When an imported LDAP user logs into Strategy through LDAP authentication, LDAP server can successfully authenticates the user. After that, there is no project showing up for the user, even the user groups for the users have been setup correctly in Strategy 10.x. and above.
Testing the LDAP user login with the authentication trace enabled, the trace log does not show any LDAP group information for this user.
This error message can be found in the log:
[Kernel][Error][0x8000106B] The following privilege is required to access the resource you requested: WebUser.Please contact the Strategy Inteligence Server Administrator to verify that the required privilege is granted.
Some of the special characters cannot be used in the CN string as they are of the reserved type in LDAP operations.
The customer should contact the Active Directory team to remove the special characters in the CN string value. An enhancement request has been logged to provide the ability to use special characters. Contact Strategy Technical Support for an update on this request.