MQ

MQ

Join this online group to communicate across IBM product users and experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
Expand all | Collapse all

IBM LDAP authorization with Microsoft Azure AD

  • 1.  IBM LDAP authorization with Microsoft Azure AD

    Posted Tue August 08, 2023 06:40 AM

    Hi,

    Does anyone have experience using AAD as LDAP for IBM MQ running on an on-prem windows machine and would you like to share the steps?



    ------------------------------
    John
    ------------------------------


  • 2.  RE: IBM LDAP authorization with Microsoft Azure AD

    Posted Tue August 08, 2023 11:31 AM
    Edited by om prakash Tue August 08, 2023 05:21 PM

    AUTHINFO should help. sample authinfo. 

       AUTHINFO(LOCAL.AUTHINFO.IDPWLDAP.AD)       AUTHTYPE(IDPWLDAP)
       ADOPTCTX(YES)                           DESCR(Local setup test)
       CONNAME(azure.admicrosoft.com(636))              CHCKCLNT(OPTIONAL)
       CHCKLOCL(OPTIONAL)                      CLASSGRP(group)
       CLASSUSR(Person)          FAILDLAY(1)
       FINDGRP(Member)
       BASEDNG(OU=Groups,DC=ad,DC=admicrosoft,DC=com)
       BASEDNU(DC=azure,DC=admicrosoft,DC=com)
       LDAPUSER(CN=azureid,OU=Application,OU="Accounts",DC=ad,DC=admicrosoft,DC=com)
       LDAPPWD(**********)
       SHORTUSR(CN)                            GRPFIELD(CN)
       USRFIELD( )                             AUTHORMD(SEARCHGRP)
       NESTGRP(YES)                            SECCOMM(ANON)
    



    ------------------------------
    om prakash
    ------------------------------