<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How do I Add Multiple User ID Formats to sasv9_usermods.cfg File for LDAP Authentication? in Administration and Deployment</title>
    <link>https://communities.sas.com/t5/Administration-and-Deployment/How-do-I-Add-Multiple-User-ID-Formats-to-sasv9-usermods-cfg-File/m-p/357871#M8574</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;if i am not mistaken, you could add it as::&lt;/P&gt;
&lt;P&gt;....&lt;/P&gt;
&lt;P&gt;..&lt;BR /&gt;-authpd (ADIR:us.company.com, ADIR:company.com)&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;-authproviderdomain (HOSTUSER:'....', ADIR:us.company.com')&lt;BR /&gt;-authproviderdomain (HOSTUSER:'....', ADIR:'company.com')&lt;/P&gt;
&lt;P&gt;....&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Have you tried it that way?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I do not want to put Paul on the spot &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&amp;nbsp; but .. he is THE ldap king super expert, he might have&lt;/P&gt;
&lt;P&gt;a better / different suggestion (there is no one i trust more&amp;nbsp;than Paul when it comes to security matters!)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Anja&lt;/P&gt;</description>
    <pubDate>Thu, 11 May 2017 13:06:27 GMT</pubDate>
    <dc:creator>anja</dc:creator>
    <dc:date>2017-05-11T13:06:27Z</dc:date>
    <item>
      <title>How do I Add Multiple User ID Formats to sasv9_usermods.cfg File for LDAP Authentication?</title>
      <link>https://communities.sas.com/t5/Administration-and-Deployment/How-do-I-Add-Multiple-User-ID-Formats-to-sasv9-usermods-cfg-File/m-p/357661#M8570</link>
      <description>&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; We use our company ID to log in to SAS 9.2, the user ID format is UserName.us.company.com.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We now have an ID in the format of UserName.company.com, without the us.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How do I add multiplue ID formats to sasv9_usermods.cfg file for LDAP authentication?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Would I add -primpd company.com after -authpd LDAP:us.company.com?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you,&lt;BR /&gt;&amp;nbsp;&lt;BR /&gt;/*--------------------Original LDAP Authentication Code----------------------*/&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;xxxxxx@xxxxxx:/sas/data/Lev1/SASMeta/MetadataServer&lt;BR /&gt;/*&lt;BR /&gt;&amp;nbsp;* sasv9_usermods.cfg&lt;BR /&gt;&amp;nbsp;*&lt;BR /&gt;&amp;nbsp;*&amp;nbsp;&amp;nbsp; This config file extends options set in sasv9.cfg.&amp;nbsp; Place your site-specifi&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; c&lt;BR /&gt;&amp;nbsp;*&amp;nbsp;&amp;nbsp; options in this file.&amp;nbsp; Any options included in this file are common across&lt;BR /&gt;&amp;nbsp;*&amp;nbsp;&amp;nbsp; all server components in this application server.&lt;BR /&gt;&amp;nbsp;*&amp;nbsp;&amp;nbsp; Do NOT modify the sasv9.cfg file.&lt;BR /&gt;&amp;nbsp;*/&lt;BR /&gt;-authpd LDAP:us.company.com&lt;/P&gt;&lt;P&gt;-set LDAP_PORT 389&lt;/P&gt;&lt;P&gt;-set LDAP_HOST bluepages.company.com&lt;/P&gt;&lt;P&gt;-set LDAP_BASE "c=us,ou=bluepages,o=company.com"&lt;/P&gt;&lt;P&gt;-set LDAP_IDATTR "primaryuserid"&lt;/P&gt;</description>
      <pubDate>Wed, 10 May 2017 20:06:45 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Administration-and-Deployment/How-do-I-Add-Multiple-User-ID-Formats-to-sasv9-usermods-cfg-File/m-p/357661#M8570</guid>
      <dc:creator>EPV3</dc:creator>
      <dc:date>2017-05-10T20:06:45Z</dc:date>
    </item>
    <item>
      <title>Re: How do I Add Multiple User ID Formats to sasv9_usermods.cfg File for LDAP Authentication?</title>
      <link>https://communities.sas.com/t5/Administration-and-Deployment/How-do-I-Add-Multiple-User-ID-Formats-to-sasv9-usermods-cfg-File/m-p/357871#M8574</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;if i am not mistaken, you could add it as::&lt;/P&gt;
&lt;P&gt;....&lt;/P&gt;
&lt;P&gt;..&lt;BR /&gt;-authpd (ADIR:us.company.com, ADIR:company.com)&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;-authproviderdomain (HOSTUSER:'....', ADIR:us.company.com')&lt;BR /&gt;-authproviderdomain (HOSTUSER:'....', ADIR:'company.com')&lt;/P&gt;
&lt;P&gt;....&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Have you tried it that way?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I do not want to put Paul on the spot &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&amp;nbsp; but .. he is THE ldap king super expert, he might have&lt;/P&gt;
&lt;P&gt;a better / different suggestion (there is no one i trust more&amp;nbsp;than Paul when it comes to security matters!)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Anja&lt;/P&gt;</description>
      <pubDate>Thu, 11 May 2017 13:06:27 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Administration-and-Deployment/How-do-I-Add-Multiple-User-ID-Formats-to-sasv9-usermods-cfg-File/m-p/357871#M8574</guid>
      <dc:creator>anja</dc:creator>
      <dc:date>2017-05-11T13:06:27Z</dc:date>
    </item>
    <item>
      <title>Re: How do I Add Multiple User ID Formats to sasv9_usermods.cfg File for LDAP Authentication?</title>
      <link>https://communities.sas.com/t5/Administration-and-Deployment/How-do-I-Add-Multiple-User-ID-Formats-to-sasv9-usermods-cfg-File/m-p/358147#M8583</link>
      <description>&lt;P&gt;Thanks for the nice words Anja &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;a href="https://communities.sas.com/t5/user/viewprofilepage/user-id/119766"&gt;@EPV3&lt;/a&gt;&amp;nbsp;- can you clarify what your authentication environment look like now. Is it a single LDAP server or two LDAP servers? If a single server are you trying&amp;nbsp;to support both user id formats or just the new format? You mentioned the old user id format is UserName.us.company.com. Are you talking about the format you have in SAS metadata? Is it not UserName@us.company.com? When your users log in do they provide the long form user id UserName.us.company.com (or UserName@us.company.com) or the short form of just UserName?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The best place to look for more info on this in the SAS 9.2 documentation is the &lt;A href="https://support.sas.com/documentation/cdl/en/bisecag/61133/HTML/default/viewer.htm#a003276226.htm" target="_self"&gt;How to Configure Direct LDAP Authentication&lt;/A&gt;&amp;nbsp;section in the &lt;EM&gt;SAS 9.2 Intelligence Platform: Security Administration Guide&lt;/EM&gt; (though there is a bit more detail in the &lt;A href="https://support.sas.com/documentation/cdl/en/bisecag/69827/HTML/default/viewer.htm#n0w8oa3erw568vn192xwf0872npk.htm" target="_self"&gt;SAS 9.4 equivalent page&lt;/A&gt;).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The &lt;A href="https://support.sas.com/documentation/cdl/en/lrdict/64316/HTML/default/base-sysop-authpd.htm" target="_self"&gt;AUTHPROVIDERDOMAIN&lt;/A&gt; (AUTHPD) system option provides one or more&amp;nbsp;authentication providers that can be used. If you need to use two LDAP servers then you can add extra domains in this option.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The &lt;A href="https://support.sas.com/documentation/cdl/en/lrdict/64316/HTML/default/base-sysop-primpd.htm" target="_self"&gt;PRIMARYPROVIDERDOMAIN&lt;/A&gt; (PRIMPD) system option is used to specify the primary domain that should be used for unqualified user ids (or&amp;nbsp;&lt;SPAN&gt;PRIMPD&lt;/SPAN&gt; qualified or an unknown qualifier). For example if you user specifies an unqualified bob as the user id and the primpd is example.com then bob@example.com will be used as the qualified userid. Have a look at the SAS documentation for more examples of how and when PRIMPD is used.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 12 May 2017 06:19:21 GMT</pubDate>
      <guid>https://communities.sas.com/t5/Administration-and-Deployment/How-do-I-Add-Multiple-User-ID-Formats-to-sasv9-usermods-cfg-File/m-p/358147#M8583</guid>
      <dc:creator>PaulHomes</dc:creator>
      <dc:date>2017-05-12T06:19:21Z</dc:date>
    </item>
  </channel>
</rss>

