Discussion:
[Discussion] openDCIM-18.01 Officially Released
Scott Milliken
7 years ago
Permalink
All,
We've had a few weeks of testing, with a few bugs reported to us and
fixed, but all in all it has been relatively quiet, even though we know of
several already running the code in production. So, without further
delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see
enormous performance increases. As a benchmark, my installation of 8
rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to
fully render a cabinet view in version 4.5. It is now down to roughly 800
ms. Smaller sites won't notice much difference, but the larger ones will
see the dramatic increase. We've sped it up by caching several things -
so I will warn you, it can take a considerable amount of time to do this
upgrade. There is a gauge on the screen, though, so you will be able to
see that it's running. Let it finish. If you happen to interrupt it,
you can manually rebuild the image cache after exiting the upgrade mode -
go into Template Management -> Device Image Management, and click on
"Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html

Changes in 18.01

- Nomenclature for releases has changed to YY.nn, as this ends the
debate over what warrants a major vs minor number change
- Added some error logging for LDAP authentication failures
- Added in more bulk import functions - Users and Departments
- Converted some more reports over to Excel as we move away from PDF
reports
- Network map updated to differentiate between front and rear ports
- Updated DataTables to the latest compatible release
- HUGE performance improvements by caching device imaging and the
navigation tree HTML, rather than building on the fly
- Other bug fixes, as usual.


Scott
Paul Collado
7 years ago
Permalink
Thank you very much Scott,


We appreciate your efforts and dedication to making this platform as useful and robust as it is.


Do you have any updates on this new upgrade to LDAP integration to MS AD?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org> on behalf of Scott Milliken <***@themillikens.com>
Sent: Wednesday, March 21, 2018 12:57 PM
To: ***@list.opendcim.org
Subject: [Discussion] openDCIM-18.01 Officially Released

All,
We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html
openDCIM Downloads<https://www.opendcim.org/downloads.html>
www.opendcim.org
The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.



Changes in 18.01

* Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
* Added some error logging for LDAP authentication failures
* Added in more bulk import functions - Users and Departments
* Converted some more reports over to Excel as we move away from PDF reports
* Network map updated to differentiate between front and rear ports
* Updated DataTables to the latest compatible release
* HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
* Other bug fixes, as usual.

Scott
Scott Milliken
7 years ago
Permalink
Yeah, you find someone to write it and it can happen. I wrote the
existing LDAP login - and just barely. I have no AD infrastructure to
test against, and have no AD knowledge.

Scott

On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com> wrote:

> Thank you very much Scott,
>
>
> We appreciate your efforts and dedication to making this platform as
> useful and robust as it is.
>
>
> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> Scott Milliken <***@themillikens.com>
> *Sent:* Wednesday, March 21, 2018 12:57 PM
> *To:* ***@list.opendcim.org
> *Subject:* [Discussion] openDCIM-18.01 Officially Released
>
> All,
> We've had a few weeks of testing, with a few bugs reported to us and
> fixed, but all in all it has been relatively quiet, even though we know of
> several already running the code in production. So, without further
> delay, I've pushed out release 18.01.
> If you have a medium to large sized installation, you should see
> enormous performance increases. As a benchmark, my installation of 8
> rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to
> fully render a cabinet view in version 4.5. It is now down to roughly 800
> ms. Smaller sites won't notice much difference, but the larger ones will
> see the dramatic increase. We've sped it up by caching several things -
> so I will warn you, it can take a considerable amount of time to do this
> upgrade. There is a gauge on the screen, though, so you will be able to
> see that it's running. Let it finish. If you happen to interrupt it,
> you can manually rebuild the image cache after exiting the upgrade mode -
> go into Template Management -> Device Image Management, and click on
> "Rebuild Image Cache".
> The demo site has been upgraded.
>
> https://www.opendcim.org/downloads.html
> openDCIM Downloads <https://www.opendcim.org/downloads.html>
> www.opendcim.org
> The openDCIM Foundation, Inc is a not-for profit corporation formed to
> manage the project and cover any expenses related to hosting and
> publicizing openDCIM.
>
>
> Changes in 18.01
>
> - Nomenclature for releases has changed to YY.nn, as this ends the
> debate over what warrants a major vs minor number change
> - Added some error logging for LDAP authentication failures
> - Added in more bulk import functions - Users and Departments
> - Converted some more reports over to Excel as we move away from PDF
> reports
> - Network map updated to differentiate between front and rear ports
> - Updated DataTables to the latest compatible release
> - HUGE performance improvements by caching device imaging and the
> navigation tree HTML, rather than building on the fly
> - Other bug fixes, as usual.
>
>
> Scott
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
nick noot-davies
7 years ago
Permalink
I have AD LDAP working, i made some changes to the page. I am happy to
share this page. However i manage to struggle through with php so i cant
guarantee its the best in the world, it works for us and hopefuly will for
others.

Ill sanitize the code ive added and comment it and then email it

On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org>
wrote:

> Yeah, you find someone to write it and it can happen. I wrote the
> existing LDAP login - and just barely. I have no AD infrastructure to
> test against, and have no AD knowledge.
>
> Scott
>
> On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com>
> wrote:
>
>> Thank you very much Scott,
>>
>>
>> We appreciate your efforts and dedication to making this platform as
>> useful and robust as it is.
>>
>>
>> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>>
>>
>> Thanks,
>>
>>
>> Paul Collado
>>
>>
>> ------------------------------
>> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
>> Scott Milliken <***@themillikens.com>
>> *Sent:* Wednesday, March 21, 2018 12:57 PM
>> *To:* ***@list.opendcim.org
>> *Subject:* [Discussion] openDCIM-18.01 Officially Released
>>
>> All,
>> We've had a few weeks of testing, with a few bugs reported to us
>> and fixed, but all in all it has been relatively quiet, even though we know
>> of several already running the code in production. So, without further
>> delay, I've pushed out release 18.01.
>> If you have a medium to large sized installation, you should see
>> enormous performance increases. As a benchmark, my installation of 8
>> rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to
>> fully render a cabinet view in version 4.5. It is now down to roughly 800
>> ms. Smaller sites won't notice much difference, but the larger ones will
>> see the dramatic increase. We've sped it up by caching several things -
>> so I will warn you, it can take a considerable amount of time to do this
>> upgrade. There is a gauge on the screen, though, so you will be able to
>> see that it's running. Let it finish. If you happen to interrupt it,
>> you can manually rebuild the image cache after exiting the upgrade mode -
>> go into Template Management -> Device Image Management, and click on
>> "Rebuild Image Cache".
>> The demo site has been upgraded.
>>
>> https://www.opendcim.org/downloads.html
>> openDCIM Downloads <https://www.opendcim.org/downloads.html>
>> www.opendcim.org
>> The openDCIM Foundation, Inc is a not-for profit corporation formed to
>> manage the project and cover any expenses related to hosting and
>> publicizing openDCIM.
>>
>>
>> Changes in 18.01
>>
>> - Nomenclature for releases has changed to YY.nn, as this ends the
>> debate over what warrants a major vs minor number change
>> - Added some error logging for LDAP authentication failures
>> - Added in more bulk import functions - Users and Departments
>> - Converted some more reports over to Excel as we move away from PDF
>> reports
>> - Network map updated to differentiate between front and rear ports
>> - Updated DataTables to the latest compatible release
>> - HUGE performance improvements by caching device imaging and the
>> navigation tree HTML, rather than building on the fly
>> - Other bug fixes, as usual.
>>
>>
>> Scott
>>
>>
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
>>
>>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
Paul Collado
7 years ago
Permalink
Thank you, I'll wait for your response.


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org> on behalf of nick noot-davies <***@gmail.com>
Sent: Wednesday, March 21, 2018 1:46 PM
To: ***@list.opendcim.org
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.

Ill sanitize the code ive added and comment it and then email it

On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org<mailto:***@opendcim.org>> wrote:
Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.

Scott

On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Scott,


We appreciate your efforts and dedication to making this platform as useful and robust as it is.


Do you have any updates on this new upgrade to LDAP integration to MS AD?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of Scott Milliken <***@themillikens.com<mailto:***@themillikens.com>>
Sent: Wednesday, March 21, 2018 12:57 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: [Discussion] openDCIM-18.01 Officially Released

All,
We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html
openDCIM Downloads<https://www.opendcim.org/downloads.html>
www.opendcim.org<http://www.opendcim.org>
The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.



Changes in 18.01

* Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
* Added some error logging for LDAP authentication failures
* Added in more bulk import functions - Users and Departments
* Converted some more reports over to Excel as we move away from PDF reports
* Network map updated to differentiate between front and rear ports
* Updated DataTables to the latest compatible release
* HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
* Other bug fixes, as usual.

Scott
robert saunders
7 years ago
Permalink
LDAP works with out making any changes to the page it can be one from the ldap settings page

I'll try to walk you through it when I get to work

> On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com> wrote:
>
> Thank you, I'll wait for your response.
>
> Paul Collado
>
>
>
> From: Discussion <discussion-***@list.opendcim.org> on behalf of nick noot-davies <***@gmail.com>
> Sent: Wednesday, March 21, 2018 1:46 PM
> To: ***@list.opendcim.org
> Subject: Re: [Discussion] openDCIM-18.01 Officially Released
>
> I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.
>
> Ill sanitize the code ive added and comment it and then email it
>
> On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org> wrote:
> Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.
>
> Scott
>
> On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com> wrote:
> Thank you very much Scott,
>
> We appreciate your efforts and dedication to making this platform as useful and robust as it is.
>
> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>
> Thanks,
>
> Paul Collado
>
>
>
> From: Discussion <discussion-***@list.opendcim.org> on behalf of Scott Milliken <***@themillikens.com>
> Sent: Wednesday, March 21, 2018 12:57 PM
> To: ***@list.opendcim.org
> Subject: [Discussion] openDCIM-18.01 Officially Released
>
> All,
> We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
> If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
> The demo site has been upgraded.
>
> https://www.opendcim.org/downloads.html
> openDCIM Downloads
> www.opendcim.org
> The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.
>
>
> Changes in 18.01
>
> Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
> Added some error logging for LDAP authentication failures
> Added in more bulk import functions - Users and Departments
> Converted some more reports over to Excel as we move away from PDF reports
> Network map updated to differentiate between front and rear ports
> Updated DataTables to the latest compatible release
> HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
> Other bug fixes, as usual.
>
> Scott
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
Nick Noot-Davies
7 years ago
Permalink
Cool. I won’t send my page in then. I’ll let you walk people through it as it’s more supportable than a custom page :)

Nick Noot-Davies
Sent from my iPhone

> On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com> wrote:
>
>
> LDAP works with out making any changes to the page it can be one from the ldap settings page
>
> I'll try to walk you through it when I get to work
>
>> On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com> wrote:
>>
>> Thank you, I'll wait for your response.
>>
>> Paul Collado
>>
>>
>> From: Discussion <discussion-***@list.opendcim.org> on behalf of nick noot-davies <***@gmail.com>
>> Sent: Wednesday, March 21, 2018 1:46 PM
>> To: ***@list.opendcim.org
>> Subject: Re: [Discussion] openDCIM-18.01 Officially Released
>>
>> I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.
>>
>> Ill sanitize the code ive added and comment it and then email it
>>
>> On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org> wrote:
>> Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.
>>
>> Scott
>>
>> On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com> wrote:
>> Thank you very much Scott,
>>
>> We appreciate your efforts and dedication to making this platform as useful and robust as it is.
>>
>> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>>
>> Thanks,
>>
>> Paul Collado
>>
>>
>>
>> From: Discussion <discussion-***@list.opendcim.org> on behalf of Scott Milliken <***@themillikens.com>
>> Sent: Wednesday, March 21, 2018 12:57 PM
>> To: ***@list.opendcim.org
>> Subject: [Discussion] openDCIM-18.01 Officially Released
>>
>> All,
>> We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
>> If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
>> The demo site has been upgraded.
>>
>> https://www.opendcim.org/downloads.html
>> openDCIM Downloads
>> www.opendcim.org
>> The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.
>>
>>
>> Changes in 18.01
>>
>> Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
>> Added some error logging for LDAP authentication failures
>> Added in more bulk import functions - Users and Departments
>> Converted some more reports over to Excel as we move away from PDF reports
>> Network map updated to differentiate between front and rear ports
>> Updated DataTables to the latest compatible release
>> HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
>> Other bug fixes, as usual.
>>
>> Scott
>>
>>
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
>>
>>
>>
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
>>
>>
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
robert saunders
7 years ago
Permalink
Ok So this is how I have it working with LDAP with no modifications

*LDAP Server URI : *Pretty Self Explanatory this is the FQDN for your LDAP
server / domain controller

*BASE DN:* This is the very top level of you your DOMAIN e.g.
ou=Top-Level,dc=example,dc=com

*Base Search: *This was the tricky one to figure out this is to narrow down
tour search to just the groups you want we use
*(&(objectClass=group)(cn=openDCIM*))*
so that is basically saying look for any groups with *"openDCIM"* in the
name as that is how we named our groups in AD. You can change the end part
to match how you have named your groups

*BIND DN: * This is which account are you going to use to do the AD search
in our case all users are able to perform and AD search so we use

%userid%@example.com this will depend on the permissions you give your
users in AD


*User Search: *This is the user that we are actually looking up in AD to
find which DCIM groups they are a member of we use

(|(sAMAccountName=%userid%)) and that should work for all Microsoft AD



So then you have the Group Distinguished names.So you need to create a
bunch of groups in AD and put the users in them this will then grant them
the various permissions

I wont go into what each group does as that has been covered before


what is important is that the group names have something similar in them
that you can search in the above base Search as per the example with call
all our groups openDCIM_<the group name in DCIM> that way we can do our
above base search of openDCIM* and return only the openDCIM groups.


you also need to define the full path to the group in AD


In our case

CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com


so this is basically saying our folder structure is


Example.com

Top-Level

Security Groups
openDCIM_ReadAccess



Obviously change this to suit your AD environment you can easily find this
info using the ADSI console on your AD server


Hope this help


IF you have any more questions let me know


Regards


Robert












On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com>
wrote:

> Cool. I won’t send my page in then. I’ll let you walk people through it as
> it’s more supportable than a custom page :)
>
> Nick Noot-Davies
> Sent from my iPhone
>
> On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com>
> wrote:
>
>
> LDAP works with out making any changes to the page it can be one from the
> ldap settings page
>
> I'll try to walk you through it when I get to work
>
> On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com> wrote:
>
> Thank you, I'll wait for your response.
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> nick noot-davies <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 1:46 PM
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> I have AD LDAP working, i made some changes to the page. I am happy to
> share this page. However i manage to struggle through with php so i cant
> guarantee its the best in the world, it works for us and hopefuly will for
> others.
>
> Ill sanitize the code ive added and comment it and then email it
>
> On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org>
> wrote:
>
> Yeah, you find someone to write it and it can happen. I wrote the
> existing LDAP login - and just barely. I have no AD infrastructure to
> test against, and have no AD knowledge.
>
> Scott
>
> On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com>
> wrote:
>
> Thank you very much Scott,
>
>
> We appreciate your efforts and dedication to making this platform as
> useful and robust as it is.
>
>
> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> Scott Milliken <***@themillikens.com>
> *Sent:* Wednesday, March 21, 2018 12:57 PM
> *To:* ***@list.opendcim.org
> *Subject:* [Discussion] openDCIM-18.01 Officially Released
>
> All,
> We've had a few weeks of testing, with a few bugs reported to us and
> fixed, but all in all it has been relatively quiet, even though we know of
> several already running the code in production. So, without further
> delay, I've pushed out release 18.01.
> If you have a medium to large sized installation, you should see
> enormous performance increases. As a benchmark, my installation of 8
> rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to
> fully render a cabinet view in version 4.5. It is now down to roughly 800
> ms. Smaller sites won't notice much difference, but the larger ones will
> see the dramatic increase. We've sped it up by caching several things -
> so I will warn you, it can take a considerable amount of time to do this
> upgrade. There is a gauge on the screen, though, so you will be able to
> see that it's running. Let it finish. If you happen to interrupt it,
> you can manually rebuild the image cache after exiting the upgrade mode -
> go into Template Management -> Device Image Management, and click on
> "Rebuild Image Cache".
> The demo site has been upgraded.
>
> https://www.opendcim.org/downloads.html
> openDCIM Downloads <https://www.opendcim.org/downloads.html>
> www.opendcim.org
> The openDCIM Foundation, Inc is a not-for profit corporation formed to
> manage the project and cover any expenses related to hosting and
> publicizing openDCIM.
>
>
> Changes in 18.01
>
> - Nomenclature for releases has changed to YY.nn, as this ends the
> debate over what warrants a major vs minor number change
> - Added some error logging for LDAP authentication failures
> - Added in more bulk import functions - Users and Departments
> - Converted some more reports over to Excel as we move away from PDF
> reports
> - Network map updated to differentiate between front and rear ports
> - Updated DataTables to the latest compatible release
> - HUGE performance improvements by caching device imaging and the
> navigation tree HTML, rather than building on the fly
> - Other bug fixes, as usual.
>
>
> Scott
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
Paul Collado
7 years ago
Permalink
Thank you very much Robert,


Is there anything I need to change in OpenDCIM to change from using Apache authentication to LDAP? if Yes, can I use both in order to have a backdoor in case AD fails for some reason?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org> on behalf of robert saunders <***@gmail.com>
Sent: Wednesday, March 21, 2018 5:12 PM
To: ***@list.opendcim.org
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Ok So this is how I have it working with LDAP with no modifications

LDAP Server URI : Pretty Self Explanatory this is the FQDN for your LDAP server / domain controller

BASE DN: This is the very top level of you your DOMAIN e.g. ou=Top-Level,dc=example,dc=com

Base Search: This was the tricky one to figure out this is to narrow down tour search to just the groups you want we use (&(objectClass=group)(cn=openDCIM*))
so that is basically saying look for any groups with "openDCIM" in the name as that is how we named our groups in AD. You can change the end part to match how you have named your groups

BIND DN: This is which account are you going to use to do the AD search in our case all users are able to perform and AD search so we use

%userid%@example.com<mailto:%25userid%***@example.com> this will depend on the permissions you give your users in AD


User Search: This is the user that we are actually looking up in AD to find which DCIM groups they are a member of we use

(|(sAMAccountName=%userid%)) and that should work for all Microsoft AD



So then you have the Group Distinguished names.So you need to create a bunch of groups in AD and put the users in them this will then grant them the various permissions

I wont go into what each group does as that has been covered before


what is important is that the group names have something similar in them that you can search in the above base Search as per the example with call all our groups openDCIM_<the group name in DCIM> that way we can do our above base search of openDCIM* and return only the openDCIM groups.


you also need to define the full path to the group in AD


In our case

CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com


so this is basically saying our folder structure is


Example.com

Top-Level

Security Groups
openDCIM_ReadAccess



Obviously change this to suit your AD environment you can easily find this info using the ADSI console on your AD server


Hope this help


IF you have any more questions let me know


Regards


Robert











On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com<mailto:***@gmail.com>> wrote:
Cool. I won’t send my page in then. I’ll let you walk people through it as it’s more supportable than a custom page :)

Nick Noot-Davies
Sent from my iPhone

On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:


LDAP works with out making any changes to the page it can be one from the ldap settings page

I'll try to walk you through it when I get to work

On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:


Thank you, I'll wait for your response.


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of nick noot-davies <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 1:46 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.

Ill sanitize the code ive added and comment it and then email it

On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org<mailto:***@opendcim.org>> wrote:
Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.

Scott

On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Scott,


We appreciate your efforts and dedication to making this platform as useful and robust as it is.


Do you have any updates on this new upgrade to LDAP integration to MS AD?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of Scott Milliken <***@themillikens.com<mailto:***@themillikens.com>>
Sent: Wednesday, March 21, 2018 12:57 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: [Discussion] openDCIM-18.01 Officially Released

All,
We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html
openDCIM Downloads<https://www.opendcim.org/downloads.html>
www.opendcim.org<http://www.opendcim.org>
The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.



Changes in 18.01

* Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
* Added some error logging for LDAP authentication failures
* Added in more bulk import functions - Users and Departments
* Converted some more reports over to Excel as we move away from PDF reports
* Network map updated to differentiate between front and rear ports
* Updated DataTables to the latest compatible release
* HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
* Other bug fixes, as usual.

Scott


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion



_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
robert saunders
7 years ago
Permalink
Hey Paul

Yes you will need to change a file in open DCIM you cant have both turned
on at the same time but it is easy enough to change back and forth

you change it under the db.inc.php

you just un-comment the line define Authentication LDAP

and comment out the line define Authentication Apache

Regards

Robert


On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com> wrote:

> Thank you very much Robert,
>
>
> Is there anything I need to change in OpenDCIM to change from using Apache
> authentication to LDAP? if Yes, can I use both in order to have a backdoor
> in case AD fails for some reason?
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 5:12 PM
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> Ok So this is how I have it working with LDAP with no modifications
>
> *LDAP Server URI : *Pretty Self Explanatory this is the FQDN for your
> LDAP server / domain controller
>
> *BASE DN:* This is the very top level of you your DOMAIN e.g.
> ou=Top-Level,dc=example,dc=com
>
> *Base Search: *This was the tricky one to figure out this is to narrow
> down tour search to just the groups you want we use
> *(&(objectClass=group)(cn=openDCIM*))*
> so that is basically saying look for any groups with *"openDCIM"* in the
> name as that is how we named our groups in AD. You can change the end part
> to match how you have named your groups
>
> *BIND DN: * This is which account are you going to use to do the AD
> search in our case all users are able to perform and AD search so we use
>
> %userid%@example.com this will depend on the permissions you give your
> users in AD
>
>
> *User Search: *This is the user that we are actually looking up in AD to
> find which DCIM groups they are a member of we use
>
> (|(sAMAccountName=%userid%)) and that should work for all Microsoft AD
>
>
>
> So then you have the Group Distinguished names.So you need to create a
> bunch of groups in AD and put the users in them this will then grant them
> the various permissions
>
> I wont go into what each group does as that has been covered before
>
>
> what is important is that the group names have something similar in them
> that you can search in the above base Search as per the example with call
> all our groups openDCIM_<the group name in DCIM> that way we can do our
> above base search of openDCIM* and return only the openDCIM groups.
>
>
> you also need to define the full path to the group in AD
>
>
> In our case
>
> CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com
>
>
> so this is basically saying our folder structure is
>
>
> Example.com
>
> Top-Level
>
> Security Groups
> openDCIM_ReadAccess
>
>
>
> Obviously change this to suit your AD environment you can easily find this
> info using the ADSI console on your AD server
>
>
> Hope this help
>
>
> IF you have any more questions let me know
>
>
> Regards
>
>
> Robert
>
>
>
>
>
>
>
>
>
>
>
>
> On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com>
> wrote:
>
> Cool. I won’t send my page in then. I’ll let you walk people through it as
> it’s more supportable than a custom page :)
>
> Nick Noot-Davies
> Sent from my iPhone
>
> On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com>
> wrote:
>
>
> LDAP works with out making any changes to the page it can be one from the
> ldap settings page
>
> I'll try to walk you through it when I get to work
>
> On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com> wrote:
>
> Thank you, I'll wait for your response.
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> nick noot-davies <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 1:46 PM
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> I have AD LDAP working, i made some changes to the page. I am happy to
> share this page. However i manage to struggle through with php so i cant
> guarantee its the best in the world, it works for us and hopefuly will for
> others.
>
> Ill sanitize the code ive added and comment it and then email it
>
> On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org>
> wrote:
>
> Yeah, you find someone to write it and it can happen. I wrote the
> existing LDAP login - and just barely. I have no AD infrastructure to
> test against, and have no AD knowledge.
>
> Scott
>
> On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com>
> wrote:
>
> Thank you very much Scott,
>
>
> We appreciate your efforts and dedication to making this platform as
> useful and robust as it is.
>
>
> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> Scott Milliken <***@themillikens.com>
> *Sent:* Wednesday, March 21, 2018 12:57 PM
> *To:* ***@list.opendcim.org
> *Subject:* [Discussion] openDCIM-18.01 Officially Released
>
> All,
> We've had a few weeks of testing, with a few bugs reported to us and
> fixed, but all in all it has been relatively quiet, even though we know of
> several already running the code in production. So, without further
> delay, I've pushed out release 18.01.
> If you have a medium to large sized installation, you should see
> enormous performance increases. As a benchmark, my installation of 8
> rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to
> fully render a cabinet view in version 4.5. It is now down to roughly 800
> ms. Smaller sites won't notice much difference, but the larger ones will
> see the dramatic increase. We've sped it up by caching several things -
> so I will warn you, it can take a considerable amount of time to do this
> upgrade. There is a gauge on the screen, though, so you will be able to
> see that it's running. Let it finish. If you happen to interrupt it,
> you can manually rebuild the image cache after exiting the upgrade mode -
> go into Template Management -> Device Image Management, and click on
> "Rebuild Image Cache".
> The demo site has been upgraded.
>
> https://www.opendcim.org/downloads.html
> openDCIM Downloads <https://www.opendcim.org/downloads.html>
> www.opendcim.org
> The openDCIM Foundation, Inc is a not-for profit corporation formed to
> manage the project and cover any expenses related to hosting and
> publicizing openDCIM.
>
>
> Changes in 18.01
>
> - Nomenclature for releases has changed to YY.nn, as this ends the
> debate over what warrants a major vs minor number change
> - Added some error logging for LDAP authentication failures
> - Added in more bulk import functions - Users and Departments
> - Converted some more reports over to Excel as we move away from PDF
> reports
> - Network map updated to differentiate between front and rear ports
> - Updated DataTables to the latest compatible release
> - HUGE performance improvements by caching device imaging and the
> navigation tree HTML, rather than building on the fly
> - Other bug fixes, as usual.
>
>
> Scott
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
Paul Collado
7 years ago
Permalink
Thank you again,


I'm able to get prompted for LDAP credentials, but still unable to authenticate using my AD account. Therefore, I will continue to play with the base search parameters and get back to you with results.


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org> on behalf of robert saunders <***@gmail.com>
Sent: Wednesday, March 21, 2018 6:03 PM
To: ***@list.opendcim.org
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Hey Paul

Yes you will need to change a file in open DCIM you cant have both turned on at the same time but it is easy enough to change back and forth

you change it under the db.inc.php

you just un-comment the line define Authentication LDAP

and comment out the line define Authentication Apache

Regards

Robert


On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Robert,


Is there anything I need to change in OpenDCIM to change from using Apache authentication to LDAP? if Yes, can I use both in order to have a backdoor in case AD fails for some reason?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 5:12 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Ok So this is how I have it working with LDAP with no modifications

LDAP Server URI : Pretty Self Explanatory this is the FQDN for your LDAP server / domain controller

BASE DN: This is the very top level of you your DOMAIN e.g. ou=Top-Level,dc=example,dc=com

Base Search: This was the tricky one to figure out this is to narrow down tour search to just the groups you want we use (&(objectClass=group)(cn=openDCIM*))
so that is basically saying look for any groups with "openDCIM" in the name as that is how we named our groups in AD. You can change the end part to match how you have named your groups

BIND DN: This is which account are you going to use to do the AD search in our case all users are able to perform and AD search so we use

%userid%@example.com<mailto:%25userid%***@example.com> this will depend on the permissions you give your users in AD


User Search: This is the user that we are actually looking up in AD to find which DCIM groups they are a member of we use

(|(sAMAccountName=%userid%)) and that should work for all Microsoft AD



So then you have the Group Distinguished names.So you need to create a bunch of groups in AD and put the users in them this will then grant them the various permissions

I wont go into what each group does as that has been covered before


what is important is that the group names have something similar in them that you can search in the above base Search as per the example with call all our groups openDCIM_<the group name in DCIM> that way we can do our above base search of openDCIM* and return only the openDCIM groups.


you also need to define the full path to the group in AD


In our case

CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com


so this is basically saying our folder structure is


Example.com

Top-Level

Security Groups
openDCIM_ReadAccess



Obviously change this to suit your AD environment you can easily find this info using the ADSI console on your AD server


Hope this help


IF you have any more questions let me know


Regards


Robert











On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com<mailto:***@gmail.com>> wrote:
Cool. I won’t send my page in then. I’ll let you walk people through it as it’s more supportable than a custom page :)

Nick Noot-Davies
Sent from my iPhone

On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:


LDAP works with out making any changes to the page it can be one from the ldap settings page

I'll try to walk you through it when I get to work

On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:


Thank you, I'll wait for your response.


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of nick noot-davies <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 1:46 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.

Ill sanitize the code ive added and comment it and then email it

On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org<mailto:***@opendcim.org>> wrote:
Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.

Scott

On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Scott,


We appreciate your efforts and dedication to making this platform as useful and robust as it is.


Do you have any updates on this new upgrade to LDAP integration to MS AD?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of Scott Milliken <***@themillikens.com<mailto:***@themillikens.com>>
Sent: Wednesday, March 21, 2018 12:57 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: [Discussion] openDCIM-18.01 Officially Released

All,
We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html
openDCIM Downloads<https://www.opendcim.org/downloads.html>
www.opendcim.org<http://www.opendcim.org>
The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.



Changes in 18.01

* Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
* Added some error logging for LDAP authentication failures
* Added in more bulk import functions - Users and Departments
* Converted some more reports over to Excel as we move away from PDF reports
* Network map updated to differentiate between front and rear ports
* Updated DataTables to the latest compatible release
* HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
* Other bug fixes, as usual.

Scott


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion



_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
robert saunders
7 years ago
Permalink
Have you added the relevant groups and added the relevant users into said
groups in AD

also when you do login with AD credentials does it show your username in
the top right corner

Regards

Robert

On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com> wrote:

> Thank you again,
>
>
> I'm able to get prompted for LDAP credentials, but still unable to
> authenticate using my AD account. Therefore, I will continue to play with
> the base search parameters and get back to you with results.
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 6:03 PM
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> Hey Paul
>
> Yes you will need to change a file in open DCIM you cant have both turned
> on at the same time but it is easy enough to change back and forth
>
> you change it under the db.inc.php
>
> you just un-comment the line define Authentication LDAP
>
> and comment out the line define Authentication Apache
>
> Regards
>
> Robert
>
>
> On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com> wrote:
>
> Thank you very much Robert,
>
>
> Is there anything I need to change in OpenDCIM to change from using Apache
> authentication to LDAP? if Yes, can I use both in order to have a backdoor
> in case AD fails for some reason?
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 5:12 PM
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> Ok So this is how I have it working with LDAP with no modifications
>
> *LDAP Server URI : *Pretty Self Explanatory this is the FQDN for your
> LDAP server / domain controller
>
> *BASE DN:* This is the very top level of you your DOMAIN e.g.
> ou=Top-Level,dc=example,dc=com
>
> *Base Search: *This was the tricky one to figure out this is to narrow
> down tour search to just the groups you want we use
> *(&(objectClass=group)(cn=openDCIM*))*
> so that is basically saying look for any groups with *"openDCIM"* in the
> name as that is how we named our groups in AD. You can change the end part
> to match how you have named your groups
>
> *BIND DN: * This is which account are you going to use to do the AD
> search in our case all users are able to perform and AD search so we use
>
> %userid%@example.com this will depend on the permissions you give your
> users in AD
>
>
> *User Search: *This is the user that we are actually looking up in AD to
> find which DCIM groups they are a member of we use
>
> (|(sAMAccountName=%userid%)) and that should work for all Microsoft AD
>
>
>
> So then you have the Group Distinguished names.So you need to create a
> bunch of groups in AD and put the users in them this will then grant them
> the various permissions
>
> I wont go into what each group does as that has been covered before
>
>
> what is important is that the group names have something similar in them
> that you can search in the above base Search as per the example with call
> all our groups openDCIM_<the group name in DCIM> that way we can do our
> above base search of openDCIM* and return only the openDCIM groups.
>
>
> you also need to define the full path to the group in AD
>
>
> In our case
>
> CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com
>
>
> so this is basically saying our folder structure is
>
>
> Example.com
>
> Top-Level
>
> Security Groups
> openDCIM_ReadAccess
>
>
>
> Obviously change this to suit your AD environment you can easily find this
> info using the ADSI console on your AD server
>
>
> Hope this help
>
>
> IF you have any more questions let me know
>
>
> Regards
>
>
> Robert
>
>
>
>
>
>
>
>
>
>
>
>
> On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com>
> wrote:
>
> Cool. I won’t send my page in then. I’ll let you walk people through it as
> it’s more supportable than a custom page :)
>
> Nick Noot-Davies
> Sent from my iPhone
>
> On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com>
> wrote:
>
>
> LDAP works with out making any changes to the page it can be one from the
> ldap settings page
>
> I'll try to walk you through it when I get to work
>
> On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com> wrote:
>
> Thank you, I'll wait for your response.
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> nick noot-davies <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 1:46 PM
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> I have AD LDAP working, i made some changes to the page. I am happy to
> share this page. However i manage to struggle through with php so i cant
> guarantee its the best in the world, it works for us and hopefuly will for
> others.
>
> Ill sanitize the code ive added and comment it and then email it
>
> On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org>
> wrote:
>
> Yeah, you find someone to write it and it can happen. I wrote the
> existing LDAP login - and just barely. I have no AD infrastructure to
> test against, and have no AD knowledge.
>
> Scott
>
> On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com>
> wrote:
>
> Thank you very much Scott,
>
>
> We appreciate your efforts and dedication to making this platform as
> useful and robust as it is.
>
>
> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> Scott Milliken <***@themillikens.com>
> *Sent:* Wednesday, March 21, 2018 12:57 PM
> *To:* ***@list.opendcim.org
> *Subject:* [Discussion] openDCIM-18.01 Officially Released
>
> All,
> We've had a few weeks of testing, with a few bugs reported to us and
> fixed, but all in all it has been relatively quiet, even though we know of
> several already running the code in production. So, without further
> delay, I've pushed out release 18.01.
> If you have a medium to large sized installation, you should see
> enormous performance increases. As a benchmark, my installation of 8
> rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to
> fully render a cabinet view in version 4.5. It is now down to roughly 800
> ms. Smaller sites won't notice much difference, but the larger ones will
> see the dramatic increase. We've sped it up by caching several things -
> so I will warn you, it can take a considerable amount of time to do this
> upgrade. There is a gauge on the screen, though, so you will be able to
> see that it's running. Let it finish. If you happen to interrupt it,
> you can manually rebuild the image cache after exiting the upgrade mode -
> go into Template Management -> Device Image Management, and click on
> "Rebuild Image Cache".
> The demo site has been upgraded.
>
> https://www.opendcim.org/downloads.html
> openDCIM Downloads <https://www.opendcim.org/downloads.html>
> www.opendcim.org
> The openDCIM Foundation, Inc is a not-for profit corporation formed to
> manage the project and cover any expenses related to hosting and
> publicizing openDCIM.
>
>
> Changes in 18.01
>
> - Nomenclature for releases has changed to YY.nn, as this ends the
> debate over what warrants a major vs minor number change
> - Added some error logging for LDAP authentication failures
> - Added in more bulk import functions - Users and Departments
> - Converted some more reports over to Excel as we move away from PDF
> reports
> - Network map updated to differentiate between front and rear ports
> - Updated DataTables to the latest compatible release
> - HUGE performance improvements by caching device imaging and the
> navigation tree HTML, rather than building on the fly
> - Other bug fixes, as usual.
>
>
> Scott
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
Paul Collado
7 years ago
Permalink
Yes, I added the groups to AD and put my AD account as members of the site admin and site access groups, but I'm not able to login with AD credentials to OpenDCIM.


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org> on behalf of robert saunders <***@gmail.com>
Sent: Wednesday, March 21, 2018 6:52 PM
To: ***@list.opendcim.org
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Have you added the relevant groups and added the relevant users into said groups in AD

also when you do login with AD credentials does it show your username in the top right corner

Regards

Robert

On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you again,


I'm able to get prompted for LDAP credentials, but still unable to authenticate using my AD account. Therefore, I will continue to play with the base search parameters and get back to you with results.


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:03 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Hey Paul

Yes you will need to change a file in open DCIM you cant have both turned on at the same time but it is easy enough to change back and forth

you change it under the db.inc.php

you just un-comment the line define Authentication LDAP

and comment out the line define Authentication Apache

Regards

Robert


On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Robert,


Is there anything I need to change in OpenDCIM to change from using Apache authentication to LDAP? if Yes, can I use both in order to have a backdoor in case AD fails for some reason?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 5:12 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Ok So this is how I have it working with LDAP with no modifications

LDAP Server URI : Pretty Self Explanatory this is the FQDN for your LDAP server / domain controller

BASE DN: This is the very top level of you your DOMAIN e.g. ou=Top-Level,dc=example,dc=com

Base Search: This was the tricky one to figure out this is to narrow down tour search to just the groups you want we use (&(objectClass=group)(cn=openDCIM*))
so that is basically saying look for any groups with "openDCIM" in the name as that is how we named our groups in AD. You can change the end part to match how you have named your groups

BIND DN: This is which account are you going to use to do the AD search in our case all users are able to perform and AD search so we use

%userid%@example.com<mailto:%25userid%***@example.com> this will depend on the permissions you give your users in AD


User Search: This is the user that we are actually looking up in AD to find which DCIM groups they are a member of we use

(|(sAMAccountName=%userid%)) and that should work for all Microsoft AD



So then you have the Group Distinguished names.So you need to create a bunch of groups in AD and put the users in them this will then grant them the various permissions

I wont go into what each group does as that has been covered before


what is important is that the group names have something similar in them that you can search in the above base Search as per the example with call all our groups openDCIM_<the group name in DCIM> that way we can do our above base search of openDCIM* and return only the openDCIM groups.


you also need to define the full path to the group in AD


In our case

CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com


so this is basically saying our folder structure is


Example.com

Top-Level

Security Groups
openDCIM_ReadAccess



Obviously change this to suit your AD environment you can easily find this info using the ADSI console on your AD server


Hope this help


IF you have any more questions let me know


Regards


Robert











On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com<mailto:***@gmail.com>> wrote:
Cool. I won’t send my page in then. I’ll let you walk people through it as it’s more supportable than a custom page :)

Nick Noot-Davies
Sent from my iPhone

On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:


LDAP works with out making any changes to the page it can be one from the ldap settings page

I'll try to walk you through it when I get to work

On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:


Thank you, I'll wait for your response.


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of nick noot-davies <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 1:46 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.

Ill sanitize the code ive added and comment it and then email it

On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org<mailto:***@opendcim.org>> wrote:
Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.

Scott

On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Scott,


We appreciate your efforts and dedication to making this platform as useful and robust as it is.


Do you have any updates on this new upgrade to LDAP integration to MS AD?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of Scott Milliken <***@themillikens.com<mailto:***@themillikens.com>>
Sent: Wednesday, March 21, 2018 12:57 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: [Discussion] openDCIM-18.01 Officially Released

All,
We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html
openDCIM Downloads<https://www.opendcim.org/downloads.html>
www.opendcim.org<http://www.opendcim.org>
The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.



Changes in 18.01

* Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
* Added some error logging for LDAP authentication failures
* Added in more bulk import functions - Users and Departments
* Converted some more reports over to Excel as we move away from PDF reports
* Network map updated to differentiate between front and rear ports
* Updated DataTables to the latest compatible release
* HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
* Other bug fixes, as usual.

Scott


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion



_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion

_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
robert saunders
7 years ago
Permalink
so when you log in paul

does it show your username in the top right corner after you tried to log
in

On 22 March 2018 at 09:59, Paul Collado <***@hotmail.com> wrote:

> Yes, I added the groups to AD and put my AD account as members of the site
> admin and site access groups, but I'm not able to login with AD credentials
> to OpenDCIM.
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 6:52 PM
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> Have you added the relevant groups and added the relevant users into said
> groups in AD
>
> also when you do login with AD credentials does it show your username in
> the top right corner
>
> Regards
>
> Robert
>
> On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com> wrote:
>
> Thank you again,
>
>
> I'm able to get prompted for LDAP credentials, but still unable to
> authenticate using my AD account. Therefore, I will continue to play with
> the base search parameters and get back to you with results.
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 6:03 PM
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> Hey Paul
>
> Yes you will need to change a file in open DCIM you cant have both turned
> on at the same time but it is easy enough to change back and forth
>
> you change it under the db.inc.php
>
> you just un-comment the line define Authentication LDAP
>
> and comment out the line define Authentication Apache
>
> Regards
>
> Robert
>
>
> On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com> wrote:
>
> Thank you very much Robert,
>
>
> Is there anything I need to change in OpenDCIM to change from using Apache
> authentication to LDAP? if Yes, can I use both in order to have a backdoor
> in case AD fails for some reason?
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 5:12 PM
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> Ok So this is how I have it working with LDAP with no modifications
>
> *LDAP Server URI : *Pretty Self Explanatory this is the FQDN for your
> LDAP server / domain controller
>
> *BASE DN:* This is the very top level of you your DOMAIN e.g.
> ou=Top-Level,dc=example,dc=com
>
> *Base Search: *This was the tricky one to figure out this is to narrow
> down tour search to just the groups you want we use
> *(&(objectClass=group)(cn=openDCIM*))*
> so that is basically saying look for any groups with *"openDCIM"* in the
> name as that is how we named our groups in AD. You can change the end part
> to match how you have named your groups
>
> *BIND DN: * This is which account are you going to use to do the AD
> search in our case all users are able to perform and AD search so we use
>
> %userid%@example.com this will depend on the permissions you give your
> users in AD
>
>
> *User Search: *This is the user that we are actually looking up in AD to
> find which DCIM groups they are a member of we use
>
> (|(sAMAccountName=%userid%)) and that should work for all Microsoft AD
>
>
>
> So then you have the Group Distinguished names.So you need to create a
> bunch of groups in AD and put the users in them this will then grant them
> the various permissions
>
> I wont go into what each group does as that has been covered before
>
>
> what is important is that the group names have something similar in them
> that you can search in the above base Search as per the example with call
> all our groups openDCIM_<the group name in DCIM> that way we can do our
> above base search of openDCIM* and return only the openDCIM groups.
>
>
> you also need to define the full path to the group in AD
>
>
> In our case
>
> CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com
>
>
> so this is basically saying our folder structure is
>
>
> Example.com
>
> Top-Level
>
> Security Groups
> openDCIM_ReadAccess
>
>
>
> Obviously change this to suit your AD environment you can easily find this
> info using the ADSI console on your AD server
>
>
> Hope this help
>
>
> IF you have any more questions let me know
>
>
> Regards
>
>
> Robert
>
>
>
>
>
>
>
>
>
>
>
>
> On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com>
> wrote:
>
> Cool. I won’t send my page in then. I’ll let you walk people through it as
> it’s more supportable than a custom page :)
>
> Nick Noot-Davies
> Sent from my iPhone
>
> On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com>
> wrote:
>
>
> LDAP works with out making any changes to the page it can be one from the
> ldap settings page
>
> I'll try to walk you through it when I get to work
>
> On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com> wrote:
>
> Thank you, I'll wait for your response.
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> nick noot-davies <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 1:46 PM
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> I have AD LDAP working, i made some changes to the page. I am happy to
> share this page. However i manage to struggle through with php so i cant
> guarantee its the best in the world, it works for us and hopefuly will for
> others.
>
> Ill sanitize the code ive added and comment it and then email it
>
> On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org>
> wrote:
>
> Yeah, you find someone to write it and it can happen. I wrote the
> existing LDAP login - and just barely. I have no AD infrastructure to
> test against, and have no AD knowledge.
>
> Scott
>
> On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com>
> wrote:
>
> Thank you very much Scott,
>
>
> We appreciate your efforts and dedication to making this platform as
> useful and robust as it is.
>
>
> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> Scott Milliken <***@themillikens.com>
> *Sent:* Wednesday, March 21, 2018 12:57 PM
> *To:* ***@list.opendcim.org
> *Subject:* [Discussion] openDCIM-18.01 Officially Released
>
> All,
> We've had a few weeks of testing, with a few bugs reported to us and
> fixed, but all in all it has been relatively quiet, even though we know of
> several already running the code in production. So, without further
> delay, I've pushed out release 18.01.
> If you have a medium to large sized installation, you should see
> enormous performance increases. As a benchmark, my installation of 8
> rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to
> fully render a cabinet view in version 4.5. It is now down to roughly 800
> ms. Smaller sites won't notice much difference, but the larger ones will
> see the dramatic increase. We've sped it up by caching several things -
> so I will warn you, it can take a considerable amount of time to do this
> upgrade. There is a gauge on the screen, though, so you will be able to
> see that it's running. Let it finish. If you happen to interrupt it,
> you can manually rebuild the image cache after exiting the upgrade mode -
> go into Template Management -> Device Image Management, and click on
> "Rebuild Image Cache".
> The demo site has been upgraded.
>
> https://www.opendcim.org/downloads.html
> openDCIM Downloads <https://www.opendcim.org/downloads.html>
> www.opendcim.org
> The openDCIM Foundation, Inc is a not-for profit corporation formed to
> manage the project and cover any expenses related to hosting and
> publicizing openDCIM.
>
>
> Changes in 18.01
>
> - Nomenclature for releases has changed to YY.nn, as this ends the
> debate over what warrants a major vs minor number change
> - Added some error logging for LDAP authentication failures
> - Added in more bulk import functions - Users and Departments
> - Converted some more reports over to Excel as we move away from PDF
> reports
> - Network map updated to differentiate between front and rear ports
> - Updated DataTables to the latest compatible release
> - HUGE performance improvements by caching device imaging and the
> navigation tree HTML, rather than building on the fly
> - Other bug fixes, as usual.
>
>
> Scott
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
robert saunders
7 years ago
Permalink
If you can jump on the IRC channel
http://webchat.freenode.net/?channels=%23opendcim

and I try to help

On 22 March 2018 at 10:09, robert saunders <***@gmail.com>
wrote:

> so when you log in paul
>
> does it show your username in the top right corner after you tried to log
> in
>
> On 22 March 2018 at 09:59, Paul Collado <***@hotmail.com> wrote:
>
>> Yes, I added the groups to AD and put my AD account as members of the
>> site admin and site access groups, but I'm not able to login with AD
>> credentials to OpenDCIM.
>>
>>
>> Thanks,
>>
>>
>> Paul Collado
>>
>>
>> ------------------------------
>> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
>> robert saunders <***@gmail.com>
>> *Sent:* Wednesday, March 21, 2018 6:52 PM
>>
>> *To:* ***@list.opendcim.org
>> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>>
>> Have you added the relevant groups and added the relevant users into said
>> groups in AD
>>
>> also when you do login with AD credentials does it show your username in
>> the top right corner
>>
>> Regards
>>
>> Robert
>>
>> On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com> wrote:
>>
>> Thank you again,
>>
>>
>> I'm able to get prompted for LDAP credentials, but still unable to
>> authenticate using my AD account. Therefore, I will continue to play with
>> the base search parameters and get back to you with results.
>>
>>
>> Thanks,
>>
>>
>> Paul Collado
>>
>>
>> ------------------------------
>> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
>> robert saunders <***@gmail.com>
>> *Sent:* Wednesday, March 21, 2018 6:03 PM
>>
>> *To:* ***@list.opendcim.org
>> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>>
>> Hey Paul
>>
>> Yes you will need to change a file in open DCIM you cant have both turned
>> on at the same time but it is easy enough to change back and forth
>>
>> you change it under the db.inc.php
>>
>> you just un-comment the line define Authentication LDAP
>>
>> and comment out the line define Authentication Apache
>>
>> Regards
>>
>> Robert
>>
>>
>> On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com> wrote:
>>
>> Thank you very much Robert,
>>
>>
>> Is there anything I need to change in OpenDCIM to change from using
>> Apache authentication to LDAP? if Yes, can I use both in order to have a
>> backdoor in case AD fails for some reason?
>>
>>
>> Thanks,
>>
>>
>> Paul Collado
>>
>>
>> ------------------------------
>> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
>> robert saunders <***@gmail.com>
>> *Sent:* Wednesday, March 21, 2018 5:12 PM
>>
>> *To:* ***@list.opendcim.org
>> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>>
>> Ok So this is how I have it working with LDAP with no modifications
>>
>> *LDAP Server URI : *Pretty Self Explanatory this is the FQDN for your
>> LDAP server / domain controller
>>
>> *BASE DN:* This is the very top level of you your DOMAIN e.g.
>> ou=Top-Level,dc=example,dc=com
>>
>> *Base Search: *This was the tricky one to figure out this is to narrow
>> down tour search to just the groups you want we use
>> *(&(objectClass=group)(cn=openDCIM*))*
>> so that is basically saying look for any groups with *"openDCIM"* in the
>> name as that is how we named our groups in AD. You can change the end part
>> to match how you have named your groups
>>
>> *BIND DN: * This is which account are you going to use to do the AD
>> search in our case all users are able to perform and AD search so we use
>>
>> %userid%@example.com this will depend on the permissions you give your
>> users in AD
>>
>>
>> *User Search: *This is the user that we are actually looking up in AD to
>> find which DCIM groups they are a member of we use
>>
>> (|(sAMAccountName=%userid%)) and that should work for all Microsoft AD
>>
>>
>>
>> So then you have the Group Distinguished names.So you need to create a
>> bunch of groups in AD and put the users in them this will then grant them
>> the various permissions
>>
>> I wont go into what each group does as that has been covered before
>>
>>
>> what is important is that the group names have something similar in them
>> that you can search in the above base Search as per the example with call
>> all our groups openDCIM_<the group name in DCIM> that way we can do our
>> above base search of openDCIM* and return only the openDCIM groups.
>>
>>
>> you also need to define the full path to the group in AD
>>
>>
>> In our case
>>
>> CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com
>>
>>
>> so this is basically saying our folder structure is
>>
>>
>> Example.com
>>
>> Top-Level
>>
>> Security Groups
>> openDCIM_ReadAccess
>>
>>
>>
>> Obviously change this to suit your AD environment you can easily find
>> this info using the ADSI console on your AD server
>>
>>
>> Hope this help
>>
>>
>> IF you have any more questions let me know
>>
>>
>> Regards
>>
>>
>> Robert
>>
>>
>>
>>
>>
>>
>>
>>
>>
>>
>>
>>
>> On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com>
>> wrote:
>>
>> Cool. I won’t send my page in then. I’ll let you walk people through it
>> as it’s more supportable than a custom page :)
>>
>> Nick Noot-Davies
>> Sent from my iPhone
>>
>> On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com>
>> wrote:
>>
>>
>> LDAP works with out making any changes to the page it can be one from the
>> ldap settings page
>>
>> I'll try to walk you through it when I get to work
>>
>> On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com> wrote:
>>
>> Thank you, I'll wait for your response.
>>
>>
>> Paul Collado
>>
>>
>> ------------------------------
>> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
>> nick noot-davies <***@gmail.com>
>> *Sent:* Wednesday, March 21, 2018 1:46 PM
>> *To:* ***@list.opendcim.org
>> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>>
>> I have AD LDAP working, i made some changes to the page. I am happy to
>> share this page. However i manage to struggle through with php so i cant
>> guarantee its the best in the world, it works for us and hopefuly will for
>> others.
>>
>> Ill sanitize the code ive added and comment it and then email it
>>
>> On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org>
>> wrote:
>>
>> Yeah, you find someone to write it and it can happen. I wrote the
>> existing LDAP login - and just barely. I have no AD infrastructure to
>> test against, and have no AD knowledge.
>>
>> Scott
>>
>> On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com>
>> wrote:
>>
>> Thank you very much Scott,
>>
>>
>> We appreciate your efforts and dedication to making this platform as
>> useful and robust as it is.
>>
>>
>> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>>
>>
>> Thanks,
>>
>>
>> Paul Collado
>>
>>
>> ------------------------------
>> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
>> Scott Milliken <***@themillikens.com>
>> *Sent:* Wednesday, March 21, 2018 12:57 PM
>> *To:* ***@list.opendcim.org
>> *Subject:* [Discussion] openDCIM-18.01 Officially Released
>>
>> All,
>> We've had a few weeks of testing, with a few bugs reported to us
>> and fixed, but all in all it has been relatively quiet, even though we know
>> of several already running the code in production. So, without further
>> delay, I've pushed out release 18.01.
>> If you have a medium to large sized installation, you should see
>> enormous performance increases. As a benchmark, my installation of 8
>> rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to
>> fully render a cabinet view in version 4.5. It is now down to roughly 800
>> ms. Smaller sites won't notice much difference, but the larger ones will
>> see the dramatic increase. We've sped it up by caching several things -
>> so I will warn you, it can take a considerable amount of time to do this
>> upgrade. There is a gauge on the screen, though, so you will be able to
>> see that it's running. Let it finish. If you happen to interrupt it,
>> you can manually rebuild the image cache after exiting the upgrade mode -
>> go into Template Management -> Device Image Management, and click on
>> "Rebuild Image Cache".
>> The demo site has been upgraded.
>>
>> https://www.opendcim.org/downloads.html
>> openDCIM Downloads <https://www.opendcim.org/downloads.html>
>> www.opendcim.org
>> The openDCIM Foundation, Inc is a not-for profit corporation formed to
>> manage the project and cover any expenses related to hosting and
>> publicizing openDCIM.
>>
>>
>> Changes in 18.01
>>
>> - Nomenclature for releases has changed to YY.nn, as this ends the
>> debate over what warrants a major vs minor number change
>> - Added some error logging for LDAP authentication failures
>> - Added in more bulk import functions - Users and Departments
>> - Converted some more reports over to Excel as we move away from PDF
>> reports
>> - Network map updated to differentiate between front and rear ports
>> - Updated DataTables to the latest compatible release
>> - HUGE performance improvements by caching device imaging and the
>> navigation tree HTML, rather than building on the fly
>> - Other bug fixes, as usual.
>>
>>
>> Scott
>>
>>
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
>>
>>
>>
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
>>
>>
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
>>
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
>>
>>
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
>>
>>
>>
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
>>
>>
>>
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
>>
>>
>>
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
>>
>>
>
Paul Collado
7 years ago
Permalink
I'm logged in now.


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org> on behalf of robert saunders <***@gmail.com>
Sent: Wednesday, March 21, 2018 7:13 PM
To: ***@list.opendcim.org
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

If you can jump on the IRC channel
http://webchat.freenode.net/?channels=%23opendcim
freenode Web IRC (qwebirc)<http://webchat.freenode.net/?channels=%23opendcim>
webchat.freenode.net
Javascript is required to use IRC.



and I try to help

On 22 March 2018 at 10:09, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:
so when you log in paul

does it show your username in the top right corner after you tried to log in

On 22 March 2018 at 09:59, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Yes, I added the groups to AD and put my AD account as members of the site admin and site access groups, but I'm not able to login with AD credentials to OpenDCIM.


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:52 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Have you added the relevant groups and added the relevant users into said groups in AD

also when you do login with AD credentials does it show your username in the top right corner

Regards

Robert

On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you again,


I'm able to get prompted for LDAP credentials, but still unable to authenticate using my AD account. Therefore, I will continue to play with the base search parameters and get back to you with results.


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:03 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Hey Paul

Yes you will need to change a file in open DCIM you cant have both turned on at the same time but it is easy enough to change back and forth

you change it under the db.inc.php

you just un-comment the line define Authentication LDAP

and comment out the line define Authentication Apache

Regards

Robert


On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Robert,


Is there anything I need to change in OpenDCIM to change from using Apache authentication to LDAP? if Yes, can I use both in order to have a backdoor in case AD fails for some reason?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 5:12 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Ok So this is how I have it working with LDAP with no modifications

LDAP Server URI : Pretty Self Explanatory this is the FQDN for your LDAP server / domain controller

BASE DN: This is the very top level of you your DOMAIN e.g. ou=Top-Level,dc=example,dc=com

Base Search: This was the tricky one to figure out this is to narrow down tour search to just the groups you want we use (&(objectClass=group)(cn=openDCIM*))
so that is basically saying look for any groups with "openDCIM" in the name as that is how we named our groups in AD. You can change the end part to match how you have named your groups

BIND DN: This is which account are you going to use to do the AD search in our case all users are able to perform and AD search so we use

%userid%@example.com<mailto:%25userid%***@example.com> this will depend on the permissions you give your users in AD


User Search: This is the user that we are actually looking up in AD to find which DCIM groups they are a member of we use

(|(sAMAccountName=%userid%)) and that should work for all Microsoft AD



So then you have the Group Distinguished names.So you need to create a bunch of groups in AD and put the users in them this will then grant them the various permissions

I wont go into what each group does as that has been covered before


what is important is that the group names have something similar in them that you can search in the above base Search as per the example with call all our groups openDCIM_<the group name in DCIM> that way we can do our above base search of openDCIM* and return only the openDCIM groups.


you also need to define the full path to the group in AD


In our case

CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com


so this is basically saying our folder structure is


Example.com

Top-Level

Security Groups
openDCIM_ReadAccess



Obviously change this to suit your AD environment you can easily find this info using the ADSI console on your AD server


Hope this help


IF you have any more questions let me know


Regards


Robert











On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com<mailto:***@gmail.com>> wrote:
Cool. I won’t send my page in then. I’ll let you walk people through it as it’s more supportable than a custom page :)

Nick Noot-Davies
Sent from my iPhone

On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:


LDAP works with out making any changes to the page it can be one from the ldap settings page

I'll try to walk you through it when I get to work

On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:


Thank you, I'll wait for your response.


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of nick noot-davies <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 1:46 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.

Ill sanitize the code ive added and comment it and then email it

On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org<mailto:***@opendcim.org>> wrote:
Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.

Scott

On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Scott,


We appreciate your efforts and dedication to making this platform as useful and robust as it is.


Do you have any updates on this new upgrade to LDAP integration to MS AD?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of Scott Milliken <***@themillikens.com<mailto:***@themillikens.com>>
Sent: Wednesday, March 21, 2018 12:57 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: [Discussion] openDCIM-18.01 Officially Released

All,
We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html
openDCIM Downloads<https://www.opendcim.org/downloads.html>
www.opendcim.org<http://www.opendcim.org>
The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.



Changes in 18.01

* Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
* Added some error logging for LDAP authentication failures
* Added in more bulk import functions - Users and Departments
* Converted some more reports over to Excel as we move away from PDF reports
* Network map updated to differentiate between front and rear ports
* Updated DataTables to the latest compatible release
* HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
* Other bug fixes, as usual.

Scott


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion



_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion

_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion



_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
Paul Collado
7 years ago
Permalink
Hi,


I got a little farther setting up LDAP authentication. Didn't have the ldap modules properly enabled. Now I'm getting authentication request and my error logs seem to be recognizing the login and credentials, but it seems I'm still having issues with the binding server. Here are some of the details, maybe you can please help me. I'm trying to get this working on a DEV environment with a new installation of ubuntu 16.04 and openDCIM 18.01:


[Fri Mar 23 11:16:03.932451 2018] [:error] [pid 1664] [client 192.168.101.83:50832] PHP Warning: ldap_bind(): Unable to bind to server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on line 37, referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:03.932519 2018] [:error] [pid 1664] [client 192.168.101.83:50832] Unable to bind to specified LDAP server with specified username/password. Username:"domain.com"\\colladop, referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:12.819888 2018] [:error] [pid 1663] [client 192.168.101.83:50844] PHP Warning: ldap_bind(): Unable to bind to server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on line 37, referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:12.820101 2018] [:error] [pid 1663] [client 192.168.101.83:50844] Unable to bind to specified LDAP server with specified username/password. Username:colladop@"domain.com", referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:24.329910 2018] [:error] [pid 1665] [client 192.168.101.83:50861] LDAP Authentication failed for username:colladop, referer: https://192.168.101.76/login_ldap.php



Here is my line 37 on my login_ldap.php file:
$ldapBind = ldap_bind( $ldapConn, $ldapDN, $ldapPassword );

Here are my OpenDCIM LDAP Authentication settings:

LDAP Server URI: ***@domain.com
Base DN: dc=domain,dc=com
Base Search: (&(objectClass=group)(CN=DCIM*))
Bind DN: %userid%@domain.com
User Search: (|(sAMAccountName=%userid%))

Thanks,

Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org> on behalf of robert saunders <***@gmail.com>
Sent: Wednesday, March 21, 2018 7:13 PM
To: ***@list.opendcim.org
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

If you can jump on the IRC channel
http://webchat.freenode.net/?channels=%23opendcim
freenode Web IRC (qwebirc)<http://webchat.freenode.net/?channels=%23opendcim>
webchat.freenode.net
Javascript is required to use IRC.



and I try to help

On 22 March 2018 at 10:09, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:
so when you log in paul

does it show your username in the top right corner after you tried to log in

On 22 March 2018 at 09:59, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Yes, I added the groups to AD and put my AD account as members of the site admin and site access groups, but I'm not able to login with AD credentials to OpenDCIM.


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:52 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Have you added the relevant groups and added the relevant users into said groups in AD

also when you do login with AD credentials does it show your username in the top right corner

Regards

Robert

On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you again,


I'm able to get prompted for LDAP credentials, but still unable to authenticate using my AD account. Therefore, I will continue to play with the base search parameters and get back to you with results.


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:03 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Hey Paul

Yes you will need to change a file in open DCIM you cant have both turned on at the same time but it is easy enough to change back and forth

you change it under the db.inc.php

you just un-comment the line define Authentication LDAP

and comment out the line define Authentication Apache

Regards

Robert


On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Robert,


Is there anything I need to change in OpenDCIM to change from using Apache authentication to LDAP? if Yes, can I use both in order to have a backdoor in case AD fails for some reason?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 5:12 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Ok So this is how I have it working with LDAP with no modifications

LDAP Server URI : Pretty Self Explanatory this is the FQDN for your LDAP server / domain controller

BASE DN: This is the very top level of you your DOMAIN e.g. ou=Top-Level,dc=example,dc=com

Base Search: This was the tricky one to figure out this is to narrow down tour search to just the groups you want we use (&(objectClass=group)(cn=openDCIM*))
so that is basically saying look for any groups with "openDCIM" in the name as that is how we named our groups in AD. You can change the end part to match how you have named your groups

BIND DN: This is which account are you going to use to do the AD search in our case all users are able to perform and AD search so we use

%userid%@example.com<mailto:%25userid%***@example.com> this will depend on the permissions you give your users in AD


User Search: This is the user that we are actually looking up in AD to find which DCIM groups they are a member of we use

(|(sAMAccountName=%userid%)) and that should work for all Microsoft AD



So then you have the Group Distinguished names.So you need to create a bunch of groups in AD and put the users in them this will then grant them the various permissions

I wont go into what each group does as that has been covered before


what is important is that the group names have something similar in them that you can search in the above base Search as per the example with call all our groups openDCIM_<the group name in DCIM> that way we can do our above base search of openDCIM* and return only the openDCIM groups.


you also need to define the full path to the group in AD


In our case

CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com


so this is basically saying our folder structure is


Example.com

Top-Level

Security Groups
openDCIM_ReadAccess



Obviously change this to suit your AD environment you can easily find this info using the ADSI console on your AD server


Hope this help


IF you have any more questions let me know


Regards


Robert











On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com<mailto:***@gmail.com>> wrote:
Cool. I won’t send my page in then. I’ll let you walk people through it as it’s more supportable than a custom page :)

Nick Noot-Davies
Sent from my iPhone

On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:


LDAP works with out making any changes to the page it can be one from the ldap settings page

I'll try to walk you through it when I get to work

On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:


Thank you, I'll wait for your response.


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of nick noot-davies <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 1:46 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.

Ill sanitize the code ive added and comment it and then email it

On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org<mailto:***@opendcim.org>> wrote:
Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.

Scott

On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Scott,


We appreciate your efforts and dedication to making this platform as useful and robust as it is.


Do you have any updates on this new upgrade to LDAP integration to MS AD?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of Scott Milliken <***@themillikens.com<mailto:***@themillikens.com>>
Sent: Wednesday, March 21, 2018 12:57 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: [Discussion] openDCIM-18.01 Officially Released

All,
We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html
openDCIM Downloads<https://www.opendcim.org/downloads.html>
www.opendcim.org<http://www.opendcim.org>
The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.



Changes in 18.01

* Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
* Added some error logging for LDAP authentication failures
* Added in more bulk import functions - Users and Departments
* Converted some more reports over to Excel as we move away from PDF reports
* Network map updated to differentiate between front and rear ports
* Updated DataTables to the latest compatible release
* HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
* Other bug fixes, as usual.

Scott


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion



_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion

_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion



_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
robert saunders
7 years ago
Permalink
Seems like it doesn't like your password or your account doesn't have enough permissions to do the bind

Do you have another account you could test with



> On 24 Mar 2018, at 2:39 am, Paul Collado <***@hotmail.com> wrote:
>
> Hi,
>
> I got a little farther setting up LDAP authentication. Didn't have the ldap modules properly enabled. Now I'm getting authentication request and my error logs seem to be recognizing the login and credentials, but it seems I'm still having issues with the binding server. Here are some of the details, maybe you can please help me. I'm trying to get this working on a DEV environment with a new installation of ubuntu 16.04 and openDCIM 18.01:
>
> [Fri Mar 23 11:16:03.932451 2018] [:error] [pid 1664] [client 192.168.101.83:50832] PHP Warning: ldap_bind(): Unable to bind to server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on line 37, referer: https://192.168.101.76/login_ldap.php
> [Fri Mar 23 11:16:03.932519 2018] [:error] [pid 1664] [client 192.168.101.83:50832] Unable to bind to specified LDAP server with specified username/password. Username:"domain.com"\\colladop, referer: https://192.168.101.76/login_ldap.php
> [Fri Mar 23 11:16:12.819888 2018] [:error] [pid 1663] [client 192.168.101.83:50844] PHP Warning: ldap_bind(): Unable to bind to server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on line 37, referer: https://192.168.101.76/login_ldap.php
> [Fri Mar 23 11:16:12.820101 2018] [:error] [pid 1663] [client 192.168.101.83:50844] Unable to bind to specified LDAP server with specified username/password. Username:colladop@"domain.com", referer: https://192.168.101.76/login_ldap.php
> [Fri Mar 23 11:16:24.329910 2018] [:error] [pid 1665] [client 192.168.101.83:50861] LDAP Authentication failed for username:colladop, referer: https://192.168.101.76/login_ldap.php
>
>
> Here is my line 37 on my login_ldap.php file:
> $ldapBind = ldap_bind( $ldapConn, $ldapDN, $ldapPassword );
>
> Here are my OpenDCIM LDAP Authentication settings:
>
> LDAP Server URI: ***@domain.com
> Base DN: dc=domain,dc=com
> Base Search: (&(objectClass=group)(CN=DCIM*))
> Bind DN: %userid%@domain.com
> User Search: (|(sAMAccountName=%userid%))
>
> Thanks,
>
> Paul Collado
>
>
> From: Discussion <discussion-***@list.opendcim.org> on behalf of robert saunders <***@gmail.com>
> Sent: Wednesday, March 21, 2018 7:13 PM
> To: ***@list.opendcim.org
> Subject: Re: [Discussion] openDCIM-18.01 Officially Released
>
> If you can jump on the IRC channel
> http://webchat.freenode.net/?channels=%23opendcim
> freenode Web IRC (qwebirc)
> webchat.freenode.net
> Javascript is required to use IRC.
>
>
> and I try to help
>
> On 22 March 2018 at 10:09, robert saunders <***@gmail.com> wrote:
> so when you log in paul
>
> does it show your username in the top right corner after you tried to log in
>
> On 22 March 2018 at 09:59, Paul Collado <***@hotmail.com> wrote:
> Yes, I added the groups to AD and put my AD account as members of the site admin and site access groups, but I'm not able to login with AD credentials to OpenDCIM.
>
> Thanks,
>
> Paul Collado
>
>
>
> From: Discussion <discussion-***@list.opendcim.org> on behalf of robert saunders <***@gmail.com>
> Sent: Wednesday, March 21, 2018 6:52 PM
>
> To: ***@list.opendcim.org
> Subject: Re: [Discussion] openDCIM-18.01 Officially Released
>
> Have you added the relevant groups and added the relevant users into said groups in AD
>
> also when you do login with AD credentials does it show your username in the top right corner
>
> Regards
>
> Robert
>
> On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com> wrote:
> Thank you again,
>
> I'm able to get prompted for LDAP credentials, but still unable to authenticate using my AD account. Therefore, I will continue to play with the base search parameters and get back to you with results.
>
> Thanks,
>
> Paul Collado
>
>
>
> From: Discussion <discussion-***@list.opendcim.org> on behalf of robert saunders <***@gmail.com>
> Sent: Wednesday, March 21, 2018 6:03 PM
>
> To: ***@list.opendcim.org
> Subject: Re: [Discussion] openDCIM-18.01 Officially Released
>
> Hey Paul
>
> Yes you will need to change a file in open DCIM you cant have both turned on at the same time but it is easy enough to change back and forth
>
> you change it under the db.inc.php
>
> you just un-comment the line define Authentication LDAP
>
> and comment out the line define Authentication Apache
>
> Regards
>
> Robert
>
>
> On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com> wrote:
> Thank you very much Robert,
>
> Is there anything I need to change in OpenDCIM to change from using Apache authentication to LDAP? if Yes, can I use both in order to have a backdoor in case AD fails for some reason?
>
> Thanks,
>
> Paul Collado
>
>
>
> From: Discussion <discussion-***@list.opendcim.org> on behalf of robert saunders <***@gmail.com>
> Sent: Wednesday, March 21, 2018 5:12 PM
>
> To: ***@list.opendcim.org
> Subject: Re: [Discussion] openDCIM-18.01 Officially Released
>
> Ok So this is how I have it working with LDAP with no modifications
>
> LDAP Server URI : Pretty Self Explanatory this is the FQDN for your LDAP server / domain controller
>
> BASE DN: This is the very top level of you your DOMAIN e.g. ou=Top-Level,dc=example,dc=com
>
> Base Search: This was the tricky one to figure out this is to narrow down tour search to just the groups you want we use (&(objectClass=group)(cn=openDCIM*))
> so that is basically saying look for any groups with "openDCIM" in the name as that is how we named our groups in AD. You can change the end part to match how you have named your groups
>
> BIND DN: This is which account are you going to use to do the AD search in our case all users are able to perform and AD search so we use
> %userid%@example.com this will depend on the permissions you give your users in AD
>
> User Search: This is the user that we are actually looking up in AD to find which DCIM groups they are a member of we use
> (|(sAMAccountName=%userid%)) and that should work for all Microsoft AD
>
>
> So then you have the Group Distinguished names.So you need to create a bunch of groups in AD and put the users in them this will then grant them the various permissions
> I wont go into what each group does as that has been covered before
>
> what is important is that the group names have something similar in them that you can search in the above base Search as per the example with call all our groups openDCIM_<the group name in DCIM> that way we can do our above base search of openDCIM* and return only the openDCIM groups.
>
> you also need to define the full path to the group in AD
>
> In our case
> CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com
>
> so this is basically saying our folder structure is
>
> Example.com
> Top-Level
> Security Groups
> openDCIM_ReadAccess
>
>
> Obviously change this to suit your AD environment you can easily find this info using the ADSI console on your AD server
>
> Hope this help
>
> IF you have any more questions let me know
>
> Regards
>
> Robert
>
>
>
>
>
>
>
>
>
>
>
> On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com> wrote:
> Cool. I won’t send my page in then. I’ll let you walk people through it as it’s more supportable than a custom page :)
>
> Nick Noot-Davies
> Sent from my iPhone
>
> On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com> wrote:
>
>>
>> LDAP works with out making any changes to the page it can be one from the ldap settings page
>>
>> I'll try to walk you through it when I get to work
>>
>> On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com> wrote:
>>
>>> Thank you, I'll wait for your response.
>>>
>>> Paul Collado
>>>
>>>
>>>
>>> From: Discussion <discussion-***@list.opendcim.org> on behalf of nick noot-davies <***@gmail.com>
>>> Sent: Wednesday, March 21, 2018 1:46 PM
>>> To: ***@list.opendcim.org
>>> Subject: Re: [Discussion] openDCIM-18.01 Officially Released
>>>
>>> I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.
>>>
>>> Ill sanitize the code ive added and comment it and then email it
>>>
>>> On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org> wrote:
>>> Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.
>>>
>>> Scott
>>>
>>> On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com> wrote:
>>> Thank you very much Scott,
>>>
>>> We appreciate your efforts and dedication to making this platform as useful and robust as it is.
>>>
>>> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>>>
>>> Thanks,
>>>
>>> Paul Collado
>>>
>>>
>>>
>>> From: Discussion <discussion-***@list.opendcim.org> on behalf of Scott Milliken <***@themillikens.com>
>>> Sent: Wednesday, March 21, 2018 12:57 PM
>>> To: ***@list.opendcim.org
>>> Subject: [Discussion] openDCIM-18.01 Officially Released
>>>
>>> All,
>>> We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
>>> If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
>>> The demo site has been upgraded.
>>>
>>> https://www.opendcim.org/downloads.html
>>> openDCIM Downloads
>>> www.opendcim.org
>>> The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.
>>>
>>>
>>> Changes in 18.01
>>>
>>> Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
>>> Added some error logging for LDAP authentication failures
>>> Added in more bulk import functions - Users and Departments
>>> Converted some more reports over to Excel as we move away from PDF reports
>>> Network map updated to differentiate between front and rear ports
>>> Updated DataTables to the latest compatible release
>>> HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
>>> Other bug fixes, as usual.
>>>
>>> Scott
>>>
>>>
>>> _______________________________________________
>>> Discussion mailing list
>>> ***@list.opendcim.org
>>> If you want to unsubscribe, click below:
>>> https://list.opendcim.org/mailman/listinfo/discussion
>>>
>>>
>>>
>>> _______________________________________________
>>> Discussion mailing list
>>> ***@list.opendcim.org
>>> If you want to unsubscribe, click below:
>>> https://list.opendcim.org/mailman/listinfo/discussion
>>>
>>>
>>> _______________________________________________
>>> Discussion mailing list
>>> ***@list.opendcim.org
>>> If you want to unsubscribe, click below:
>>> https://list.opendcim.org/mailman/listinfo/discussion
>> _______________________________________________
>> Discussion mailing list
>> ***@list.opendcim.org
>> If you want to unsubscribe, click below:
>> https://list.opendcim.org/mailman/listinfo/discussion
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
Jan Vomáčka
7 years ago
Permalink
Hi, I upgrade to 18.01 (from 4.5) and i see picture error in cabinet view
for each device, that has a picture. But, when I open that device, picture
is shown normally.

Thank you for help.

so 24. 3. 2018 v 3:37 odesílatel robert saunders <
***@gmail.com> napsal:

> Seems like it doesn't like your password or your account doesn't have
> enough permissions to do the bind
>
> Do you have another account you could test with
>
>
>
> On 24 Mar 2018, at 2:39 am, Paul Collado <***@hotmail.com> wrote:
>
> Hi,
>
>
> I got a little farther setting up LDAP authentication. Didn't have the
> ldap modules properly enabled. Now I'm getting authentication request and
> my error logs seem to be recognizing the login and credentials, but it
> seems I'm still having issues with the binding server. Here are some of
> the details, maybe you can please help me. I'm trying to get this working
> on a DEV environment with a new installation of ubuntu 16.04 and openDCIM
> 18.01:
>
>
> [Fri Mar 23 11:16:03.932451 2018] [:error] [pid 1664] [client
> 192.168.101.83:50832] PHP Warning: ldap_bind(): Unable to bind to
> server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on
> line 37, referer: https://192.168.101.76/login_ldap.php
> [Fri Mar 23 11:16:03.932519 2018] [:error] [pid 1664] [client
> 192.168.101.83:50832] Unable to bind to specified LDAP server with
> specified username/password. Username:"domain.com"\\colladop, referer:
> https://192.168.101.76/login_ldap.php
> [Fri Mar 23 11:16:12.819888 2018] [:error] [pid 1663] [client
> 192.168.101.83:50844] PHP Warning: ldap_bind(): Unable to bind to
> server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on
> line 37, referer: https://192.168.101.76/login_ldap.php
> [Fri Mar 23 11:16:12.820101 2018] [:error] [pid 1663] [client
> 192.168.101.83:50844] Unable to bind to specified LDAP server with
> specified username/password. Username:colladop@"domain.com", referer:
> https://192.168.101.76/login_ldap.php
> [Fri Mar 23 11:16:24.329910 2018] [:error] [pid 1665] [client
> 192.168.101.83:50861] LDAP Authentication failed for username:colladop,
> referer: https://192.168.101.76/login_ldap.php
>
>
> Here is my line 37 on my login_ldap.php file:
> $ldapBind = ldap_bind( $ldapConn, $ldapDN, $ldapPassword );
>
> Here are my OpenDCIM LDAP Authentication settings:
>
> LDAP Server URI: ***@domain.com
> Base DN: dc=domain,dc=com
> Base Search: (&(objectClass=group)(CN=DCIM*))
> Bind DN: %userid%@domain.com
> User Search: (|(sAMAccountName=%userid%))
>
> Thanks,
>
> Paul Collado
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 7:13 PM
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> If you can jump on the IRC channel
> http://webchat.freenode.net/?channels=%23opendcim
> freenode Web IRC (qwebirc)
> <http://webchat.freenode.net/?channels=%23opendcim>
> webchat.freenode.net
> Javascript is required to use IRC.
>
>
> and I try to help
>
> On 22 March 2018 at 10:09, robert saunders <***@gmail.com>
> wrote:
>
> so when you log in paul
>
> does it show your username in the top right corner after you tried to log
> in
>
> On 22 March 2018 at 09:59, Paul Collado <***@hotmail.com> wrote:
>
> Yes, I added the groups to AD and put my AD account as members of the site
> admin and site access groups, but I'm not able to login with AD credentials
> to OpenDCIM.
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 6:52 PM
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> Have you added the relevant groups and added the relevant users into said
> groups in AD
>
> also when you do login with AD credentials does it show your username in
> the top right corner
>
> Regards
>
> Robert
>
> On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com> wrote:
>
> Thank you again,
>
>
> I'm able to get prompted for LDAP credentials, but still unable to
> authenticate using my AD account. Therefore, I will continue to play with
> the base search parameters and get back to you with results.
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 6:03 PM
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> Hey Paul
>
> Yes you will need to change a file in open DCIM you cant have both turned
> on at the same time but it is easy enough to change back and forth
>
> you change it under the db.inc.php
>
> you just un-comment the line define Authentication LDAP
>
> and comment out the line define Authentication Apache
>
> Regards
>
> Robert
>
>
> On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com> wrote:
>
> Thank you very much Robert,
>
>
> Is there anything I need to change in OpenDCIM to change from using Apache
> authentication to LDAP? if Yes, can I use both in order to have a backdoor
> in case AD fails for some reason?
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 5:12 PM
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> Ok So this is how I have it working with LDAP with no modifications
>
> *LDAP Server URI : *Pretty Self Explanatory this is the FQDN for your
> LDAP server / domain controller
>
> *BASE DN:* This is the very top level of you your DOMAIN e.g.
> ou=Top-Level,dc=example,dc=com
>
> *Base Search: *This was the tricky one to figure out this is to narrow
> down tour search to just the groups you want we use
> *(&(objectClass=group)(cn=openDCIM*))*
> so that is basically saying look for any groups with *"openDCIM"* in the
> name as that is how we named our groups in AD. You can change the end part
> to match how you have named your groups
>
> *BIND DN: * This is which account are you going to use to do the AD
> search in our case all users are able to perform and AD search so we use
>
> %userid%@example.com this will depend on the permissions you give your
> users in AD
>
>
> *User Search: *This is the user that we are actually looking up in AD to
> find which DCIM groups they are a member of we use
>
> (|(sAMAccountName=%userid%)) and that should work for all Microsoft AD
>
>
>
> So then you have the Group Distinguished names.So you need to create a
> bunch of groups in AD and put the users in them this will then grant them
> the various permissions
>
> I wont go into what each group does as that has been covered before
>
>
> what is important is that the group names have something similar in them
> that you can search in the above base Search as per the example with call
> all our groups openDCIM_<the group name in DCIM> that way we can do our
> above base search of openDCIM* and return only the openDCIM groups.
>
>
> you also need to define the full path to the group in AD
>
>
> In our case
>
> CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com
>
>
> so this is basically saying our folder structure is
>
>
> Example.com
>
> Top-Level
>
> Security Groups
> openDCIM_ReadAccess
>
>
>
> Obviously change this to suit your AD environment you can easily find this
> info using the ADSI console on your AD server
>
>
> Hope this help
>
>
> IF you have any more questions let me know
>
>
> Regards
>
>
> Robert
>
>
>
>
>
>
>
>
>
>
>
>
> On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com>
> wrote:
>
> Cool. I won’t send my page in then. I’ll let you walk people through it as
> it’s more supportable than a custom page :)
>
> Nick Noot-Davies
> Sent from my iPhone
>
> On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com>
> wrote:
>
>
> LDAP works with out making any changes to the page it can be one from the
> ldap settings page
>
> I'll try to walk you through it when I get to work
>
> On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com> wrote:
>
> Thank you, I'll wait for your response.
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> nick noot-davies <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 1:46 PM
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
> I have AD LDAP working, i made some changes to the page. I am happy to
> share this page. However i manage to struggle through with php so i cant
> guarantee its the best in the world, it works for us and hopefuly will for
> others.
>
> Ill sanitize the code ive added and comment it and then email it
>
> On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org>
> wrote:
>
> Yeah, you find someone to write it and it can happen. I wrote the
> existing LDAP login - and just barely. I have no AD infrastructure to
> test against, and have no AD knowledge.
>
> Scott
>
> On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com>
> wrote:
>
> Thank you very much Scott,
>
>
> We appreciate your efforts and dedication to making this platform as
> useful and robust as it is.
>
>
> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>
>
> Thanks,
>
>
> Paul Collado
>
>
> ------------------------------
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> Scott Milliken <***@themillikens.com>
> *Sent:* Wednesday, March 21, 2018 12:57 PM
> *To:* ***@list.opendcim.org
> *Subject:* [Discussion] openDCIM-18.01 Officially Released
>
> All,
> We've had a few weeks of testing, with a few bugs reported to us and
> fixed, but all in all it has been relatively quiet, even though we know of
> several already running the code in production. So, without further
> delay, I've pushed out release 18.01.
> If you have a medium to large sized installation, you should see
> enormous performance increases. As a benchmark, my installation of 8
> rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to
> fully render a cabinet view in version 4.5. It is now down to roughly 800
> ms. Smaller sites won't notice much difference, but the larger ones will
> see the dramatic increase. We've sped it up by caching several things -
> so I will warn you, it can take a considerable amount of time to do this
> upgrade. There is a gauge on the screen, though, so you will be able to
> see that it's running. Let it finish. If you happen to interrupt it,
> you can manually rebuild the image cache after exiting the upgrade mode -
> go into Template Management -> Device Image Management, and click on
> "Rebuild Image Cache".
> The demo site has been upgraded.
>
> https://www.opendcim.org/downloads.html
> openDCIM Downloads <https://www.opendcim.org/downloads.html>
> www.opendcim.org
> The openDCIM Foundation, Inc is a not-for profit corporation formed to
> manage the project and cover any expenses related to hosting and
> publicizing openDCIM.
>
>
> Changes in 18.01
>
> - Nomenclature for releases has changed to YY.nn, as this ends the
> debate over what warrants a major vs minor number change
> - Added some error logging for LDAP authentication failures
> - Added in more bulk import functions - Users and Departments
> - Converted some more reports over to Excel as we move away from PDF
> reports
> - Network map updated to differentiate between front and rear ports
> - Updated DataTables to the latest compatible release
> - HUGE performance improvements by caching device imaging and the
> navigation tree HTML, rather than building on the fly
> - Other bug fixes, as usual.
>
>
> Scott
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
Wilbur Longwisch
7 years ago
Permalink
I have a guess on how that happened, try this and see if your problem is corrected.

[cid:***@01D3C4C8.96126E90]

Click on template management in the navigation menu, then device image management. Click the button labeled “rebuild image cache”. Wait for the gauge to hit 100% then try the cabinet view again and let me know if that corrected your issue.

--pig

On 3/26/18, 6:02 AM, "Discussion on behalf of Jan Vomáčka" <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org> on behalf of ***@gmail.com<mailto:***@gmail.com>> wrote:

Hi, I upgrade to 18.01 (from 4.5) and i see picture error in cabinet view for each device, that has a picture. But, when I open that device, picture is shown normally.

Thank you for help.

so 24. 3. 2018 v 3:37 odesílatel robert saunders <***@gmail.com<mailto:***@gmail.com>> napsal:
Seems like it doesn't like your password or your account doesn't have enough permissions to do the bind

Do you have another account you could test with


On 24 Mar 2018, at 2:39 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Hi,



I got a little farther setting up LDAP authentication. Didn't have the ldap modules properly enabled. Now I'm getting authentication request and my error logs seem to be recognizing the login and credentials, but it seems I'm still having issues with the binding server. Here are some of the details, maybe you can please help me. I'm trying to get this working on a DEV environment with a new installation of ubuntu 16.04 and openDCIM 18.01:


[Fri Mar 23 11:16:03.932451 2018] [:error] [pid 1664] [client 192.168.101.83:50832<http://192.168.101.83:50832>] PHP Warning: ldap_bind(): Unable to bind to server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on line 37, referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:03.932519 2018] [:error] [pid 1664] [client 192.168.101.83:50832<http://192.168.101.83:50832>] Unable to bind to specified LDAP server with specified username/password. Username:"domain.com<http://domain.com>"\\colladop, referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:12.819888 2018] [:error] [pid 1663] [client 192.168.101.83:50844<http://192.168.101.83:50844>] PHP Warning: ldap_bind(): Unable to bind to server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on line 37, referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:12.820101 2018] [:error] [pid 1663] [client 192.168.101.83:50844<http://192.168.101.83:50844>] Unable to bind to specified LDAP server with specified username/password. Username:colladop@"domain.com<http://domain.com>", referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:24.329910 2018] [:error] [pid 1665] [client 192.168.101.83:50861<http://192.168.101.83:50861>] LDAP Authentication failed for username:colladop, referer: https://192.168.101.76/login_ldap.php


Here is my line 37 on my login_ldap.php file:
$ldapBind = ldap_bind( $ldapConn, $ldapDN, $ldapPassword );

Here are my OpenDCIM LDAP Authentication settings:

LDAP Server URI: ***@domain.com<mailto:***@domain.com>
Base DN: dc=domain,dc=com
Base Search: (&(objectClass=group)(CN=DCIM*))
Bind DN: %userid%@domain.com<http://domain.com>
User Search: (|(sAMAccountName=%userid%))

Thanks,

Paul Collado
________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 7:13 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

If you can jump on the IRC channel
http://webchat.freenode.net/?channels=%23opendcim
freenode Web IRC (qwebirc)<http://webchat.freenode.net/?channels=%23opendcim>
webchat.freenode.net<http://webchat.freenode.net>
Javascript is required to use IRC.



and I try to help

On 22 March 2018 at 10:09, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:
so when you log in paul

does it show your username in the top right corner after you tried to log in

On 22 March 2018 at 09:59, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Yes, I added the groups to AD and put my AD account as members of the site admin and site access groups, but I'm not able to login with AD credentials to OpenDCIM.



Thanks,



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:52 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Have you added the relevant groups and added the relevant users into said groups in AD

also when you do login with AD credentials does it show your username in the top right corner

Regards

Robert

On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you again,



I'm able to get prompted for LDAP credentials, but still unable to authenticate using my AD account. Therefore, I will continue to play with the base search parameters and get back to you with results.



Thanks,



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:03 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Hey Paul

Yes you will need to change a file in open DCIM you cant have both turned on at the same time but it is easy enough to change back and forth

you change it under the db.inc.php

you just un-comment the line define Authentication LDAP

and comment out the line define Authentication Apache

Regards

Robert


On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Robert,



Is there anything I need to change in OpenDCIM to change from using Apache authentication to LDAP? if Yes, can I use both in order to have a backdoor in case AD fails for some reason?



Thanks,



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 5:12 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Ok So this is how I have it working with LDAP with no modifications

LDAP Server URI : Pretty Self Explanatory this is the FQDN for your LDAP server / domain controller

BASE DN: This is the very top level of you your DOMAIN e.g. ou=Top-Level,dc=example,dc=com

Base Search: This was the tricky one to figure out this is to narrow down tour search to just the groups you want we use (&(objectClass=group)(cn=openDCIM*))
so that is basically saying look for any groups with "openDCIM" in the name as that is how we named our groups in AD. You can change the end part to match how you have named your groups

BIND DN: This is which account are you going to use to do the AD search in our case all users are able to perform and AD search so we use

%userid%@example.com<mailto:%25userid%***@example.com> this will depend on the permissions you give your users in AD



User Search: This is the user that we are actually looking up in AD to find which DCIM groups they are a member of we use

(|(sAMAccountName=%userid%)) and that should work for all Microsoft AD





So then you have the Group Distinguished names.So you need to create a bunch of groups in AD and put the users in them this will then grant them the various permissions

I wont go into what each group does as that has been covered before



what is important is that the group names have something similar in them that you can search in the above base Search as per the example with call all our groups openDCIM_<the group name in DCIM> that way we can do our above base search of openDCIM* and return only the openDCIM groups.



you also need to define the full path to the group in AD



In our case

CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com



so this is basically saying our folder structure is



Example.com<http://Example.com>

Top-Level

Security Groups
openDCIM_ReadAccess





Obviously change this to suit your AD environment you can easily find this info using the ADSI console on your AD server



Hope this help



IF you have any more questions let me know



Regards



Robert

















On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com<mailto:***@gmail.com>> wrote:
Cool. I won’t send my page in then. I’ll let you walk people through it as it’s more supportable than a custom page :)
Nick Noot-Davies
Sent from my iPhone

On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:

LDAP works with out making any changes to the page it can be one from the ldap settings page

I'll try to walk you through it when I get to work

On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you, I'll wait for your response.



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of nick noot-davies <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 1:46 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.

Ill sanitize the code ive added and comment it and then email it

On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org<mailto:***@opendcim.org>> wrote:
Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.

Scott

On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Scott,



We appreciate your efforts and dedication to making this platform as useful and robust as it is.



Do you have any updates on this new upgrade to LDAP integration to MS AD?



Thanks,



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of Scott Milliken <***@themillikens.com<mailto:***@themillikens.com>>
Sent: Wednesday, March 21, 2018 12:57 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: [Discussion] openDCIM-18.01 Officially Released

All,
We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html
openDCIM Downloads<https://www.opendcim.org/downloads.html>
www.opendcim.org<http://www.opendcim.org>
The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.



Changes in 18.01
· Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
· Added some error logging for LDAP authentication failures
· Added in more bulk import functions - Users and Departments
· Converted some more reports over to Excel as we move away from PDF reports
· Network map updated to differentiate between front and rear ports
· Updated DataTables to the latest compatible release
· HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
· Other bug fixes, as usual.

Scott


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion

_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion

_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
Jan Vomáčka
7 years ago
Permalink
:) .. like a magic ... it works ... thank you very much :)


po 26. 3. 2018 v 13:06 odesílatel Wilbur Longwisch <***@wilpig.org>
napsal:

> I have a guess on how that happened, try this and see if your problem is
> corrected.
>
>
>
>
>
> Click on template management in the navigation menu, then device image
> management. Click the button labeled “rebuild image cache”. Wait for the
> gauge to hit 100% then try the cabinet view again and let me know if that
> corrected your issue.
>
>
>
> --pig
>
>
>
> On 3/26/18, 6:02 AM, "Discussion on behalf of Jan Vomáčka" <
> discussion-***@list.opendcim.org on behalf of ***@gmail.com>
> wrote:
>
>
>
> Hi, I upgrade to 18.01 (from 4.5) and i see picture error in cabinet view
> for each device, that has a picture. But, when I open that device, picture
> is shown normally.
>
>
>
> Thank you for help.
>
>
>
> so 24. 3. 2018 v 3:37 odesílatel robert saunders <
> ***@gmail.com> napsal:
>
> Seems like it doesn't like your password or your account doesn't have
> enough permissions to do the bind
>
>
>
> Do you have another account you could test with
>
>
> On 24 Mar 2018, at 2:39 am, Paul Collado <***@hotmail.com> wrote:
>
> Hi,
>
>
>
> I got a little farther setting up LDAP authentication. Didn't have the
> ldap modules properly enabled. Now I'm getting authentication request and
> my error logs seem to be recognizing the login and credentials, but it
> seems I'm still having issues with the binding server. Here are some of
> the details, maybe you can please help me. I'm trying to get this working
> on a DEV environment with a new installation of ubuntu 16.04 and openDCIM
> 18.01:
>
>
>
> [Fri Mar 23 11:16:03.932451 2018] [:error] [pid 1664] [client
> 192.168.101.83:50832] PHP Warning: ldap_bind(): Unable to bind to
> server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on
> line 37, referer: https://192.168.101.76/login_ldap.php
>
> [Fri Mar 23 11:16:03.932519 2018] [:error] [pid 1664] [client
> 192.168.101.83:50832] Unable to bind to specified LDAP server with
> specified username/password. Username:"domain.com"\\colladop, referer:
> https://192.168.101.76/login_ldap.php
>
> [Fri Mar 23 11:16:12.819888 2018] [:error] [pid 1663] [client
> 192.168.101.83:50844] PHP Warning: ldap_bind(): Unable to bind to
> server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on
> line 37, referer: https://192.168.101.76/login_ldap.php
>
> [Fri Mar 23 11:16:12.820101 2018] [:error] [pid 1663] [client
> 192.168.101.83:50844] Unable to bind to specified LDAP server with
> specified username/password. Username:colladop@"domain.com", referer:
> https://192.168.101.76/login_ldap.php
>
> [Fri Mar 23 11:16:24.329910 2018] [:error] [pid 1665] [client
> 192.168.101.83:50861] LDAP Authentication failed for username:colladop,
> referer: https://192.168.101.76/login_ldap.php
>
>
>
>
>
> Here is my line 37 on my login_ldap.php file:
>
> $ldapBind = ldap_bind( $ldapConn, $ldapDN, $ldapPassword );
>
>
>
> Here are my OpenDCIM LDAP Authentication settings:
>
>
>
> LDAP Server URI: ***@domain.com
>
> Base DN: dc=domain,dc=com
>
> Base Search: (&(objectClass=group)(CN=DCIM*))
>
> Bind DN: %userid%@domain.com
>
> User Search: (|(sAMAccountName=%userid%))
>
>
>
> Thanks,
>
>
>
> Paul Collado
> ------------------------------
>
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 7:13 PM
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
>
>
> If you can jump on the IRC channel
>
> http://webchat.freenode.net/?channels=%23opendcim
>
> freenode Web IRC (qwebirc)
> <http://webchat.freenode.net/?channels=%23opendcim>
>
> webchat.freenode.net
>
> Javascript is required to use IRC.
>
>
>
>
>
> and I try to help
>
>
>
> On 22 March 2018 at 10:09, robert saunders <***@gmail.com>
> wrote:
>
> so when you log in paul
>
>
>
> does it show your username in the top right corner after you tried to log
> in
>
>
>
> On 22 March 2018 at 09:59, Paul Collado <***@hotmail.com> wrote:
>
> Yes, I added the groups to AD and put my AD account as members of the site
> admin and site access groups, but I'm not able to login with AD credentials
> to OpenDCIM.
>
>
>
> Thanks,
>
>
>
> Paul Collado
>
>
> ------------------------------
>
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 6:52 PM
>
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
>
>
> Have you added the relevant groups and added the relevant users into said
> groups in AD
>
>
>
> also when you do login with AD credentials does it show your username in
> the top right corner
>
>
>
> Regards
>
>
>
> Robert
>
>
>
> On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com> wrote:
>
> Thank you again,
>
>
>
> I'm able to get prompted for LDAP credentials, but still unable to
> authenticate using my AD account. Therefore, I will continue to play with
> the base search parameters and get back to you with results.
>
>
>
> Thanks,
>
>
>
> Paul Collado
>
>
> ------------------------------
>
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 6:03 PM
>
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
>
>
> Hey Paul
>
>
>
> Yes you will need to change a file in open DCIM you cant have both turned
> on at the same time but it is easy enough to change back and forth
>
>
>
> you change it under the db.inc.php
>
>
>
> you just un-comment the line define Authentication LDAP
>
> and comment out the line define Authentication Apache
>
>
>
> Regards
>
>
>
> Robert
>
>
>
>
>
> On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com> wrote:
>
> Thank you very much Robert,
>
>
>
> Is there anything I need to change in OpenDCIM to change from using Apache
> authentication to LDAP? if Yes, can I use both in order to have a backdoor
> in case AD fails for some reason?
>
>
>
> Thanks,
>
>
>
> Paul Collado
>
>
> ------------------------------
>
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 5:12 PM
>
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
>
>
> Ok So this is how I have it working with LDAP with no modifications
>
>
>
> *LDAP Server URI : *Pretty Self Explanatory this is the FQDN for your
> LDAP server / domain controller
>
>
>
> *BASE DN:* This is the very top level of you your DOMAIN e.g.
> ou=Top-Level,dc=example,dc=com
>
>
>
> *Base Search: *This was the tricky one to figure out this is to narrow
> down tour search to just the groups you want we use
> *(&(objectClass=group)(cn=openDCIM*))*
>
> so that is basically saying look for any groups with *"openDCIM"* in the
> name as that is how we named our groups in AD. You can change the end part
> to match how you have named your groups
>
>
>
> *BIND DN: * This is which account are you going to use to do the AD
> search in our case all users are able to perform and AD search so we use
>
> %userid%@example.com this will depend on the permissions you give your
> users in AD
>
>
>
> *User Search: *This is the user that we are actually looking up in AD to
> find which DCIM groups they are a member of we use
>
> (|(sAMAccountName=%userid%)) and that should work for all Microsoft AD
>
>
>
>
>
> So then you have the Group Distinguished names.So you need to create a
> bunch of groups in AD and put the users in them this will then grant them
> the various permissions
>
> I wont go into what each group does as that has been covered before
>
>
>
> what is important is that the group names have something similar in them
> that you can search in the above base Search as per the example with call
> all our groups openDCIM_<the group name in DCIM> that way we can do our
> above base search of openDCIM* and return only the openDCIM groups.
>
>
>
> you also need to define the full path to the group in AD
>
>
>
> In our case
>
> CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com
>
>
>
> so this is basically saying our folder structure is
>
>
>
> Example.com
>
> Top-Level
>
> Security Groups
> openDCIM_ReadAccess
>
>
>
>
>
> Obviously change this to suit your AD environment you can easily find this
> info using the ADSI console on your AD server
>
>
>
> Hope this help
>
>
>
> IF you have any more questions let me know
>
>
>
> Regards
>
>
>
> Robert
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
> On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com>
> wrote:
>
> Cool. I won’t send my page in then. I’ll let you walk people through it as
> it’s more supportable than a custom page :)
>
> Nick Noot-Davies
>
> Sent from my iPhone
>
>
> On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com>
> wrote:
>
>
> LDAP works with out making any changes to the page it can be one from the
> ldap settings page
>
>
>
> I'll try to walk you through it when I get to work
>
>
> On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com> wrote:
>
> Thank you, I'll wait for your response.
>
>
>
> Paul Collado
>
>
> ------------------------------
>
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> nick noot-davies <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 1:46 PM
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
>
>
> I have AD LDAP working, i made some changes to the page. I am happy to
> share this page. However i manage to struggle through with php so i cant
> guarantee its the best in the world, it works for us and hopefuly will for
> others.
>
>
>
> Ill sanitize the code ive added and comment it and then email it
>
>
>
> On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org>
> wrote:
>
> Yeah, you find someone to write it and it can happen. I wrote the
> existing LDAP login - and just barely. I have no AD infrastructure to
> test against, and have no AD knowledge.
>
>
>
> Scott
>
>
>
> On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com>
> wrote:
>
> Thank you very much Scott,
>
>
>
> We appreciate your efforts and dedication to making this platform as
> useful and robust as it is.
>
>
>
> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>
>
>
> Thanks,
>
>
>
> Paul Collado
>
>
> ------------------------------
>
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> Scott Milliken <***@themillikens.com>
> *Sent:* Wednesday, March 21, 2018 12:57 PM
> *To:* ***@list.opendcim.org
> *Subject:* [Discussion] openDCIM-18.01 Officially Released
>
>
>
> All,
>
> We've had a few weeks of testing, with a few bugs reported to us and
> fixed, but all in all it has been relatively quiet, even though we know of
> several already running the code in production. So, without further
> delay, I've pushed out release 18.01.
>
> If you have a medium to large sized installation, you should see
> enormous performance increases. As a benchmark, my installation of 8
> rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to
> fully render a cabinet view in version 4.5. It is now down to roughly 800
> ms. Smaller sites won't notice much difference, but the larger ones will
> see the dramatic increase. We've sped it up by caching several things -
> so I will warn you, it can take a considerable amount of time to do this
> upgrade. There is a gauge on the screen, though, so you will be able to
> see that it's running. Let it finish. If you happen to interrupt it,
> you can manually rebuild the image cache after exiting the upgrade mode -
> go into Template Management -> Device Image Management, and click on
> "Rebuild Image Cache".
>
> The demo site has been upgraded.
>
>
>
> https://www.opendcim.org/downloads.html
>
> openDCIM Downloads <https://www.opendcim.org/downloads.html>
>
> www.opendcim.org
>
> The openDCIM Foundation, Inc is a not-for profit corporation formed to
> manage the project and cover any expenses related to hosting and
> publicizing openDCIM.
>
>
>
>
> Changes in 18.01
>
> · Nomenclature for releases has changed to YY.nn, as this ends
> the debate over what warrants a major vs minor number change
>
> · Added some error logging for LDAP authentication failures
>
> · Added in more bulk import functions - Users and Departments
>
> · Converted some more reports over to Excel as we move away from
> PDF reports
>
> · Network map updated to differentiate between front and rear
> ports
>
> · Updated DataTables to the latest compatible release
>
> · HUGE performance improvements by caching device imaging and the
> navigation tree HTML, rather than building on the fly
>
> · Other bug fixes, as usual.
>
>
>
> Scott
>
>
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
>
>
Wilbur Longwisch
7 years ago
Permalink
When you ran the upgrade I am guessing that you didn’t have your images in place so when the cache building function ran it registered error for all of the images. After words you had copied the images over so they showed up correctly when they were directly accessed but the cabinet view uses the cache now so you were seeing error.

--pig

On 3/26/18, 6:11 AM, "Discussion on behalf of Jan Vomáčka" <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org> on behalf of ***@gmail.com<mailto:***@gmail.com>> wrote:

:) .. like a magic ... it works ... thank you very much :)


po 26. 3. 2018 v 13:06 odesílatel Wilbur Longwisch <***@wilpig.org<mailto:***@wilpig.org>> napsal:
I have a guess on how that happened, try this and see if your problem is corrected.

[cid:***@01D3C4C8.96126E90]

Click on template management in the navigation menu, then device image management. Click the button labeled “rebuild image cache”. Wait for the gauge to hit 100% then try the cabinet view again and let me know if that corrected your issue.

--pig

On 3/26/18, 6:02 AM, "Discussion on behalf of Jan Vomáčka" <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org> on behalf of ***@gmail.com<mailto:***@gmail.com>> wrote:

Hi, I upgrade to 18.01 (from 4.5) and i see picture error in cabinet view for each device, that has a picture. But, when I open that device, picture is shown normally.

Thank you for help.

so 24. 3. 2018 v 3:37 odesílatel robert saunders <***@gmail.com<mailto:***@gmail.com>> napsal:
Seems like it doesn't like your password or your account doesn't have enough permissions to do the bind

Do you have another account you could test with

On 24 Mar 2018, at 2:39 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Hi,



I got a little farther setting up LDAP authentication. Didn't have the ldap modules properly enabled. Now I'm getting authentication request and my error logs seem to be recognizing the login and credentials, but it seems I'm still having issues with the binding server. Here are some of the details, maybe you can please help me. I'm trying to get this working on a DEV environment with a new installation of ubuntu 16.04 and openDCIM 18.01:


[Fri Mar 23 11:16:03.932451 2018] [:error] [pid 1664] [client 192.168.101.83:50832<http://192.168.101.83:50832>] PHP Warning: ldap_bind(): Unable to bind to server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on line 37, referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:03.932519 2018] [:error] [pid 1664] [client 192.168.101.83:50832<http://192.168.101.83:50832>] Unable to bind to specified LDAP server with specified username/password. Username:"domain.com<http://domain.com>"\\colladop, referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:12.819888 2018] [:error] [pid 1663] [client 192.168.101.83:50844<http://192.168.101.83:50844>] PHP Warning: ldap_bind(): Unable to bind to server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on line 37, referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:12.820101 2018] [:error] [pid 1663] [client 192.168.101.83:50844<http://192.168.101.83:50844>] Unable to bind to specified LDAP server with specified username/password. Username:colladop@"domain.com<http://domain.com>", referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:24.329910 2018] [:error] [pid 1665] [client 192.168.101.83:50861<http://192.168.101.83:50861>] LDAP Authentication failed for username:colladop, referer: https://192.168.101.76/login_ldap.php


Here is my line 37 on my login_ldap.php file:
$ldapBind = ldap_bind( $ldapConn, $ldapDN, $ldapPassword );

Here are my OpenDCIM LDAP Authentication settings:

LDAP Server URI: ***@domain.com<mailto:***@domain.com>
Base DN: dc=domain,dc=com
Base Search: (&(objectClass=group)(CN=DCIM*))
Bind DN: %userid%@domain.com<http://domain.com>
User Search: (|(sAMAccountName=%userid%))

Thanks,

Paul Collado
________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 7:13 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

If you can jump on the IRC channel
http://webchat.freenode.net/?channels=%23opendcim
freenode Web IRC (qwebirc)<http://webchat.freenode.net/?channels=%23opendcim>
webchat.freenode.net<http://webchat.freenode.net>
Javascript is required to use IRC.



and I try to help

On 22 March 2018 at 10:09, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:
so when you log in paul

does it show your username in the top right corner after you tried to log in

On 22 March 2018 at 09:59, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Yes, I added the groups to AD and put my AD account as members of the site admin and site access groups, but I'm not able to login with AD credentials to OpenDCIM.



Thanks,



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:52 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Have you added the relevant groups and added the relevant users into said groups in AD

also when you do login with AD credentials does it show your username in the top right corner

Regards

Robert

On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you again,



I'm able to get prompted for LDAP credentials, but still unable to authenticate using my AD account. Therefore, I will continue to play with the base search parameters and get back to you with results.



Thanks,



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:03 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Hey Paul

Yes you will need to change a file in open DCIM you cant have both turned on at the same time but it is easy enough to change back and forth

you change it under the db.inc.php

you just un-comment the line define Authentication LDAP

and comment out the line define Authentication Apache

Regards

Robert


On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Robert,



Is there anything I need to change in OpenDCIM to change from using Apache authentication to LDAP? if Yes, can I use both in order to have a backdoor in case AD fails for some reason?



Thanks,



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 5:12 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Ok So this is how I have it working with LDAP with no modifications

LDAP Server URI : Pretty Self Explanatory this is the FQDN for your LDAP server / domain controller

BASE DN: This is the very top level of you your DOMAIN e.g. ou=Top-Level,dc=example,dc=com

Base Search: This was the tricky one to figure out this is to narrow down tour search to just the groups you want we use (&(objectClass=group)(cn=openDCIM*))
so that is basically saying look for any groups with "openDCIM" in the name as that is how we named our groups in AD. You can change the end part to match how you have named your groups

BIND DN: This is which account are you going to use to do the AD search in our case all users are able to perform and AD search so we use

%userid%@example.com<mailto:%25userid%***@example.com> this will depend on the permissions you give your users in AD



User Search: This is the user that we are actually looking up in AD to find which DCIM groups they are a member of we use

(|(sAMAccountName=%userid%)) and that should work for all Microsoft AD





So then you have the Group Distinguished names.So you need to create a bunch of groups in AD and put the users in them this will then grant them the various permissions

I wont go into what each group does as that has been covered before



what is important is that the group names have something similar in them that you can search in the above base Search as per the example with call all our groups openDCIM_<the group name in DCIM> that way we can do our above base search of openDCIM* and return only the openDCIM groups.



you also need to define the full path to the group in AD



In our case

CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com



so this is basically saying our folder structure is



Example.com<http://Example.com>

Top-Level

Security Groups
openDCIM_ReadAccess





Obviously change this to suit your AD environment you can easily find this info using the ADSI console on your AD server



Hope this help



IF you have any more questions let me know



Regards



Robert

















On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com<mailto:***@gmail.com>> wrote:
Cool. I won’t send my page in then. I’ll let you walk people through it as it’s more supportable than a custom page :)
Nick Noot-Davies
Sent from my iPhone

On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:

LDAP works with out making any changes to the page it can be one from the ldap settings page

I'll try to walk you through it when I get to work

On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you, I'll wait for your response.



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of nick noot-davies <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 1:46 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.

Ill sanitize the code ive added and comment it and then email it

On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org<mailto:***@opendcim.org>> wrote:
Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.

Scott

On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Scott,



We appreciate your efforts and dedication to making this platform as useful and robust as it is.



Do you have any updates on this new upgrade to LDAP integration to MS AD?



Thanks,



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of Scott Milliken <***@themillikens.com<mailto:***@themillikens.com>>
Sent: Wednesday, March 21, 2018 12:57 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: [Discussion] openDCIM-18.01 Officially Released

All,
We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html
openDCIM Downloads<https://www.opendcim.org/downloads.html>
www.opendcim.org<http://www.opendcim.org>
The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.



Changes in 18.01
• Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
• Added some error logging for LDAP authentication failures
• Added in more bulk import functions - Users and Departments
• Converted some more reports over to Excel as we move away from PDF reports
• Network map updated to differentiate between front and rear ports
• Updated DataTables to the latest compatible release
• HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
• Other bug fixes, as usual.

Scott


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion

_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion

_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
Jan Vomáčka
7 years ago
Permalink
that's right ... i copied images from prev. version manualy after update...


po 26. 3. 2018 v 13:13 odesílatel Wilbur Longwisch <***@wilpig.org>
napsal:

> When you ran the upgrade I am guessing that you didn’t have your images in
> place so when the cache building function ran it registered error for all
> of the images. After words you had copied the images over so they showed
> up correctly when they were directly accessed but the cabinet view uses the
> cache now so you were seeing error.
>
>
>
> --pig
>
>
>
> On 3/26/18, 6:11 AM, "Discussion on behalf of Jan Vomáčka" <
> discussion-***@list.opendcim.org on behalf of ***@gmail.com>
> wrote:
>
>
>
> :) .. like a magic ... it works ... thank you very much :)
>
>
>
>
>
> po 26. 3. 2018 v 13:06 odesílatel Wilbur Longwisch <***@wilpig.org>
> napsal:
>
> I have a guess on how that happened, try this and see if your problem is
> corrected.
>
>
>
> [image: cid:***@01D3C4C8.96126E90]
>
>
>
> Click on template management in the navigation menu, then device image
> management. Click the button labeled “rebuild image cache”. Wait for the
> gauge to hit 100% then try the cabinet view again and let me know if that
> corrected your issue.
>
>
>
> --pig
>
>
>
> On 3/26/18, 6:02 AM, "Discussion on behalf of Jan Vomáčka" <
> discussion-***@list.opendcim.org on behalf of ***@gmail.com>
> wrote:
>
>
>
> Hi, I upgrade to 18.01 (from 4.5) and i see picture error in cabinet view
> for each device, that has a picture. But, when I open that device, picture
> is shown normally.
>
>
>
> Thank you for help.
>
>
>
> so 24. 3. 2018 v 3:37 odesílatel robert saunders <
> ***@gmail.com> napsal:
>
> Seems like it doesn't like your password or your account doesn't have
> enough permissions to do the bind
>
>
>
> Do you have another account you could test with
>
>
> On 24 Mar 2018, at 2:39 am, Paul Collado <***@hotmail.com> wrote:
>
> Hi,
>
>
>
> I got a little farther setting up LDAP authentication. Didn't have the
> ldap modules properly enabled. Now I'm getting authentication request and
> my error logs seem to be recognizing the login and credentials, but it
> seems I'm still having issues with the binding server. Here are some of
> the details, maybe you can please help me. I'm trying to get this working
> on a DEV environment with a new installation of ubuntu 16.04 and openDCIM
> 18.01:
>
>
>
> [Fri Mar 23 11:16:03.932451 2018] [:error] [pid 1664] [client
> 192.168.101.83:50832] PHP Warning: ldap_bind(): Unable to bind to
> server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on
> line 37, referer: https://192.168.101.76/login_ldap.php
>
> [Fri Mar 23 11:16:03.932519 2018] [:error] [pid 1664] [client
> 192.168.101.83:50832] Unable to bind to specified LDAP server with
> specified username/password. Username:"domain.com"\\colladop, referer:
> https://192.168.101.76/login_ldap.php
>
> [Fri Mar 23 11:16:12.819888 2018] [:error] [pid 1663] [client
> 192.168.101.83:50844] PHP Warning: ldap_bind(): Unable to bind to
> server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on
> line 37, referer: https://192.168.101.76/login_ldap.php
>
> [Fri Mar 23 11:16:12.820101 2018] [:error] [pid 1663] [client
> 192.168.101.83:50844] Unable to bind to specified LDAP server with
> specified username/password. Username:colladop@"domain.com", referer:
> https://192.168.101.76/login_ldap.php
>
> [Fri Mar 23 11:16:24.329910 2018] [:error] [pid 1665] [client
> 192.168.101.83:50861] LDAP Authentication failed for username:colladop,
> referer: https://192.168.101.76/login_ldap.php
>
>
>
>
>
> Here is my line 37 on my login_ldap.php file:
>
> $ldapBind = ldap_bind( $ldapConn, $ldapDN, $ldapPassword );
>
>
>
> Here are my OpenDCIM LDAP Authentication settings:
>
>
>
> LDAP Server URI: ***@domain.com
>
> Base DN: dc=domain,dc=com
>
> Base Search: (&(objectClass=group)(CN=DCIM*))
>
> Bind DN: %userid%@domain.com
>
> User Search: (|(sAMAccountName=%userid%))
>
>
>
> Thanks,
>
>
>
> Paul Collado
> ------------------------------
>
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 7:13 PM
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
>
>
> If you can jump on the IRC channel
>
> http://webchat.freenode.net/?channels=%23opendcim
>
> freenode Web IRC (qwebirc)
> <http://webchat.freenode.net/?channels=%23opendcim>
>
> webchat.freenode.net
>
> Javascript is required to use IRC.
>
>
>
>
>
> and I try to help
>
>
>
> On 22 March 2018 at 10:09, robert saunders <***@gmail.com>
> wrote:
>
> so when you log in paul
>
>
>
> does it show your username in the top right corner after you tried to log
> in
>
>
>
> On 22 March 2018 at 09:59, Paul Collado <***@hotmail.com> wrote:
>
> Yes, I added the groups to AD and put my AD account as members of the site
> admin and site access groups, but I'm not able to login with AD credentials
> to OpenDCIM.
>
>
>
> Thanks,
>
>
>
> Paul Collado
>
>
> ------------------------------
>
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 6:52 PM
>
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
>
>
> Have you added the relevant groups and added the relevant users into said
> groups in AD
>
>
>
> also when you do login with AD credentials does it show your username in
> the top right corner
>
>
>
> Regards
>
>
>
> Robert
>
>
>
> On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com> wrote:
>
> Thank you again,
>
>
>
> I'm able to get prompted for LDAP credentials, but still unable to
> authenticate using my AD account. Therefore, I will continue to play with
> the base search parameters and get back to you with results.
>
>
>
> Thanks,
>
>
>
> Paul Collado
>
>
> ------------------------------
>
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 6:03 PM
>
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
>
>
> Hey Paul
>
>
>
> Yes you will need to change a file in open DCIM you cant have both turned
> on at the same time but it is easy enough to change back and forth
>
>
>
> you change it under the db.inc.php
>
>
>
> you just un-comment the line define Authentication LDAP
>
> and comment out the line define Authentication Apache
>
>
>
> Regards
>
>
>
> Robert
>
>
>
>
>
> On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com> wrote:
>
> Thank you very much Robert,
>
>
>
> Is there anything I need to change in OpenDCIM to change from using Apache
> authentication to LDAP? if Yes, can I use both in order to have a backdoor
> in case AD fails for some reason?
>
>
>
> Thanks,
>
>
>
> Paul Collado
>
>
> ------------------------------
>
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> robert saunders <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 5:12 PM
>
>
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
>
>
> Ok So this is how I have it working with LDAP with no modifications
>
>
>
> *LDAP Server URI : *Pretty Self Explanatory this is the FQDN for your
> LDAP server / domain controller
>
>
>
> *BASE DN:* This is the very top level of you your DOMAIN e.g.
> ou=Top-Level,dc=example,dc=com
>
>
>
> *Base Search: *This was the tricky one to figure out this is to narrow
> down tour search to just the groups you want we use
> *(&(objectClass=group)(cn=openDCIM*))*
>
> so that is basically saying look for any groups with *"openDCIM"* in the
> name as that is how we named our groups in AD. You can change the end part
> to match how you have named your groups
>
>
>
> *BIND DN: * This is which account are you going to use to do the AD
> search in our case all users are able to perform and AD search so we use
>
> %userid%@example.com this will depend on the permissions you give your
> users in AD
>
>
>
> *User Search: *This is the user that we are actually looking up in AD to
> find which DCIM groups they are a member of we use
>
> (|(sAMAccountName=%userid%)) and that should work for all Microsoft AD
>
>
>
>
>
> So then you have the Group Distinguished names.So you need to create a
> bunch of groups in AD and put the users in them this will then grant them
> the various permissions
>
> I wont go into what each group does as that has been covered before
>
>
>
> what is important is that the group names have something similar in them
> that you can search in the above base Search as per the example with call
> all our groups openDCIM_<the group name in DCIM> that way we can do our
> above base search of openDCIM* and return only the openDCIM groups.
>
>
>
> you also need to define the full path to the group in AD
>
>
>
> In our case
>
> CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com
>
>
>
> so this is basically saying our folder structure is
>
>
>
> Example.com
>
> Top-Level
>
> Security Groups
> openDCIM_ReadAccess
>
>
>
>
>
> Obviously change this to suit your AD environment you can easily find this
> info using the ADSI console on your AD server
>
>
>
> Hope this help
>
>
>
> IF you have any more questions let me know
>
>
>
> Regards
>
>
>
> Robert
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
>
> On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com>
> wrote:
>
> Cool. I won’t send my page in then. I’ll let you walk people through it as
> it’s more supportable than a custom page :)
>
> Nick Noot-Davies
>
> Sent from my iPhone
>
>
> On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com>
> wrote:
>
>
> LDAP works with out making any changes to the page it can be one from the
> ldap settings page
>
>
>
> I'll try to walk you through it when I get to work
>
>
> On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com> wrote:
>
> Thank you, I'll wait for your response.
>
>
>
> Paul Collado
>
>
> ------------------------------
>
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> nick noot-davies <***@gmail.com>
> *Sent:* Wednesday, March 21, 2018 1:46 PM
> *To:* ***@list.opendcim.org
> *Subject:* Re: [Discussion] openDCIM-18.01 Officially Released
>
>
>
> I have AD LDAP working, i made some changes to the page. I am happy to
> share this page. However i manage to struggle through with php so i cant
> guarantee its the best in the world, it works for us and hopefuly will for
> others.
>
>
>
> Ill sanitize the code ive added and comment it and then email it
>
>
>
> On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org>
> wrote:
>
> Yeah, you find someone to write it and it can happen. I wrote the
> existing LDAP login - and just barely. I have no AD infrastructure to
> test against, and have no AD knowledge.
>
>
>
> Scott
>
>
>
> On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com>
> wrote:
>
> Thank you very much Scott,
>
>
>
> We appreciate your efforts and dedication to making this platform as
> useful and robust as it is.
>
>
>
> Do you have any updates on this new upgrade to LDAP integration to MS AD?
>
>
>
> Thanks,
>
>
>
> Paul Collado
>
>
> ------------------------------
>
> *From:* Discussion <discussion-***@list.opendcim.org> on behalf of
> Scott Milliken <***@themillikens.com>
> *Sent:* Wednesday, March 21, 2018 12:57 PM
> *To:* ***@list.opendcim.org
> *Subject:* [Discussion] openDCIM-18.01 Officially Released
>
>
>
> All,
>
> We've had a few weeks of testing, with a few bugs reported to us and
> fixed, but all in all it has been relatively quiet, even though we know of
> several already running the code in production. So, without further
> delay, I've pushed out release 18.01.
>
> If you have a medium to large sized installation, you should see
> enormous performance increases. As a benchmark, my installation of 8
> rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to
> fully render a cabinet view in version 4.5. It is now down to roughly 800
> ms. Smaller sites won't notice much difference, but the larger ones will
> see the dramatic increase. We've sped it up by caching several things -
> so I will warn you, it can take a considerable amount of time to do this
> upgrade. There is a gauge on the screen, though, so you will be able to
> see that it's running. Let it finish. If you happen to interrupt it,
> you can manually rebuild the image cache after exiting the upgrade mode -
> go into Template Management -> Device Image Management, and click on
> "Rebuild Image Cache".
>
> The demo site has been upgraded.
>
>
>
> https://www.opendcim.org/downloads.html
>
> openDCIM Downloads <https://www.opendcim.org/downloads.html>
>
> www.opendcim.org
>
> The openDCIM Foundation, Inc is a not-for profit corporation formed to
> manage the project and cover any expenses related to hosting and
> publicizing openDCIM.
>
>
>
>
> Changes in 18.01
>
> · Nomenclature for releases has changed to YY.nn, as this ends
> the debate over what warrants a major vs minor number change
>
> · Added some error logging for LDAP authentication failures
>
> · Added in more bulk import functions - Users and Departments
>
> · Converted some more reports over to Excel as we move away from
> PDF reports
>
> · Network map updated to differentiate between front and rear
> ports
>
> · Updated DataTables to the latest compatible release
>
> · HUGE performance improvements by caching device imaging and the
> navigation tree HTML, rather than building on the fly
>
> · Other bug fixes, as usual.
>
>
>
> Scott
>
>
>
>
>
>
Paul Collado
7 years ago
Permalink
Hi Robert,


Yes, I tried with other accounts from AD and still not working.


Thanks,


Paul C.


________________________________
From: Discussion <discussion-***@list.opendcim.org> on behalf of robert saunders <***@gmail.com>
Sent: Friday, March 23, 2018 10:37 PM
To: ***@list.opendcim.org
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Seems like it doesn't like your password or your account doesn't have enough permissions to do the bind

Do you have another account you could test with



On 24 Mar 2018, at 2:39 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:


Hi,


I got a little farther setting up LDAP authentication. Didn't have the ldap modules properly enabled. Now I'm getting authentication request and my error logs seem to be recognizing the login and credentials, but it seems I'm still having issues with the binding server. Here are some of the details, maybe you can please help me. I'm trying to get this working on a DEV environment with a new installation of ubuntu 16.04 and openDCIM 18.01:


[Fri Mar 23 11:16:03.932451 2018] [:error] [pid 1664] [client 192.168.101.83:50832] PHP Warning: ldap_bind(): Unable to bind to server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on line 37, referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:03.932519 2018] [:error] [pid 1664] [client 192.168.101.83:50832] Unable to bind to specified LDAP server with specified username/password. Username:"domain.com<http://domain.com>"\\colladop, referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:12.819888 2018] [:error] [pid 1663] [client 192.168.101.83:50844] PHP Warning: ldap_bind(): Unable to bind to server: Invalid credentials in /var/www/openDCIM-18.01/login_ldap.php on line 37, referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:12.820101 2018] [:error] [pid 1663] [client 192.168.101.83:50844] Unable to bind to specified LDAP server with specified username/password. Username:colladop@"domain.com<http://domain.com>", referer: https://192.168.101.76/login_ldap.php
[Fri Mar 23 11:16:24.329910 2018] [:error] [pid 1665] [client 192.168.101.83:50861] LDAP Authentication failed for username:colladop, referer: https://192.168.101.76/login_ldap.php



Here is my line 37 on my login_ldap.php file:
$ldapBind = ldap_bind( $ldapConn, $ldapDN, $ldapPassword );

Here are my OpenDCIM LDAP Authentication settings:

LDAP Server URI: ***@domain.com<mailto:***@domain.com>
Base DN: dc=domain,dc=com
Base Search: (&(objectClass=group)(CN=DCIM*))
Bind DN: %userid%@domain.com<http://domain.com>
User Search: (|(sAMAccountName=%userid%))

Thanks,

Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 7:13 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

If you can jump on the IRC channel
http://webchat.freenode.net/?channels=%23opendcim
freenode Web IRC (qwebirc)<http://webchat.freenode.net/?channels=%23opendcim>
webchat.freenode.net<http://webchat.freenode.net>
Javascript is required to use IRC.



and I try to help

On 22 March 2018 at 10:09, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:
so when you log in paul

does it show your username in the top right corner after you tried to log in

On 22 March 2018 at 09:59, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Yes, I added the groups to AD and put my AD account as members of the site admin and site access groups, but I'm not able to login with AD credentials to OpenDCIM.


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:52 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Have you added the relevant groups and added the relevant users into said groups in AD

also when you do login with AD credentials does it show your username in the top right corner

Regards

Robert

On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you again,


I'm able to get prompted for LDAP credentials, but still unable to authenticate using my AD account. Therefore, I will continue to play with the base search parameters and get back to you with results.


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:03 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Hey Paul

Yes you will need to change a file in open DCIM you cant have both turned on at the same time but it is easy enough to change back and forth

you change it under the db.inc.php

you just un-comment the line define Authentication LDAP

and comment out the line define Authentication Apache

Regards

Robert


On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Robert,


Is there anything I need to change in OpenDCIM to change from using Apache authentication to LDAP? if Yes, can I use both in order to have a backdoor in case AD fails for some reason?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 5:12 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Ok So this is how I have it working with LDAP with no modifications

LDAP Server URI : Pretty Self Explanatory this is the FQDN for your LDAP server / domain controller

BASE DN: This is the very top level of you your DOMAIN e.g. ou=Top-Level,dc=example,dc=com

Base Search: This was the tricky one to figure out this is to narrow down tour search to just the groups you want we use (&(objectClass=group)(cn=openDCIM*))
so that is basically saying look for any groups with "openDCIM" in the name as that is how we named our groups in AD. You can change the end part to match how you have named your groups

BIND DN: This is which account are you going to use to do the AD search in our case all users are able to perform and AD search so we use

%userid%@example.com<mailto:%25userid%***@example.com> this will depend on the permissions you give your users in AD


User Search: This is the user that we are actually looking up in AD to find which DCIM groups they are a member of we use

(|(sAMAccountName=%userid%)) and that should work for all Microsoft AD



So then you have the Group Distinguished names.So you need to create a bunch of groups in AD and put the users in them this will then grant them the various permissions

I wont go into what each group does as that has been covered before


what is important is that the group names have something similar in them that you can search in the above base Search as per the example with call all our groups openDCIM_<the group name in DCIM> that way we can do our above base search of openDCIM* and return only the openDCIM groups.


you also need to define the full path to the group in AD


In our case

CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com


so this is basically saying our folder structure is


Example.com<http://Example.com>

Top-Level

Security Groups
openDCIM_ReadAccess



Obviously change this to suit your AD environment you can easily find this info using the ADSI console on your AD server


Hope this help


IF you have any more questions let me know


Regards


Robert











On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com<mailto:***@gmail.com>> wrote:
Cool. I won’t send my page in then. I’ll let you walk people through it as it’s more supportable than a custom page :)

Nick Noot-Davies
Sent from my iPhone

On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:


LDAP works with out making any changes to the page it can be one from the ldap settings page

I'll try to walk you through it when I get to work

On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:


Thank you, I'll wait for your response.


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of nick noot-davies <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 1:46 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.

Ill sanitize the code ive added and comment it and then email it

On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org<mailto:***@opendcim.org>> wrote:
Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.

Scott

On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Scott,


We appreciate your efforts and dedication to making this platform as useful and robust as it is.


Do you have any updates on this new upgrade to LDAP integration to MS AD?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of Scott Milliken <***@themillikens.com<mailto:***@themillikens.com>>
Sent: Wednesday, March 21, 2018 12:57 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: [Discussion] openDCIM-18.01 Officially Released

All,
We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html
openDCIM Downloads<https://www.opendcim.org/downloads.html>
www.opendcim.org<http://www.opendcim.org>
The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.



Changes in 18.01

* Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
* Added some error logging for LDAP authentication failures
* Added in more bulk import functions - Users and Departments
* Converted some more reports over to Excel as we move away from PDF reports
* Network map updated to differentiate between front and rear ports
* Updated DataTables to the latest compatible release
* HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
* Other bug fixes, as usual.

Scott


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion



_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion

_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion



_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion



_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
Paul Collado
7 years ago
Permalink
Hi Robert,


No it doesn't. I see the URL switches to "https://dcimtool/login_ldap.php", and an "http error 500" page is displayed.


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org> on behalf of robert saunders <***@gmail.com>
Sent: Wednesday, March 21, 2018 7:09 PM
To: ***@list.opendcim.org
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

so when you log in paul

does it show your username in the top right corner after you tried to log in

On 22 March 2018 at 09:59, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Yes, I added the groups to AD and put my AD account as members of the site admin and site access groups, but I'm not able to login with AD credentials to OpenDCIM.


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:52 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Have you added the relevant groups and added the relevant users into said groups in AD

also when you do login with AD credentials does it show your username in the top right corner

Regards

Robert

On 22 March 2018 at 09:30, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you again,


I'm able to get prompted for LDAP credentials, but still unable to authenticate using my AD account. Therefore, I will continue to play with the base search parameters and get back to you with results.


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 6:03 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Hey Paul

Yes you will need to change a file in open DCIM you cant have both turned on at the same time but it is easy enough to change back and forth

you change it under the db.inc.php

you just un-comment the line define Authentication LDAP

and comment out the line define Authentication Apache

Regards

Robert


On 22 March 2018 at 08:45, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Robert,


Is there anything I need to change in OpenDCIM to change from using Apache authentication to LDAP? if Yes, can I use both in order to have a backdoor in case AD fails for some reason?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of robert saunders <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 5:12 PM

To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Ok So this is how I have it working with LDAP with no modifications

LDAP Server URI : Pretty Self Explanatory this is the FQDN for your LDAP server / domain controller

BASE DN: This is the very top level of you your DOMAIN e.g. ou=Top-Level,dc=example,dc=com

Base Search: This was the tricky one to figure out this is to narrow down tour search to just the groups you want we use (&(objectClass=group)(cn=openDCIM*))
so that is basically saying look for any groups with "openDCIM" in the name as that is how we named our groups in AD. You can change the end part to match how you have named your groups

BIND DN: This is which account are you going to use to do the AD search in our case all users are able to perform and AD search so we use

%userid%@example.com<mailto:%25userid%***@example.com> this will depend on the permissions you give your users in AD


User Search: This is the user that we are actually looking up in AD to find which DCIM groups they are a member of we use

(|(sAMAccountName=%userid%)) and that should work for all Microsoft AD



So then you have the Group Distinguished names.So you need to create a bunch of groups in AD and put the users in them this will then grant them the various permissions

I wont go into what each group does as that has been covered before


what is important is that the group names have something similar in them that you can search in the above base Search as per the example with call all our groups openDCIM_<the group name in DCIM> that way we can do our above base search of openDCIM* and return only the openDCIM groups.


you also need to define the full path to the group in AD


In our case

CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com


so this is basically saying our folder structure is


Example.com

Top-Level

Security Groups
openDCIM_ReadAccess



Obviously change this to suit your AD environment you can easily find this info using the ADSI console on your AD server


Hope this help


IF you have any more questions let me know


Regards


Robert











On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com<mailto:***@gmail.com>> wrote:
Cool. I won’t send my page in then. I’ll let you walk people through it as it’s more supportable than a custom page :)

Nick Noot-Davies
Sent from my iPhone

On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:


LDAP works with out making any changes to the page it can be one from the ldap settings page

I'll try to walk you through it when I get to work

On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:


Thank you, I'll wait for your response.


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of nick noot-davies <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 1:46 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.

Ill sanitize the code ive added and comment it and then email it

On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org<mailto:***@opendcim.org>> wrote:
Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.

Scott

On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Scott,


We appreciate your efforts and dedication to making this platform as useful and robust as it is.


Do you have any updates on this new upgrade to LDAP integration to MS AD?


Thanks,


Paul Collado


________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of Scott Milliken <***@themillikens.com<mailto:***@themillikens.com>>
Sent: Wednesday, March 21, 2018 12:57 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: [Discussion] openDCIM-18.01 Officially Released

All,
We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html
openDCIM Downloads<https://www.opendcim.org/downloads.html>
www.opendcim.org<http://www.opendcim.org>
The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.



Changes in 18.01

* Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
* Added some error logging for LDAP authentication failures
* Added in more bulk import functions - Users and Departments
* Converted some more reports over to Excel as we move away from PDF reports
* Network map updated to differentiate between front and rear ports
* Updated DataTables to the latest compatible release
* HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
* Other bug fixes, as usual.

Scott


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion



_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion

_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion



_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
Farrell, James
7 years ago
Permalink
I still use Apache LDAP modules for HTTP authentication. I believe you can configure Apache to use several authentication methods and so default to using LDAP but then fall through to local user authentication if needed.


From: Discussion <discussion-***@list.opendcim.org> on behalf of Paul Collado <***@hotmail.com>
Reply-To: "***@list.opendcim.org" <***@list.opendcim.org>
Date: Wednesday, March 21, 2018 at 5:45 PM
To: "***@list.opendcim.org" <***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released


Thank you very much Robert,



Is there anything I need to change in OpenDCIM to change from using Apache authentication to LDAP? if Yes, can I use both in order to have a backdoor in case AD fails for some reason?



Thanks,



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org> on behalf of robert saunders <***@gmail.com>
Sent: Wednesday, March 21, 2018 5:12 PM
To: ***@list.opendcim.org
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

Ok So this is how I have it working with LDAP with no modifications

LDAP Server URI : Pretty Self Explanatory this is the FQDN for your LDAP server / domain controller

BASE DN: This is the very top level of you your DOMAIN e.g. ou=Top-Level,dc=example,dc=com

Base Search: This was the tricky one to figure out this is to narrow down tour search to just the groups you want we use (&(objectClass=group)(cn=openDCIM*))
so that is basically saying look for any groups with "openDCIM" in the name as that is how we named our groups in AD. You can change the end part to match how you have named your groups

BIND DN: This is which account are you going to use to do the AD search in our case all users are able to perform and AD search so we use

%userid%@example.com<mailto:%25userid%***@example.com> this will depend on the permissions you give your users in AD



User Search: This is the user that we are actually looking up in AD to find which DCIM groups they are a member of we use

(|(sAMAccountName=%userid%)) and that should work for all Microsoft AD





So then you have the Group Distinguished names.So you need to create a bunch of groups in AD and put the users in them this will then grant them the various permissions

I wont go into what each group does as that has been covered before



what is important is that the group names have something similar in them that you can search in the above base Search as per the example with call all our groups openDCIM_<the group name in DCIM> that way we can do our above base search of openDCIM* and return only the openDCIM groups.



you also need to define the full path to the group in AD



In our case

CN=openDCIM_ReadAccess,OU=Security Groups,OU=Top-Level,DC=example,DC=com



so this is basically saying our folder structure is



Example.com

Top-Level

Security Groups
openDCIM_ReadAccess





Obviously change this to suit your AD environment you can easily find this info using the ADSI console on your AD server



Hope this help



IF you have any more questions let me know



Regards



Robert

















On 22 March 2018 at 06:15, Nick Noot-Davies <***@gmail.com<mailto:***@gmail.com>> wrote:
Cool. I won’t send my page in then. I’ll let you walk people through it as it’s more supportable than a custom page :)
Nick Noot-Davies
Sent from my iPhone

On 21 Mar 2018, at 19:14, robert saunders <***@gmail.com<mailto:***@gmail.com>> wrote:

LDAP works with out making any changes to the page it can be one from the ldap settings page

I'll try to walk you through it when I get to work

On 22 Mar 2018, at 5:06 am, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you, I'll wait for your response.



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of nick noot-davies <***@gmail.com<mailto:***@gmail.com>>
Sent: Wednesday, March 21, 2018 1:46 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: Re: [Discussion] openDCIM-18.01 Officially Released

I have AD LDAP working, i made some changes to the page. I am happy to share this page. However i manage to struggle through with php so i cant guarantee its the best in the world, it works for us and hopefuly will for others.

Ill sanitize the code ive added and comment it and then email it

On 21 March 2018 at 17:33, Scott Milliken <***@opendcim.org<mailto:***@opendcim.org>> wrote:
Yeah, you find someone to write it and it can happen. I wrote the existing LDAP login - and just barely. I have no AD infrastructure to test against, and have no AD knowledge.

Scott

On Wed, Mar 21, 2018 at 1:05 PM, Paul Collado <***@hotmail.com<mailto:***@hotmail.com>> wrote:

Thank you very much Scott,



We appreciate your efforts and dedication to making this platform as useful and robust as it is.



Do you have any updates on this new upgrade to LDAP integration to MS AD?



Thanks,



Paul Collado

________________________________
From: Discussion <discussion-***@list.opendcim.org<mailto:discussion-***@list.opendcim.org>> on behalf of Scott Milliken <***@themillikens.com<mailto:***@themillikens.com>>
Sent: Wednesday, March 21, 2018 12:57 PM
To: ***@list.opendcim.org<mailto:***@list.opendcim.org>
Subject: [Discussion] openDCIM-18.01 Officially Released

All,
We've had a few weeks of testing, with a few bugs reported to us and fixed, but all in all it has been relatively quiet, even though we know of several already running the code in production. So, without further delay, I've pushed out release 18.01.
If you have a medium to large sized installation, you should see enormous performance increases. As a benchmark, my installation of 8 rooms / ~ 1000 cabinets of equipment, it would take roughly 6-8 seconds to fully render a cabinet view in version 4.5. It is now down to roughly 800 ms. Smaller sites won't notice much difference, but the larger ones will see the dramatic increase. We've sped it up by caching several things - so I will warn you, it can take a considerable amount of time to do this upgrade. There is a gauge on the screen, though, so you will be able to see that it's running. Let it finish. If you happen to interrupt it, you can manually rebuild the image cache after exiting the upgrade mode - go into Template Management -> Device Image Management, and click on "Rebuild Image Cache".
The demo site has been upgraded.

https://www.opendcim.org/downloads.html
openDCIM Downloads<https://www.opendcim.org/downloads.html>
www.opendcim.org<http://www.opendcim.org>
The openDCIM Foundation, Inc is a not-for profit corporation formed to manage the project and cover any expenses related to hosting and publicizing openDCIM.



Changes in 18.01

* Nomenclature for releases has changed to YY.nn, as this ends the debate over what warrants a major vs minor number change
* Added some error logging for LDAP authentication failures
* Added in more bulk import functions - Users and Departments
* Converted some more reports over to Excel as we move away from PDF reports
* Network map updated to differentiate between front and rear ports
* Updated DataTables to the latest compatible release
* HUGE performance improvements by caching device imaging and the navigation tree HTML, rather than building on the fly
* Other bug fixes, as usual.

Scott


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion


_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion

_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion

_______________________________________________
Discussion mailing list
***@list.opendcim.org<mailto:***@list.opendcim.org>
If you want to unsubscribe, click below:
https://list.opendcim.org/mailman/listinfo/discussion
Schneck, Dennis
7 years ago
Permalink
Tryed to Upgrade from 4.5 to 18.01


1. Backup DB (dump) / Backup (tar) 4.5
2. extract to /var/www/html/openDCIM-18.01
3. copy db.inc.php to /var/www/html/openDCIM-18.01, modfy it for new User & DB
4. create new database & user
5. grant new user to new database
6. import DUMP to new database
7. copy .htaccess from 4.5 to /var/www/html/openDCIM-18.01
8. copy pictures to /var/www/html/openDCIM-18.01
9. copy password file to /var/www/html/openDCIM-18.01
10. mysql db upgrade mysql -u root -p dcim_test < db-4.5-to-18.01.sql
11. rename install.php to install.php.old
12. open URL from DCIM
13. open a Rack but there are now Devices in the Rack


If I search for devices with (Search by Name:) I will find the devices
but they are not displayed in the Racks


What did I wrong ?

Thanks
Schneck, Dennis
7 years ago
Permalink
here are some screen shots



Am 22.03.2018 um 06:34 schrieb Schneck, Dennis:
>
> Tryed to Upgrade from 4.5 to 18.01
>
>
> 1. Backup DB (dump) / Backup (tar) 4.5
> 2. extract to /var/www/html/openDCIM-18.01
> 3. copy db.inc.php to /var/www/html/openDCIM-18.01, modfy it for new User & DB
> 4. create new database & user
> 5. grant new user to new database
> 6. import DUMP to new database
> 7. copy .htaccess from 4.5 to /var/www/html/openDCIM-18.01
> 8. copy pictures to /var/www/html/openDCIM-18.01
> 9. copy password file to /var/www/html/openDCIM-18.01
> 10. mysql db upgrade mysql -u root -p dcim_test < db-4.5-to-18.01.sql
> 11. rename install.php to install.php.old
> 12. open URL from DCIM
> 13. open a Rack but there are now Devices in the Rack
>
>
> If I search for devices with (Search by Name:) I will find the devices
> but they are not displayed in the Racks
>
>
> What did I wrong ?
>
> Thanks
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>

--

Mit freundlichen GrÌßen / Best Regards / 诚挚的问候

i.A. Dennis Schneck



Schuler Pressen GmbH | Schuler-Platz 1 | 73033 Göppingen | Germany
Tel. +49 7161 66-2933 | Fax +49 7161 66-8440
***@schulergroup.com | http://www.schulergroup.com

Member of the ANDRITZ Group

E-Mail-Pflichtangaben (gem. EHUG): http://pflichtangaben.schulergroup.com
Wilbur Longwisch
7 years ago
Permalink
User the installer, asshole! The SQL file is never the complete story.

On Mar 22, 2018 1:36 AM, "Schneck, Dennis" <***@schulergroup.com> wrote:


here are some screen shots



Am 22.03.2018 um 06:34 schrieb Schneck, Dennis:
>
> Tryed to Upgrade from 4.5 to 18.01
>
>
> 1. Backup DB (dump) / Backup (tar) 4.5
> 2. extract to /var/www/html/openDCIM-18.01
> 3. copy db.inc.php to /var/www/html/openDCIM-18.01, modfy it for new User & DB
> 4. create new database & user
> 5. grant new user to new database
> 6. import DUMP to new database
> 7. copy .htaccess from 4.5 to /var/www/html/openDCIM-18.01
> 8. copy pictures to /var/www/html/openDCIM-18.01
> 9. copy password file to /var/www/html/openDCIM-18.01
> 10. mysql db upgrade mysql -u root -p dcim_test < db-4.5-to-18.01.sql
> 11. rename install.php to install.php.old
> 12. open URL from DCIM
> 13. open a Rack but there are now Devices in the Rack
>
>
> If I search for devices with (Search by Name:) I will find the devices
> but they are not displayed in the Racks
>
>
> What did I wrong ?
>
> Thanks
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>

--

Mit freundlichen GrÌßen / Best Regards / 诚挚的问候

i.A. Dennis Schneck



Schuler Pressen GmbH | Schuler-Platz 1 | 73033 Göppingen | Germany
Tel. +49 7161 66-2933 | Fax +49 7161 66-8440
***@schulergroup.com | http://www.schulergroup.com

Member of the ANDRITZ Group

E-Mail-Pflichtangaben (gem. EHUG): http://pflichtangaben.schulergroup.com
Schneck, Dennis
7 years ago
Permalink
>User the installer, asshole! The SQL file is never the complete story.


I used the the installer say all is fine (see attach)
forgot in the list - SORRY !



Am 22.03.2018 um 12:08 schrieb Wilbur Longwisch:
> User the installer, asshole!  The SQL file is never the complete story. 
>
> On Mar 22, 2018 1:36 AM, "Schneck, Dennis" <***@schulergroup.com> wrote:
>
>
> here are some screen shots
>
>
>
> Am 22.03.2018 um 06:34 schrieb Schneck, Dennis:
>>
>> Tryed to Upgrade from 4.5 to 18.01
>>
>>
>> 1. Backup DB (dump) / Backup (tar) 4.5
>> 2. extract to /var/www/html/openDCIM-18.01
>> 3. copy db.inc.php to /var/www/html/openDCIM-18.01, modfy it for new User & DB
>> 4. create new database & user
>> 5. grant new user to new database
>> 6. import DUMP to new database
>> 7. copy .htaccess from 4.5 to /var/www/html/openDCIM-18.01
>> 8. copy pictures to /var/www/html/openDCIM-18.01
>> 9. copy password file to /var/www/html/openDCIM-18.01
>> 10. mysql db upgrade mysql -u root -p dcim_test < db-4.5-to-18.01.sql
>> 11. rename install.php to install.php.old
>> 12. open URL from DCIM
>> 13. open a Rack but there are now Devices in the Rack
>>
>>
>> If I search for devices with (Search by Name:) I will find the devices
>> but they are not displayed in the Racks
>>
>>
>> What did I wrong ?
>>
>> Thanks
>>
Wilbur Longwisch
7 years ago
Permalink
> 10. mysql db upgrade mysql -u root -p dcim_test < db-4.5-to-18.01.sql

If you ran this the installer is going to say "YAY! Everything is great", because that sql file bumped the version number and it didn't run any of the data conversion processes. In this case that is one small but critical routine, not the case in others.

if($version=="4.5"){
$results[]=applyupdate("db-4.5-to-18.01.sql");

print '<iframe src="build_image_cache.php" height="250" width="220" scrolling="no" style="border: 0px;"></iframe>';

$config->rebuild();
}

--pig



On 3/22/18, 6:26 AM, "Discussion on behalf of Schneck, Dennis" <discussion-***@list.opendcim.org on behalf of ***@schulergroup.com> wrote:



>User the installer, asshole! The SQL file is never the complete story.


I used the the installer say all is fine (see attach)
forgot in the list - SORRY !



Am 22.03.2018 um 12:08 schrieb Wilbur Longwisch:
> User the installer, asshole! The SQL file is never the complete story.
>
> On Mar 22, 2018 1:36 AM, "Schneck, Dennis" <***@schulergroup.com> wrote:
>
>
> here are some screen shots
>
>
>
> Am 22.03.2018 um 06:34 schrieb Schneck, Dennis:
>>
>> Tryed to Upgrade from 4.5 to 18.01
>>
>>
>> 1. Backup DB (dump) / Backup (tar) 4.5
>> 2. extract to /var/www/html/openDCIM-18.01
>> 3. copy db.inc.php to /var/www/html/openDCIM-18.01, modfy it for new User & DB
>> 4. create new database & user
>> 5. grant new user to new database
>> 6. import DUMP to new database
>> 7. copy .htaccess from 4.5 to /var/www/html/openDCIM-18.01
>> 8. copy pictures to /var/www/html/openDCIM-18.01
>> 9. copy password file to /var/www/html/openDCIM-18.01
>> 10. mysql db upgrade mysql -u root -p dcim_test < db-4.5-to-18.01.sql
>> 11. rename install.php to install.php.old
>> 12. open URL from DCIM
>> 13. open a Rack but there are now Devices in the Rack
>>
>>
>> If I search for devices with (Search by Name:) I will find the devices
>> but they are not displayed in the Racks
>>
>>
>> What did I wrong ?
>>
>> Thanks
>>
Scott Milliken
7 years ago
Permalink
Yes, as Wilbur rather emotionally but not quite clearly stated.

1 - *Do not apply the SQL update, manually, at any point in the process.*
2 - Do use the installer, where you listed it at point 10 on the list.

https://wiki.opendcim.org/wiki/index.php/Upgrade

Follow that list instead of yours.

Scott

On Thu, Mar 22, 2018 at 7:36 AM, Wilbur Longwisch <***@wilpig.org> wrote:

> > 10. mysql db upgrade mysql -u root -p dcim_test < db-4.5-to-18.01.sql
>
> If you ran this the installer is going to say "YAY! Everything is great",
> because that sql file bumped the version number and it didn't run any of
> the data conversion processes. In this case that is one small but critical
> routine, not the case in others.
>
> if($version=="4.5"){
> $results[]=applyupdate("db-4.5-to-18.01.sql");
>
> print '<iframe src="build_image_cache.php" height="250"
> width="220" scrolling="no" style="border: 0px;"></iframe>';
>
> $config->rebuild();
> }
>
> --pig
>
>
>
> On 3/22/18, 6:26 AM, "Discussion on behalf of Schneck, Dennis" <
> discussion-***@list.opendcim.org on behalf of
> ***@schulergroup.com> wrote:
>
>
>
> >User the installer, asshole! The SQL file is never the complete
> story.
>
>
> I used the the installer say all is fine (see attach)
> forgot in the list - SORRY !
>
>
>
> Am 22.03.2018 um 12:08 schrieb Wilbur Longwisch:
> > User the installer, asshole! The SQL file is never the complete
> story.
> >
> > On Mar 22, 2018 1:36 AM, "Schneck, Dennis" <
> ***@schulergroup.com> wrote:
> >
> >
> > here are some screen shots
> >
> >
> >
> > Am 22.03.2018 um 06:34 schrieb Schneck, Dennis:
> >>
> >> Tryed to Upgrade from 4.5 to 18.01
> >>
> >>
> >> 1. Backup DB (dump) / Backup (tar) 4.5
> >> 2. extract to /var/www/html/openDCIM-18.01
> >> 3. copy db.inc.php to /var/www/html/openDCIM-18.01, modfy it for
> new User & DB
> >> 4. create new database & user
> >> 5. grant new user to new database
> >> 6. import DUMP to new database
> >> 7. copy .htaccess from 4.5 to /var/www/html/openDCIM-18.01
> >> 8. copy pictures to /var/www/html/openDCIM-18.01
> >> 9. copy password file to /var/www/html/openDCIM-18.01
> >> 10. mysql db upgrade mysql -u root -p dcim_test <
> db-4.5-to-18.01.sql
> >> 11. rename install.php to install.php.old
> >> 12. open URL from DCIM
> >> 13. open a Rack but there are now Devices in the Rack
> >>
> >>
> >> If I search for devices with (Search by Name:) I will find the
> devices
> >> but they are not displayed in the Racks
> >>
> >>
> >> What did I wrong ?
> >>
> >> Thanks
> >>
>
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
Schneck, Dennis
7 years ago
Permalink
Thank you for advice


Am 22.03.2018 um 12:36 schrieb Wilbur Longwisch:
>> 10. mysql db upgrade mysql -u root -p dcim_test < db-4.5-to-18.01.sql
>
> If you ran this the installer is going to say "YAY! Everything is great", because that sql file bumped the version number and it didn't run any of the data conversion processes. In this case that is one small but critical routine, not the case in others.
>
> if($version=="4.5"){
> $results[]=applyupdate("db-4.5-to-18.01.sql");
>
> print '<iframe src="build_image_cache.php" height="250" width="220" scrolling="no" style="border: 0px;"></iframe>';
>
> $config->rebuild();
> }
>
> --pig
>
>
>
> On 3/22/18, 6:26 AM, "Discussion on behalf of Schneck, Dennis" <discussion-***@list.opendcim.org on behalf of ***@schulergroup.com> wrote:
>
>
>
> >User the installer, asshole! The SQL file is never the complete story.
>
>
> I used the the installer say all is fine (see attach)
> forgot in the list - SORRY !
>
>
>
> Am 22.03.2018 um 12:08 schrieb Wilbur Longwisch:
> > User the installer, asshole! The SQL file is never the complete story.
> >
> > On Mar 22, 2018 1:36 AM, "Schneck, Dennis" <***@schulergroup.com> wrote:
> >
> >
> > here are some screen shots
> >
> >
> >
> > Am 22.03.2018 um 06:34 schrieb Schneck, Dennis:
> >>
> >> Tryed to Upgrade from 4.5 to 18.01
> >>
> >>
> >> 1. Backup DB (dump) / Backup (tar) 4.5
> >> 2. extract to /var/www/html/openDCIM-18.01
> >> 3. copy db.inc.php to /var/www/html/openDCIM-18.01, modfy it for new User & DB
> >> 4. create new database & user
> >> 5. grant new user to new database
> >> 6. import DUMP to new database
> >> 7. copy .htaccess from 4.5 to /var/www/html/openDCIM-18.01
> >> 8. copy pictures to /var/www/html/openDCIM-18.01
> >> 9. copy password file to /var/www/html/openDCIM-18.01
> >> 10. mysql db upgrade mysql -u root -p dcim_test < db-4.5-to-18.01.sql
> >> 11. rename install.php to install.php.old
> >> 12. open URL from DCIM
> >> 13. open a Rack but there are now Devices in the Rack
> >>
> >>
> >> If I search for devices with (Search by Name:) I will find the devices
> >> but they are not displayed in the Racks
> >>
> >>
> >> What did I wrong ?
> >>
> >> Thanks
> >>
>
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>

--

Mit freundlichen Grüßen / Best Regards / 诚挚的问候

i.A. Dennis Schneck



Schuler Pressen GmbH | Schuler-Platz 1 | 73033 Göppingen | Germany
Tel. +49 7161 66-2933 | Fax +49 7161 66-8440
***@schulergroup.com | http://www.schulergroup.com

Member of the ANDRITZ Group

E-Mail-Pflichtangaben (gem. EHUG): http://pflichtangaben.schulergroup.com
Scott Milliken
7 years ago
Permalink
Clear your cache. Despite us adding in more things to try to keep it from
being cached, there are still some bits of js and css that get cached and
cause problems during upgrages.

Scott

On Thu, Mar 22, 2018 at 2:36 AM, Schneck, Dennis <
***@schulergroup.com> wrote:

>
>
> here are some screen shots
>
>
>
> Am 22.03.2018 um 06:34 schrieb Schneck, Dennis:
> >
> > Tryed to Upgrade from 4.5 to 18.01
> >
> >
> > 1. Backup DB (dump) / Backup (tar) 4.5
> > 2. extract to /var/www/html/openDCIM-18.01
> > 3. copy db.inc.php to /var/www/html/openDCIM-18.01, modfy it for new
> User & DB
> > 4. create new database & user
> > 5. grant new user to new database
> > 6. import DUMP to new database
> > 7. copy .htaccess from 4.5 to /var/www/html/openDCIM-18.01
> > 8. copy pictures to /var/www/html/openDCIM-18.01
> > 9. copy password file to /var/www/html/openDCIM-18.01
> > 10. mysql db upgrade mysql -u root -p dcim_test < db-4.5-to-18.01.sql
> > 11. rename install.php to install.php.old
> > 12. open URL from DCIM
> > 13. open a Rack but there are now Devices in the Rack
> >
> >
> > If I search for devices with (Search by Name:) I will find the devices
> > but they are not displayed in the Racks
> >
> >
> > What did I wrong ?
> >
> > Thanks
> >
> > _______________________________________________
> > Discussion mailing list
> > ***@list.opendcim.org
> > If you want to unsubscribe, click below:
> > https://list.opendcim.org/mailman/listinfo/discussion
> >
>
> --
>
> Mit freundlichen GrÌßen / Best Regards / 诚挚的问候
>
> i.A. Dennis Schneck
>
>
>
> Schuler Pressen GmbH | Schuler-Platz 1 | 73033 Göppingen | Germany
> Tel. +49 7161 66-2933 | Fax +49 7161 66-8440
> ***@schulergroup.com | http://www.schulergroup.com
>
> Member of the ANDRITZ Group
>
> E-Mail-Pflichtangaben (gem. EHUG): http://pflichtangaben.schulergroup.com
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>
>
Schneck, Dennis
7 years ago
Permalink
Hi Scott,

thanks

I cleared my browser cache, but nothing changed.



Am 22.03.2018 um 12:33 schrieb Scott Milliken:
> Clear your cache.   Despite us adding in more things to try to keep it from being cached, there are still some bits of js and css that get cached and cause problems during upgrages.
>
> Scott
>
> On Thu, Mar 22, 2018 at 2:36 AM, Schneck, Dennis <***@schulergroup.com <mailto:***@schulergroup.com>> wrote:
>
>
>
> here are some screen shots
>
>
>
> Am 22.03.2018 um 06:34 schrieb Schneck, Dennis:
> >
> > Tryed to Upgrade from 4.5 to 18.01
> >
> >
> > 1. Backup DB (dump) / Backup (tar) 4.5
> > 2. extract to /var/www/html/openDCIM-18.01
> > 3. copy db.inc.php to /var/www/html/openDCIM-18.01, modfy it for new User & DB
> > 4. create new database & user
> > 5. grant new user to new database
> > 6. import DUMP to new database
> > 7. copy .htaccess from 4.5 to /var/www/html/openDCIM-18.01
> > 8. copy pictures to /var/www/html/openDCIM-18.01
> > 9. copy password file to /var/www/html/openDCIM-18.01
> > 10. mysql db upgrade mysql -u root -p dcim_test < db-4.5-to-18.01.sql
> > 11. rename install.php to install.php.old
> > 12. open URL from DCIM
> > 13. open a Rack but there are now Devices in the Rack
> >
> >
> > If I search for devices with (Search by Name:) I will find the devices
> > but they are not displayed in the Racks
> >
> >
> > What did I wrong ?
> >
> > Thanks
> >
> > _______________________________________________
> > Discussion mailing list
> > ***@list.opendcim.org <mailto:***@list.opendcim.org>
> > If you want to unsubscribe, click below:
> > https://list.opendcim.org/mailman/listinfo/discussion <https://list.opendcim.org/mailman/listinfo/discussion>
> >
>
> --
>
> Mit freundlichen Grüßen / Best Regards / 诚挚的问候
>
> i.A. Dennis Schneck
>
>
>
> Schuler Pressen GmbH | Schuler-Platz 1 | 73033 Göppingen | Germany
> Tel. +49 7161 66-2933 <tel:%2B49%207161%2066-2933> | Fax +49 7161 66-8440 <tel:%2B49%207161%2066-8440>
> ***@schulergroup.com <mailto:***@schulergroup.com> | http://www.schulergroup.com
>
> Member of the ANDRITZ Group
>
> E-Mail-Pflichtangaben (gem. EHUG): http://pflichtangaben.schulergroup.com <http://pflichtangaben.schulergroup.com>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org <mailto:***@list.opendcim.org>
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion <https://list.opendcim.org/mailman/listinfo/discussion>
>
>
>
>
> _______________________________________________
> Discussion mailing list
> ***@list.opendcim.org
> If you want to unsubscribe, click below:
> https://list.opendcim.org/mailman/listinfo/discussion
>

--

Mit freundlichen Grüßen / Best Regards / 诚挚的问候

i.A. Dennis Schneck



Schuler Pressen GmbH | Schuler-Platz 1 | 73033 Göppingen | Germany
Tel. +49 7161 66-2933 | Fax +49 7161 66-8440
***@schulergroup.com | http://www.schulergroup.com

Member of the ANDRITZ Group

E-Mail-Pflichtangaben (gem. EHUG): http://pflichtangaben.schulergroup.com
Loading...