1
Virtual private networks / Re: LDAP user import not working with multiple LDAP servers
« on: May 02, 2022, 03:27:46 pm »
Hi AdSchellevis,
Thank you for your feedback. Sorry but I'm not sure to fully understand your solution. I did indeed configured the "Automatic user creation" and "Synchronize groups".
From my understanding, it seems that for the "synchronize groups" option to work, you need to create a local group matching the CN of the AD group. So I did this, and I also then added these local VPN Groups to the user OTP Seed field in the System -> Settings -> Configuration menu, as you mentionned.
But I don't know where to go from here... How can I generate the OTP Seed for the users ? I tried putting a manual key into the google authenticator app (instead of the QR Code) but the connection is not working.
Thus, I never managed to create a connection without user certificates ( I wrote another post about this) so I'm not sure if this is the same issue or something wrong with the LDAP+TOTP configuration.
The one thing I find strange is that my local groups don't seem to be populated (the member count is still at 0). If they were synchronized, I would think that the members count would grow up, so I'm affraid I did not configure it correctly.
Thank you for your feedback. Sorry but I'm not sure to fully understand your solution. I did indeed configured the "Automatic user creation" and "Synchronize groups".
From my understanding, it seems that for the "synchronize groups" option to work, you need to create a local group matching the CN of the AD group. So I did this, and I also then added these local VPN Groups to the user OTP Seed field in the System -> Settings -> Configuration menu, as you mentionned.
But I don't know where to go from here... How can I generate the OTP Seed for the users ? I tried putting a manual key into the google authenticator app (instead of the QR Code) but the connection is not working.
Thus, I never managed to create a connection without user certificates ( I wrote another post about this) so I'm not sure if this is the same issue or something wrong with the LDAP+TOTP configuration.
The one thing I find strange is that my local groups don't seem to be populated (the member count is still at 0). If they were synchronized, I would think that the members count would grow up, so I'm affraid I did not configure it correctly.