doStart]:554) - Failed startup of context o.e.j.w.WebAppContext@22635ba0{zeppelin-web,/,file:///opt/zepplin/zeppelin-0.8.2-bin-all/webapps/webapp/,UNAVAILABLE}{/opt/zepplin/zeppelin-0.8.2-bin-all/zeppelin-web-0.8.2.war}&lt;BR /&gt;org.apache.shiro.config.UnresolveableReferenceException: The object with id [CN=g_app_zep,OU=abcGroups,DC=abc,DC=abc,DC=com] has not yet been defined and therefore cannot be referenced. Please ensure objects are defined in the order in which they should be created and made available for future reference.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;please share if there is any working configs&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Aug 2020 22:16:03 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Apache-Zeppelin-AD-integration-Version-0-8-2/m-p/301867#M220880</guid>
      <dc:creator>venkii</dc:creator>
      <dc:date>2020-08-24T22:16:03Z</dc:date>
    </item>
    <item>
      <title>Re: Apache Zeppelin - AD integration Version 0.8.2</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Apache-Zeppelin-AD-integration-Version-0-8-2/m-p/301872#M220883</link>
      <description>&lt;P&gt;Why this $ before CN?&lt;/P&gt;&lt;P&gt;&lt;A href="https://zeppelin.apache.org/docs/0.9.0-SNAPSHOT/setup/security/shiro_authentication.html" target="_blank" rel="noopener"&gt;https://zeppelin.apache.org/docs/0.9.0-SNAPSHOT/setup/security/shiro_authentication.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Aug 2020 09:00:53 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Apache-Zeppelin-AD-integration-Version-0-8-2/m-p/301872#M220883</guid>
      <dc:creator>BGabor</dc:creator>
      <dc:date>2020-08-25T09:00:53Z</dc:date>
    </item>
    <item>
      <title>Re: Apache Zeppelin - AD integration Version 0.8.2</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Apache-Zeppelin-AD-integration-Version-0-8-2/m-p/301914#M220913</link>
      <description>&lt;P&gt;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/68958"&gt;@BGabor&lt;/a&gt;&amp;nbsp;thanks for your response&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm trying to understand the difference between two blocks given in the document&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;#BLOCK1&lt;BR /&gt;activeDirectoryRealm = org.apache.zeppelin.realm.ActiveDirectoryGroupRealm
activeDirectoryRealm.systemUsername = userNameA
activeDirectoryRealm.systemPassword = passwordA
activeDirectoryRealm.searchBase = CN=Users,DC=SOME_GROUP,DC=COMPANY,DC=COM
activeDirectoryRealm.url = ldap://ldap.test.com:389
activeDirectoryRealm.groupRolesMap = "CN=aGroupName,OU=groups,DC=SOME_GROUP,DC=COMPANY,DC=COM":"group1"
activeDirectoryRealm.authorizationCachingEnabled = false
activeDirectoryRealm.principalSuffix = @corp.company.net
&lt;BR /&gt;&lt;BR /&gt;##BLOCK2&lt;BR /&gt;
ldapRealm = org.apache.zeppelin.realm.LdapGroupRealm
# search base for ldap groups (only relevant for LdapGroupRealm):
ldapRealm.contextFactory.environment[ldap.searchBase] = dc=COMPANY,dc=COM
ldapRealm.contextFactory.url = ldap://ldap.test.com:389
ldapRealm.userDnTemplate = uid={0},ou=Users,dc=COMPANY,dc=COM
ldapRealm.contextFactory.authenticationMechanism = simple&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/PRE&gt;&lt;P&gt;also define roles/groups that you want to have in the system, like below;&lt;/P&gt;&lt;DIV class="highlight"&gt;&lt;PRE&gt;[roles]
admin = *
hr = *
finance = *
group1 = *&lt;/PRE&gt;&lt;/DIV&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;could you help me understand?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i want to extract only one group and users from AD, which block should I use. thanks&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Aug 2020 16:30:42 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Apache-Zeppelin-AD-integration-Version-0-8-2/m-p/301914#M220913</guid>
      <dc:creator>venkii</dc:creator>
      <dc:date>2020-08-25T16:30:42Z</dc:date>
    </item>
  </channel>
</rss>

