473,395 Members | 1,474 Online
Bytes | Software Development & Data Engineering Community
Post Job

Home Posts Topics Members FAQ

Join Bytes to post your question to a community of 473,395 software developers and data experts.

AD Membership Provider Can't See User Attributes

I need to use the ActiveDirectoryMembershipProvider in my application.
I have setup the provider in the web config, etc. When I use the ASP.NET
configuration utility and select the Security tab, it throws an
exception saying that the attribute 'userPasswordQuestion' specified for
the attributeMapPasswordQuestion property is not an attribute of the
user class.

I extended the AD attributes and mapped them to the 'user' class. To
validate them, I used ADSIEdit to add simple editing functions to the
context menu of the AD Users and Computers console. Sure enough, when I
right-click on any user in any OU, I see the 5 attributes listed and the
console calls my custom VB script that displays the current value of the
attribute and lets me set the value to anything I want. Bottom line -
the attributes do exist and are indeed associated with the user class.

I rebooted the machine and ran the application again. Now the exception
is different. It says that the userPasswordQuestion attribute must be
of type 'Directory String'. All of the documentation I have read says
to set it to "Context Insensitive String". I went back to the AD schema
and tried to create an attribute of type 'Directory String', but no such
type exists.

What is going on? And why is this so difficult?

--

John F. Holliday | Principal Architect - Information Worker Solutions

Idea Integration, A MPS Group Company


Dec 24 '06 #1
1 1984
I added another couple of attributes named 'pwdQuestion' and
'pwdAnswer', both of type 'Unicode String'. At first, the only
attribute it recognized was pwdQuestion. Although both attributes are
the same type, it took about 10 minutes before it started recognizing
pwdAnswer. This tells me there was some sort of system-wide indexing
that needed to complete before the app would recognize the attribute as
being associated with the user class.

After it recognized both attributes, I was able to see the users in the
designated OU. So far - so good. But when I try to create a user, it
throws a huge exception saying there was a problem with the _InvokeFast
method. No additional details. Apparently, it is trying to store the
question and the answer and hitting a problem. I'm guessing security?
I'm using a domain administrator account to connect to LDAP. Should I
be using a different account?

--

John F. Holliday | Principal Architect - Information Worker Solutions

Idea Integration, A MPS Group Company

"John F. Holliday" <jo***********@idea.netwrote in message
<news:#8**************@TK2MSFTNGP04.phx.gbl>:

I need to use the ActiveDirectoryMembershipProvider in my application.
I have setup the provider in the web config, etc. When I use the ASP.NET
configuration utility and select the Security tab, it throws an
exception saying that the attribute 'userPasswordQuestion' specified for
the attributeMapPasswordQuestion property is not an attribute of the
user class.

I extended the AD attributes and mapped them to the 'user' class. To
validate them, I used ADSIEdit to add simple editing functions to the
context menu of the AD Users and Computers console. Sure enough, when I
right-click on any user in any OU, I see the 5 attributes listed and the
console calls my custom VB script that displays the current value of the
attribute and lets me set the value to anything I want. Bottom line -
the attributes do exist and are indeed associated with the user class.

I rebooted the machine and ran the application again. Now the exception
is different. It says that the userPasswordQuestion attribute must be
of type 'Directory String'. All of the documentation I have read says
to set it to "Context Insensitive String". I went back to the AD schema
and tried to create an attribute of type 'Directory String', but no such
type exists.

What is going on? And why is this so difficult?

--

John F. Holliday | Principal Architect - Information Worker Solutions

Idea Integration, A MPS Group Company


Dec 24 '06 #2

This thread has been closed and replies have been disabled. Please start a new discussion.

Similar topics

2
by: John | last post by:
Hi I was working fine with create user wizard and the default membership provider. I have now customised the membership provider as per attached web.config. The create user wizard picks up the...
4
by: techsupport | last post by:
I have some experience with .NET Remoting, as well as ASP.NET 2.0, and have been wanting to remote a custom membership and profile provider. I want to take advantage of the new controls in ASP.NET...
9
by: Paul Keegstra | last post by:
Hi, I am currently working on an asp.net 2.0 web site that is a replacement of a classic asp web site. The current web site uses a Commerce Server 2002 database for storing user information. ...
4
by: Pony Tsui | last post by:
I was install the starter kits CLUB, and created a CLUB WEB SITE, this application use the MemberInfo table in club.mdf to store the membership'data, but i can not find out where to define or...
4
by: =?Utf-8?B?Q2hyaXMgQ2Fw?= | last post by:
I have been having some trouble with implementing a custom Membership Provider. We have a custom data store and business logic that pulls user information. I need some level of functionality...
3
by: Glenn | last post by:
My current classic-ASP site has users, projects, roles and the 2.0 membership looks like a perfect fit, but I'm having trouble finding examples of how to have users that belong to different...
6
by: Jonathan Wood | last post by:
Although this will be a challenge at my level of ASP.NET knowledge, I'm thinking I should implement my own membership provider class. Looking over the methods I must implement, a number of...
3
by: dm3281 | last post by:
Hello -- I need to write an ASP.NET 2.0 application for our clients to use to login and verify file transmissions. Each client will need their own logon, in addition to a way to assign each...
4
by: Andy B | last post by:
I have the following Membership element in my web.config file. When I run the create user wizard to test it out, it doesn't seem to work. The create user control doesn't return any errors and there...
0
by: Charles Arthur | last post by:
How do i turn on java script on a villaon, callus and itel keypad mobile phone
0
by: ryjfgjl | last post by:
In our work, we often receive Excel tables with data in the same format. If we want to analyze these data, it can be difficult to analyze them because the data is spread across multiple Excel files...
0
by: emmanuelkatto | last post by:
Hi All, I am Emmanuel katto from Uganda. I want to ask what challenges you've faced while migrating a website to cloud. Please let me know. Thanks! Emmanuel
0
BarryA
by: BarryA | last post by:
What are the essential steps and strategies outlined in the Data Structures and Algorithms (DSA) roadmap for aspiring data scientists? How can individuals effectively utilize this roadmap to progress...
1
by: nemocccc | last post by:
hello, everyone, I want to develop a software for my android phone for daily needs, any suggestions?
0
marktang
by: marktang | last post by:
ONU (Optical Network Unit) is one of the key components for providing high-speed Internet services. Its primary function is to act as an endpoint device located at the user's premises. However,...
0
by: Hystou | last post by:
Most computers default to English, but sometimes we require a different language, especially when relocating. Forgot to request a specific language before your computer shipped? No problem! You can...
0
jinu1996
by: jinu1996 | last post by:
In today's digital age, having a compelling online presence is paramount for businesses aiming to thrive in a competitive landscape. At the heart of this digital strategy lies an intricately woven...
0
by: Hystou | last post by:
Overview: Windows 11 and 10 have less user interface control over operating system update behaviour than previous versions of Windows. In Windows 11 and 10, there is no way to turn off the Windows...

By using Bytes.com and it's services, you agree to our Privacy Policy and Terms of Use.

To disable or enable advertisements and analytics tracking please visit the manage ads & tracking page.