iPrint Mobile logins fail with CN, work with full LDAP name

  • 7022912
  • 02-May-2018
  • 02-May-2018

Environment

Open Enterprise Server 2015 with iPrint for OES installed
Open Enterprise Server 2018 with iPrint for OES installed

Situation

iPrint Authentication attempts from the Micro Focus iPrint mobile app or from the iPrint Portal page (https://<address>/print/printers) succeed when authenticating with the LDAP Fully Qualified Domain Name (FQDN - example: cn=jdoe,ou=sales,o=xyzcorp).  The same user's authentication attempt will fail when logging in with the CN (jdoe).

Resolution

This problem has been reported to Micro Focus Engineering. Until the fix is released, the following workaround will allow authentications with the CN to succeed.
  1. iManager -> Rights -> Modify Trustees
    • Select the Tree, Organization, or whichever container or group for which contains users you want to be able to authenticate with only the CN.
  2. Add Public as a trust if it is not already added
    • Click the "Add Trustee" button
      • Upper right
    • Choose Public
  3. Click the "Assigned Rights" link next to [Public]
  4. Click the "Add Property" button
    • Upper Right
    • Check the "Show all properties in schema" box
    • Highlight CN and click OK.
  5. Click the "Inherit" box for the CN Property Name
  6. Click the Done button.

Cause

This problem mostly occurs when the Tree has multiple Organization objects exist in the Tree.  The Organization which has the iPrint server installed to will not have the problem.  The other Organization will have the problem.