<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: Unknown user with identity 'CN=nifi_admin, OU=NIFI'. Contact the system administrator in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/358349#M237809</link>
    <description>&lt;P&gt;Hi Mohamed,&lt;/P&gt;&lt;P&gt;I know the frustration. Its been a while honestly and I dont recall how did I resolve it, but for me I remember when I upgraded to 1.16 it took few times of uninstall\resinstall for it to work correctly. Can you please post what you have in your authorizer.xml and what is in the nifi.properties file regarding the security configuration -like I did above - . Also keep in mind the Initial User Identity is case sensitive so make sure that the one associated with the certificate files for the trust store and keystore and the one you define in the authorizer are the same letter case. Let me know.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Thu, 24 Nov 2022 23:33:02 GMT</pubDate>
    <dc:creator>SAMSAL</dc:creator>
    <dc:date>2022-11-24T23:33:02Z</dc:date>
    <item>
      <title>Unknown user with identity 'CN=nifi_admin, OU=NIFI'. Contact the system administrator</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/340993#M233420</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have downloaded version 1.16 which is the latest. Im trying to secure nifi with TLS and LDAP. However I keep getting the followning message :&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;&lt;SPAN&gt;Unknown user with identity 'CN=nifi_admin, OU=NIFI'. Contact the system administrator&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;FONT size="3"&gt;My Nifi,properties has the following set :&lt;/FONT&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#0000FF"&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; nifi.security.user.authorizer=managed-authorizer&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#0000FF"&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nifi.security.user.login.identity.provider=ldap-provider&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;If I have set as follows it works and it accepts the cert &amp;amp; authentication:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="3"&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="3" color="#0000FF"&gt;&lt;SPAN&gt;&amp;nbsp; nifi.security.user.authorizer=single-user-authorizer&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#0000FF"&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; nifi.security.user.login.identity.provider=single-user-provider&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT size="4"&gt;&lt;SPAN&gt;My Authorizer file has the identity set as follows:&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2" color="#3366FF"&gt;&amp;lt;userGroupProvider&amp;gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#3366FF"&gt;&lt;FONT size="2"&gt;...&lt;/FONT&gt;&lt;FONT size="2"&gt;&amp;lt;property name="Initial User Identity 1"&amp;gt;CN=nifi_admin, OU=NIFI&amp;lt;/property&amp;gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="2" color="#3366FF"&gt;&amp;lt;/userGroupProvider&amp;gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT size="2" color="#3366FF"&gt;&lt;SPAN&gt;&amp;lt;accessPolicyProvider&amp;gt;&lt;BR /&gt;...&lt;BR /&gt;&amp;lt;property name="Initial Admin Identity"&amp;gt;CN=nifi_admin, OU=NIFI&amp;lt;/property&amp;gt;&lt;BR /&gt;&amp;lt;property name="Legacy Authorized Users File"&amp;gt;&amp;lt;/property&amp;gt;&lt;BR /&gt;&amp;lt;property name="Node Identity 1"&amp;gt;&amp;lt;/property&amp;gt;&lt;BR /&gt;...&lt;BR /&gt;&amp;lt;/accessPolicyProvider&amp;gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Im trying to log in first with the cert idenitity nifi_admin so I can start adding ldap users. If I log it as single user I dont see Users &amp;amp; Policies menu items. Can someone help point me in the right direction.&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 08 Apr 2022 12:42:54 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/340993#M233420</guid>
      <dc:creator>SAMSAL</dc:creator>
      <dc:date>2022-04-08T12:42:54Z</dc:date>
    </item>
    <item>
      <title>Re: Unknown user with identity 'CN=nifi_admin, OU=NIFI'. Contact the system administrator</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/358258#M237792</link>
      <description>&lt;P&gt;Hell&lt;SPAN&gt;o&lt;/SPAN&gt;&amp;nbsp;&lt;SPAN&gt;SAMSAL,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;If your problem solved ... Can you please share with me the correct conf to solve&amp;nbsp;this issue ?? as i faced same issue to login&amp;nbsp;after enable LDAP&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Nov 2022 21:59:47 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/358258#M237792</guid>
      <dc:creator>Mohamed_Shaaban</dc:creator>
      <dc:date>2022-11-23T21:59:47Z</dc:date>
    </item>
    <item>
      <title>Re: Unknown user with identity 'CN=nifi_admin, OU=NIFI'. Contact the system administrator</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/358349#M237809</link>
      <description>&lt;P&gt;Hi Mohamed,&lt;/P&gt;&lt;P&gt;I know the frustration. Its been a while honestly and I dont recall how did I resolve it, but for me I remember when I upgraded to 1.16 it took few times of uninstall\resinstall for it to work correctly. Can you please post what you have in your authorizer.xml and what is in the nifi.properties file regarding the security configuration -like I did above - . Also keep in mind the Initial User Identity is case sensitive so make sure that the one associated with the certificate files for the trust store and keystore and the one you define in the authorizer are the same letter case. Let me know.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Thu, 24 Nov 2022 23:33:02 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/358349#M237809</guid>
      <dc:creator>SAMSAL</dc:creator>
      <dc:date>2022-11-24T23:33:02Z</dc:date>
    </item>
    <item>
      <title>Re: Unknown user with identity 'CN=nifi_admin, OU=NIFI'. Contact the system administrator</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/358415#M237846</link>
      <description>&lt;P&gt;have you set in&amp;nbsp;&amp;nbsp;&lt;SPAN&gt;Advanced nifi-properties&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;&amp;nbsp; &amp;nbsp; nifi.security.user.login.identity.provider = ldap-provider &lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;&amp;nbsp; &amp;nbsp; nifi.cluster.is.node = false (setting false if standalone)&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;&amp;nbsp; &amp;nbsp; nifi.security.identity.mapping.pattern.dn = ^CN=(.*?), OU=(.*?), O=(.*?), L=(.*?), ST=(.*?), C=(.*?)$&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;&amp;nbsp; &amp;nbsp; nifi.security.identity.mapping.value.dn = $1@$2&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;&amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Mon, 28 Nov 2022 06:44:17 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/358415#M237846</guid>
      <dc:creator>myzard</dc:creator>
      <dc:date>2022-11-28T06:44:17Z</dc:date>
    </item>
    <item>
      <title>Re: Unknown user with identity 'CN=nifi_admin, OU=NIFI'. Contact the system administrator</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/358484#M237859</link>
      <description>&lt;P&gt;No . I dont think I have used the following :&lt;/P&gt;&lt;P&gt;nifi.security.identity.mapping.pattern.dn =&lt;BR /&gt;nifi.security.identity.mapping.value.dn =&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Have you tried using simple single authorization just to see if you can log in. It helps in this cases to start from simple config and then build up just to be able to isolate where the issue is.&lt;/P&gt;&lt;P&gt;hope that helps&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 28 Nov 2022 18:41:48 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/358484#M237859</guid>
      <dc:creator>SAMSAL</dc:creator>
      <dc:date>2022-11-28T18:41:48Z</dc:date>
    </item>
    <item>
      <title>Re: Unknown user with identity 'CN=nifi_admin, OU=NIFI'. Contact the system administrator</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/358504#M237861</link>
      <description>&lt;P&gt;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/102035"&gt;@Mohamed_Shaaban&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;I recommend starting a new community question with the details specific to your setup.&amp;nbsp; This allows the community to address/assist with your specific setup versus comparing your issue to what was shared in this post.&lt;BR /&gt;&lt;BR /&gt;Thanks,&lt;BR /&gt;Matt&lt;/P&gt;</description>
      <pubDate>Mon, 28 Nov 2022 20:01:26 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Unknown-user-with-identity-CN-nifi-admin-OU-NIFI-Contact-the/m-p/358504#M237861</guid>
      <dc:creator>MattWho</dc:creator>
      <dc:date>2022-11-28T20:01:26Z</dc:date>
    </item>
  </channel>
</rss>

