Re: TEPS 10 Character UserID Limitation Security Validation at Hub

"[email protected]" <[email protected]>
Newsgroups gmane.comp.sysutils.tivoli.general,gmane.comp.sysutils.tivoli.tme10
Message-ID <CAMzJ2PpWN+ObW1awg=oOfbLdbJVyWz50_Ldt3QnJKSP36q7beg@mail.gmail.com>
You do get past it, but it requires that you do a username mapping for any
users with User ID's containing more than 10 characters.  Thus it requires
additional work on your part, making the TEMS preferable.  Also, there is
more flexibility with using other attributes as the filter match for login
names with the TEMS's LDAP client config.  Meaning, you can more easily use
something like, say, an email address as the filter when doing such a
mapping to an external LDAP repository.  Basically, any attribute that is
valid in that external repository is fair game for the match and the syntax
and logic just seem better from the TEMS side IMHO.


On Wed, May 15, 2013 at 12:25 PM, Gregory Mendes <[email protected]
> wrote:

> Thanks for that information.
>
> Then what is the reason for authenticating from the Hub_TEMS vs. TEPS?  I
> thought that got you past the 10 character limitation in TEPS.
>
> Regards,
>
> Gregory R. Mendes
> Tivoli Architect/Tools Specialist
> Mendes, Inc.
> Tivoli Monitoring 6.2.3 Certified
> 770-317-8593
>
>
> ------------------------------
> Date: Wed, 15 May 2013 10:44:46 -0500
> Subject: Re: [TME10] TEPS 10 Character UserID Limitation Security
> Validation at Hub
> From: [email protected]
> To: [email protected]
>
>
> No, you weren't able to log in with the value of the "User Name" column.
> That maps to the "Name" column from KFWUSER and is just a way to identify
> the real name of the person logging in.  The ID column in KFWUSER maps to
> the "User ID" field in the user admin create user UI, and all CTAUTH calls
> do a match on the value form ID, so that's always the key.
>
>
> On Wed, May 15, 2013 at 8:38 AM, Gregory Mendes <
> [email protected]> wrote:
>
> Hello All,
>
> I asked this question before and received several responses and I thank
> you all for them.  I took advice from Julius about UserID vs. User Name
> configuration.
>
> The reason I implemented security validation at the Hub was because of the
> 10 character UserID limitation at the TEP.
>
> So, what I did was call the UserID "testuser1" and the User Name
> "ssd01_DBADM" which is over 10 characters.
>
> I was under the impression and from the information I received that the
> Hub would validate the User Name that's over 10 characters and not the User
> ID.  My log files have rolled off but I swear I logged in with the "User
> Name" instead of the "User ID" and it worked.
>
> I'm I wrong?  I have been before but your advice is greatly appreciated.
>
> Regards,
>
> Gregory R. Mendes
> 770-317-8593
>
>
> _______________________________________________
> TME10 mailing list
> [email protected]
> Unsubscribe:[email protected]
>
>
>
>
> --
> "Sometimes I think that's the only right thing to do:
> To dream. to live in the world of dreams.
> But it doesn't last forever--wakefulness always comes to take me back..."
>
> _______________________________________________ TME10 mailing list
> [email protected] Unsubscribe:[email protected]
>
> _______________________________________________
> TME10 mailing list
> [email protected]
> Unsubscribe:[email protected]
>
>


-- 
"Sometimes I think that's the only right thing to do:
To dream. to live in the world of dreams.
But it doesn't last forever--wakefulness always comes to take me back..."

_______________________________________________
TME10 mailing list
[email protected]
Unsubscribe:[email protected]
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.