Using LDAP syntax to create search filters that contain logic operators caused user authentication to fail. A new registry key, LegacyCertMapping, allows legacy behavior in the certificate mapping and resolves the problem. The KeyType must be configured as REG_DWORD and the Value must be 0 (disabled) or 1 (enabled).
If a value other than 0x1 is configured, or the registry value does not exist, this feature is disabled. The registry key is disabled by default. If the registry key is not enabled, the current behavior is in effect. The registry key is located at HKEY_LOCAL_MACHINE\SOFTWARE\Netegrity\SiteMinder\CurrentVersion\PolicyServer.
| Copyright © 2011 CA. All rights reserved. | Email CA Technologies about this topic |