Active Directory Authentication Failure Mapper
Description
Maps messages returned in LDAP exceptions (in the case of bind failures) to authentication result types. Known Active Directory errors are:
- data 525 - user not found
- data 52e - invalid credentials
- data 530 - not permitted to logon at this time
- data 531 - not permitted to logon at this workstation
- data 532 - password expired
- data 533 - account disabled
- data 701 - account expired
- data 773 - user must reset password
- data 775 - user account locked
May be used by
Properties
YAML Template (with default values)
type: ActiveDirectoryAuthenticationFailureMapper
id: ActiveDirectoryAuthenticationFailureMapper-xxxxxx
displayName:
comment:
properties: