GSA Secured Search for Sharepoint

2 views
Skip to first unread message

Bharani

unread,
Jun 14, 2013, 12:05:11 PM6/14/13
to Google-Search-...@googlegroups.com
Hi,
 
We have implemented the secured search for the sharepoint sites in GSA. While testing this implementation we have faced with issues for AD groups.
 
We have given the sharepoint site permission for one of the AD Group and crawled the site in the appliance. In the crawl diagnostics , the AD group was indexed as below
 
( default ) :: s-1-5-21-854245398-839522115-725345543-427368
 
We tested the secured search with the members of that AD group, but the results are not displayed from that Sharepoint site. Please let us know If we need to do any configuration for AD Group permission in sharepoint site.
 
Regards
Bharanidharan

Vinay Joseph

unread,
Jun 14, 2013, 7:26:52 PM6/14/13
to Google-Search-...@googlegroups.com
Checks 
  1. Are you using the AD Groups connector ?
  2. Do you have an AD Group connector AuthN for group lookup ? Check Sering -> Universal Authentication Mechanisms -> Connector

Vinay Joseph

unread,
Jun 14, 2013, 7:27:40 PM6/14/13
to Google-Search-...@googlegroups.com
Apologies for the bad spelling. 

*Serving

Bharani

unread,
Jun 17, 2013, 5:28:27 AM6/17/13
to Google-Search-...@googlegroups.com
Do we need  to have separated connector configuration for AD groups?
 
 Serving -> Universal Authentication Mechanisms -> Connector. In this page we have the connector for sharepoint with Perform Group lookup only checkbox enabled.

Vinay Joseph

unread,
Jun 17, 2013, 6:40:25 PM6/17/13
to Google-Search-...@googlegroups.com
You will still need AD Groups to bring in AD Groups. Currently based on what you have said your only bringing in SharePoint groups. If you have content authenticated via AD groups in SharePoint that might not be visible. 

Also please check for indeterminate in your serving logs. This could be another reason why you are not getting search results. 

Jeremy Garreau

unread,
Jun 18, 2013, 1:41:11 AM6/18/13
to Google-Search-...@googlegroups.com
Depends on how many domains you have on AD but the sharepoint connector embed one adgroups by default.

If you only have one domain you won't need an additional adgroups.

Check the Security manager logs and the serving logs to see which group is missing.

Also, onboard or offboard connector ?

Reply all
Reply to author
Forward
Message has been deleted
0 new messages