OBIEE 11g|12c: Do You Still Need the User.login.attr and username.attr Attributes for UserName Attribute? (Doc ID 1560382.1)

Last updated on JANUARY 04, 2017

Applies to:

Business Intelligence Server Enterprise Edition - Version 11.1.1.7.0 and later
Business Intelligence Suite Enterprise Edition - Version 11.1.1.7.0 and later
Information in this document applies to any platform.

Goal

In OBIEE 11.1.1.6.x, if you configure an alternative authentication provider such as Oracle Internet Directory (OID LDAP) or Active Directory (AD), then you must ensure that the User Name Attribute that you use in the identity store matches the User Name Attribute that you use in the alternative authentication provider.

For example, to authenticate using a user's email address you might set the User Name Attribute to mail in both the identity store and the authentication provider.

 

user.login.attr = sAMAccountName
username.attr = sAMAccountName

 

 

For the UserName Attribute only; you must use the following task to add two properties to the identity store configuration (user.login.attr and username.attr). This specification tells the identity store about the attribute from which you expect to retrieve the user name. The default is "uid" if no attribute is specified.

  See the OBIEE 11.1.1.6.x Security guide:


  Do you still need these 2 attributes in 11.1.1.7.x or higher?. 

Solution

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms