Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: 'Multi-Realm' added

...

Try to login with an LDAP Account/Password combination. Use an Account  that you have verified to be correct by executing the ldapSearch command described above. If there are no Role(s) configured for the Account but the authentication works then you will see the following screen that complains about missing authorization after successful authentication:

Multi-Realm Authentication and Authorization

The behaviour in a multi-realm environment (ini/LDAP or multiple LDAP realms) can be configured in the [main] Shiro section. For example, when a user account name exists in more than one realm, should the roles configured for all realms be assigned to the account or only the roles configured for the account used for the successful login. This is described in detail in the Multi-Realm Authentication and Authorization article.

Anchor
authorization
authorization

...