Hallo zusammen,
wie bei nephilim wird auch bei mir das Gastkonto zugewiesen obwohl in der Simulation bestätigt wird das der Bentzer der Gruppe "Administratoren" hinzugefügt wurde.
hier das Log:
**** Enabled plugins:
**** Authentication: LDAP, Local Machine
**** Authorization: LDAP, Local Machine
**** Gateway: Local Machine, LDAP
**** Notification:
****
2016-05-16 12:24:57,807 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: New PluginDriver created
2016-05-16 12:24:57,807 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Begin login chain, 1 stateful plugin(s).
2016-05-16 12:24:57,807 [1|DEBUG] LdapPlugin: BeginChain
2016-05-16 12:24:57,854 [1|DEBUG] LdapServer: Initializing LdapServer host(s): [192.168.1.21], port: 636, useSSL = True, verifyCert = False
2016-05-16 12:24:57,854 [1|DEBUG] LdapServer: Timeout set to 10 seconds.
2016-05-16 12:24:57,854 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Performing login process
2016-05-16 12:24:57,854 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Authenticating user ws-gitti, 2 plugins available
2016-05-16 12:24:57,854 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Calling 0f52390b-c781-43ae-bd62-553c77fa4cf7
2016-05-16 12:24:57,854 [1|DEBUG] LdapPlugin: AuthenticateUser(2336805a-9f5c-42cf-8612-0c2b85b2e0af)
2016-05-16 12:24:57,854 [1|DEBUG] LdapPlugin: Received username: ws-gitti
2016-05-16 12:24:57,854 [1|DEBUG] LdapPlugin: Attempting authentication for ws-gitti
2016-05-16 12:24:57,869 [1|DEBUG] LdapServer: Attempting to bind with DN uid=ws-gitti,cn=users,dc=bender,dc=net
2016-05-16 12:24:57,869 [1|DEBUG] LdapServer: Attempting bind as uid=ws-gitti,cn=users,dc=bender,dc=net
2016-05-16 12:24:57,885 [1|DEBUG] LdapServer: VerifyCert(...)
2016-05-16 12:24:57,885 [1|DEBUG] LdapServer: Verifying certificate from host: 192.168.1.21
2016-05-16 12:24:57,885 [1|DEBUG] LdapServer: Server certificate accepted without verification.
2016-05-16 12:24:57,947 [1|DEBUG] LdapServer: Successful bind to 192.168.1.21 as uid=ws-gitti,cn=users,dc=bender,dc=net
2016-05-16 12:24:57,947 [1|DEBUG] LdapServer: LDAP DN uid=ws-gitti,cn=users,dc=bender,dc=net successfully bound to server, return success
2016-05-16 12:24:57,947 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: 0f52390b-c781-43ae-bd62-553c77fa4cf7 Succeeded
2016-05-16 12:24:57,947 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Calling 12fa152d-a2e3-4c8d-9535-5dcd49dfcb6d
2016-05-16 12:24:57,979 [1|DEBUG] LocalMachine: AuthenticateUser(2336805a-9f5c-42cf-8612-0c2b85b2e0af)
2016-05-16 12:24:57,979 [1|DEBUG] LocalMachine: Found username: ws-gitti
2016-05-16 12:24:57,979 [1|INFO ] LocalMachine: Authenticated user: ws-gitti
2016-05-16 12:24:57,979 [1|DEBUG] LocalMachine: AuthenticateUser: Mirroring group membership from SAM
2016-05-16 12:24:58,010 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: 12fa152d-a2e3-4c8d-9535-5dcd49dfcb6d Succeeded
2016-05-16 12:24:58,010 [1|INFO ] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Successfully authenticated ws-gitti
2016-05-16 12:24:58,025 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Authorizing user ws-gitti, 2 plugins available
2016-05-16 12:24:58,025 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Calling 0f52390b-c781-43ae-bd62-553c77fa4cf7
2016-05-16 12:24:58,025 [1|DEBUG] LdapPlugin: LDAP Plugin Authorization
2016-05-16 12:24:58,025 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Calling 12fa152d-a2e3-4c8d-9535-5dcd49dfcb6d
2016-05-16 12:24:58,041 [1|INFO ] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Successfully authorized ws-gitti
2016-05-16 12:24:58,041 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Processing gateways for user ws-gitti, 2 plugins available
2016-05-16 12:24:58,041 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Calling 12fa152d-a2e3-4c8d-9535-5dcd49dfcb6d
2016-05-16 12:24:58,057 [1|DEBUG] LocalMachine: AuthenticatedUserGateway(2336805a-9f5c-42cf-8612-0c2b85b2e0af) for user: ws-gitti
2016-05-16 12:24:58,057 [1|DEBUG] LocalAccount[ws-gitti]: SyncToLocalUser()
2016-05-16 12:24:58,104 [1|DEBUG] LocalAccount[ws-gitti]: Checking for groups to remove.
2016-05-16 12:24:58,119 [1|DEBUG] LocalAccount[ws-gitti]: Checking for groups to add
2016-05-16 12:24:58,119 [1|DEBUG] LocalAccount[ws-gitti]: End SyncToLocalUser()
2016-05-16 12:24:58,119 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Calling 0f52390b-c781-43ae-bd62-553c77fa4cf7
2016-05-16 12:24:58,119 [1|DEBUG] LdapPlugin: LDAP Plugin Gateway
2016-05-16 12:24:58,135 [1|DEBUG] LdapServer: Attempting bind as uid=admin,cn=users,dc=bender,dc=net
2016-05-16 12:24:58,260 [1|DEBUG] LdapServer: Successful bind to 192.168.1.21 as uid=admin,cn=users,dc=bender,dc=net
2016-05-16 12:24:58,260 [1|DEBUG] LdapServer: Attempting to generate DN for user ws-gitti
2016-05-16 12:24:58,260 [1|DEBUG] LdapServer: Searching for group membership, DN: cn=WinAdmin,cn=groups,dc=bender,dc=net Filter: (member=uid=ws-gitti,cn=users,dc=bender,dc=net)
2016-05-16 12:24:58,275 [1|DEBUG] LdapPlugin: User ws-gitti is member of group WinAdmin
2016-05-16 12:24:58,275 [1|INFO ] LdapPlugin: Adding user ws-gitti to local group Administratoren, due to rule "If member of LDAP group "WinAdmin" add to local group "Administratoren""
2016-05-16 12:24:58,275 [1|INFO ] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: Successfully processed gateways for ws-gitti
2016-05-16 12:24:58,275 [1|DEBUG] PluginDriver:2336805a-9f5c-42cf-8612-0c2b85b2e0af: End login chain, 1 stateful plugin(s).
2016-05-16 12:24:58,275 [1|DEBUG] LdapPlugin: EndChain
2016-05-16 12:24:58,275 [1|DEBUG] LdapServer: Closing LDAP connection to 192.168.1.21.
Hat jemand noch einen Tipp?
Danke
Gruß Wolfgang