The configure-ldap-for-admin command reports success but further attempts to log-in as an administrator do not work.
Fix checked in:
Date: 2013-04-02 00:06:17 UTC
Fix for GLASSFISH-20125 - configure-ldap-for-admin command does not work
The configure-ldap-for-admin command was never updated to reflect the new security configuration added to domain.xml. As a result the LDAP login module was never used during authentication, even after the command was run.
These changes to the command make the additional alterations in the new security configuration so that the LDAP login module is used correctly.
Note that some classes were moved from the security/core module to security/services so that the command logic (formerly in security/core) could work with the newer config classes (in security/services).
Tests: QL, manual tests with Ramesh's LDAP server (thanks, Ramesh)
The new security configuration (the security-services section in domain.xml) is involved in authentication and authorization decisions, as well as the older config for the admin file realm.
The configure-ldap-for-admin command alters the older configuration according to the user's command-line arguments but was never changed to update the newer configuration.