Uploaded image for project: 'AMQ Broker'
  1. AMQ Broker
  2. ENTMQBR-10154

AMQ broker LDAPLoginModule to ignore the referral object even though Microsoft AD sends back an referral when setting "referral=ignore"

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Not a Bug
    • Icon: Undefined Undefined
    • None
    • AMQ 7.13.0.GA
    • security
    • None
    • False
    • Hide

      None

      Show
      None
    • False
    • Important

      when setting "referral=ignore" property in LDAPLoginModule, AMQ broker sends a LDAP control "Manage DSA IT LDAPv3 control" (OID: 2.16.840.1.113730.3.4.2) to the Microsoft AD server indicating suppression of referral object (LDAP server should not send back a referral object). However, in some cases, the MicrosSoft AD server with incomplete configuration might just ignored the LDAP control (OID: 2.16.840.1.113730.3.4.2) and still sends back a referral object regardless. Then, AMQ broker just threw an UNEXPECTED_MESSAGE error and closed the connection.

      We might need to reconsider this behaviour by ignoring the referral object that was sent back from the Microsoft AD server.

              rhn-support-jbertram Justin Bertram
              rhn-support-qluo Joe Luo
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: