Bug 1379420

Summary: ldap user cannot login when email has an apostrophe character
Product: Red Hat CloudForms Management Engine Reporter: Colin Arnott <carnott>
Component: ApplianceAssignee: Tim Wade <twade>
Status: CLOSED CURRENTRELEASE QA Contact: Matt Pusateri <mpusater>
Severity: urgent Docs Contact:
Priority: urgent    
Version: 5.6.0CC: abellott, benglish, cpelland, gblomqui, gtanzill, jhardy, obarenbo, saali, simaishi, twade
Target Milestone: GAKeywords: TestOnly
Target Release: 5.8.0   
Hardware: x86_64   
OS: Linux   
Whiteboard: auth:miqldap:ad
Fixed In Version: 5.8.0.0 Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of:
: 1396489 1396490 (view as bug list) Environment:
Last Closed: 2017-06-12 16:49:59 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: CFME Core Target Upstream Version:
Bug Depends On: 1272169, 1424618, 1424620, 1760417    
Bug Blocks: 1396489, 1396490    

Description Colin Arnott 2016-09-26 16:45:27 UTC
Description of problem:
One of my users, backed by ldap, cannot login to my appliance. The logs show that there is an email validation failure

Version-Release number of selected component (if applicable):
cfme-5.6.1.2

How reproducible:
this env: reliable
requires this LDAP server

Steps to Reproduce:
1. setup ldap
2. have user login

Actual results:
auth failure

Expected results:
auth success

Additional info:
logs pending

Comment 11 Matt Pusateri 2017-02-15 18:49:41 UTC
While the original patch does indeed make authentication work. There is still a condition that creates two users in the database/webui.


Setup external auth, enable it as the mode. Log in as the UID of the LDAP user, user will show up under Users in UI.  Logout and login with email address of the user. another duplicate user will be created, when in fact they are the same user.

Comment 12 Saif Ali 2017-03-06 15:28:16 UTC
*** Bug 1429553 has been marked as a duplicate of this bug. ***

Comment 13 Matt Pusateri 2017-04-24 14:17:19 UTC
Verified on MIQLDAP: AD on 5.8.0.11-beta2