java - LDAP - Spring Boot |获取 javax.naming.CommunicationException |连接被拒绝

标签 java spring-boot ldap spring-security-ldap

我正在使用 unboundid-ldapsdk 作为 LDAP 服务器。当我尝试访问我的休息端点时连接被拒绝。我已在我的 application.properties 文件中设置端口。 我尝试在不同的端口上运行 ldap 服务器,但仍然遇到相同的错误。 我的属性文件看起来像这样。

spring.ldap.embedded.port=3268
spring.ldap.embedded.ldif=classpath:ldap-data.ldif
spring.ldap.embedded.base-din=dc=springframework,dc=org

我的LDIF文件看起来像这样,是从https://spring.io/guides/gs/authenticating-ldap/复制的

dn: dc=springframework,dc=org
objectclass: top
objectclass: domain
objectclass: extensibleObject
dc: springframework

dn: ou=groups,dc=springframework,dc=org
objectclass: top
objectclass: organizationalUnit
ou: groups

dn: ou=subgroups,ou=groups,dc=springframework,dc=org
objectclass: top
objectclass: organizationalUnit
ou: subgroups

dn: ou=people,dc=springframework,dc=org
objectclass: top
objectclass: organizationalUnit
ou: people

dn: ou=space cadets,dc=springframework,dc=org
objectclass: top
objectclass: organizationalUnit
ou: space cadets

dn: ou=\"quoted people\",dc=springframework,dc=org
objectclass: top
objectclass: organizationalUnit
ou: "quoted people"

dn: ou=otherpeople,dc=springframework,dc=org
objectclass: top
objectclass: organizationalUnit
ou: otherpeople

dn: uid=ben,ou=people,dc=springframework,dc=org
objectclass: top
objectclass: person
objectclass: organizationalPerson
objectclass: inetOrgPerson
cn: Ben Alex
sn: Alex
uid: ben
userPassword: $2a$10$c6bSeWPhg06xB1lvmaWNNe4NROmZiSpYhlocU/98HNr2MhIOiSt36

dn: uid=bob,ou=people,dc=springframework,dc=org
objectclass: top
objectclass: person
objectclass: organizationalPerson
objectclass: inetOrgPerson
cn: Bob Hamilton
sn: Hamilton
uid: bob
userPassword: bobspassword

dn: uid=joe,ou=otherpeople,dc=springframework,dc=org
objectclass: top
objectclass: person
objectclass: organizationalPerson
objectclass: inetOrgPerson
cn: Joe Smeth
sn: Smeth
uid: joe
userPassword: joespassword

dn: cn=mouse\, jerry,ou=people,dc=springframework,dc=org
objectclass: top
objectclass: person
objectclass: organizationalPerson
objectclass: inetOrgPerson
cn: Mouse, Jerry
sn: Mouse
uid: jerry
userPassword: jerryspassword

dn: cn=slash/guy,ou=people,dc=springframework,dc=org
objectclass: top
objectclass: person
objectclass: organizationalPerson
objectclass: inetOrgPerson
cn: slash/guy
sn: Slash
uid: slashguy
userPassword: slashguyspassword

dn: cn=quote\"guy,ou=\"quoted people\",dc=springframework,dc=org
objectclass: top
objectclass: person
objectclass: organizationalPerson
objectclass: inetOrgPerson
cn: quote\"guy
sn: Quote
uid: quoteguy
userPassword: quoteguyspassword

dn: uid=space cadet,ou=space cadets,dc=springframework,dc=org
objectclass: top
objectclass: person
objectclass: organizationalPerson
objectclass: inetOrgPerson
cn: Space Cadet
sn: Cadet
uid: space cadet
userPassword: spacecadetspassword



dn: cn=developers,ou=groups,dc=springframework,dc=org
objectclass: top
objectclass: groupOfUniqueNames
cn: developers
ou: developer
uniqueMember: uid=ben,ou=people,dc=springframework,dc=org
uniqueMember: uid=bob,ou=people,dc=springframework,dc=org

dn: cn=managers,ou=groups,dc=springframework,dc=org
objectclass: top
objectclass: groupOfUniqueNames
cn: managers
ou: manager
uniqueMember: uid=ben,ou=people,dc=springframework,dc=org
uniqueMember: cn=mouse\, jerry,ou=people,dc=springframework,dc=org

dn: cn=submanagers,ou=subgroups,ou=groups,dc=springframework,dc=org
objectclass: top
objectclass: groupOfUniqueNames
cn: submanagers
ou: submanager
uniqueMember: uid=ben,ou=people,dc=springframework,dc=org

扩展 WebSecurityConfigurerAdapter 的类

@EnableWebSecurity
public class SpringSecurity extends WebSecurityConfigurerAdapter {

    @Override
    protected void configure(AuthenticationManagerBuilder auth) throws Exception {
        auth.ldapAuthentication().userDnPatterns("uid={0},ou=people").groupSearchBase("ou=groups").contextSource()
                .url("ldap://localhost:3268/dc=springframework,dc=org").and().passwordCompare().passwordEncoder(new BCryptPasswordEncoder())
                .passwordAttribute("userPassword");
    }

    @Override
    protected void configure(HttpSecurity http) throws Exception {
        http.authorizeRequests().anyRequest().fullyAuthenticated().and().formLogin();
    }
}

还有一个简单的 Rest EndPoint。

@RestController
public class HomeResource {

    @GetMapping("/")
    public String sayhello() {
        return "hello";
    }
}

我已经到处寻找但仍然无法解决这个问题。

最佳答案

我在 pom.xml 中有 2 个 unboundid-ldapsdk 条目,因此我得到了相同的 javax.naming.CommunicationException |连接被拒绝。解决方案是仅保留一个依赖项,而不保留scope=test。

问题:

<dependency>
    <groupId>com.unboundid</groupId>
    <artifactId>unboundid-ldapsdk</artifactId>
</dependency>
<dependency>
    <groupId>com.unboundid</groupId>
    <artifactId>unboundid-ldapsdk</artifactId>
    <scope>test</scope>
</dependency>   

解决方案:

<dependency>
    <groupId>com.unboundid</groupId>
    <artifactId>unboundid-ldapsdk</artifactId>
</dependency>

关于java - LDAP - Spring Boot |获取 javax.naming.CommunicationException |连接被拒绝,我们在Stack Overflow上找到一个类似的问题: https://stackoverflow.com/questions/60995440/

相关文章:

java - 如何验证servlet处理是否真的在做非阻塞io?

java - 如何避免加入并方便扩展

ubuntu - 如何在命令提示符下获取 LDAP 中的事件连接?

LDAP - objectClass = 顶部的含义

java - 如果 Android 中的值为空或 null,则显示默认文本

java - 下面的java语句是什么意思

spring - 如何在 Spring Webflux 中使用 @RequestBody 并避免 IllegalStateException?

java - "spring.data.web.pageable.one-indexed-parameters=true"不起作用

java - MySQL : Update archive table after successful transaction in parent table

vb.net - 使用 LDAP 将用户添加到 AD