LDAP 处理期间发生未分类异常;嵌套异常是 javax.naming.NamingException

2022-01-17 00:00:00 oauth-2.0 ldap spring java spring-boot

我正在尝试在 oauth2 中使用带有 Spring Boot 安全性的 LDAP 进行身份验证.我的配置如下所示

I am trying to authenticate using LDAP in oauth2 with spring boot security. My configuration is as given below

public class LdapConfiguration extends WebSecurityConfigurerAdapter {

    private static String url ="ldap://myldapdomain.com:389/OU=Users,OU=Accounts,DC=myldapdomain,DC=com";

    protected void configure(HttpSecurity http) throws Exception {


    protected static class AuthenticationConfiguration extends GlobalAuthenticationConfigurerAdapter {
        public void init(AuthenticationManagerBuilder auth) throws Exception {

当我尝试登录 http://localhost:9000/api/oauth/带有所需 LDAP 用户名和密码的令牌 我收到以下异常

When I tried to login to http://localhost:9000/api/oauth/token with the required LDAP userid and password I am getting the following exception

    "timestamp": 1508848799342,
    "status": 401,
    "error": "Unauthorized",
    "message": "Uncategorized exception occured during LDAP processing; nested exception is javax.naming.NamingException: [LDAP: error code 1 - 000004DC: LdapErr: DSID-0C090749, comment: In order to perform this operation a successful bind must be completed on the connection., data 0, v2580u0000]; remaining name '/'",
    "path": "/api/oauth/token"


更新 1

我使用下面的代码 authenticateUser 函数创建了一个用于 LDAP 身份验证的 Java 独立应用程序.在那里我可以成功登录

I have created a java standalone application for LDAP authentication using the below code authenticateUser function. There I am able to login successfully

private String ldapURL = "ldap://myldapdomain:389";

private String ldapDomain = "myldapdomain.com";

public void authenticateUser(String username, String password) throws NamingException {
        Hashtable<String, String> env = new Hashtable<>();
        env.put(Context.INITIAL_CONTEXT_FACTORY, "com.sun.jndi.ldap.LdapCtxFactory");
        env.put(Context.SECURITY_AUTHENTICATION, "simple");
        env.put(Context.PROVIDER_URL, ldapURL);
        env.put(Context.SECURITY_PRINCIPAL, username + "@" + ldapDomain);
        env.put(Context.SECURITY_CREDENTIALS, password);

        DirContext context = null;
        try {
            context = new InitialDirContext(env);
        } catch (Exception e) {
            if (context != null) {
            System.out.println("LDAP auth Failed:::"+ e.getMessage());
            //throw new LoginFailedException("Invalid User Id orPassword");


您必须定义一个 managerDn 用于绑定到您的 LDAP.

You have to define a managerDn which is used to bind to your LDAP.

