Thread:Extension talk:LDAP Authentication/everything fine until....grouprestriction

everything is fine until i tried today to integrate group restrictions, and the debug didnt work :( see below:

for your infos:

- i need the proxy, i have no admin for the ldap system (is from the IT of them, is as it is), and whene i do it like this...everything is fine, the users can log in with their username like in the ldap:

$wgAuth = new LdapAuthenticationPlugin;

$wgLDAPDomainNames = array( "IT" );

$wgLDAPServerNames = array( "IT"=>"ldap.swk99.de" );

$wgLDAPProxyAgent = array( "BASF IT Services"=>"cn=GPSII,ou=proxy-user,ou=EMEA,o=SERVICES" );

$wgLDAPProxyAgentPassword = array( "IT"=>"12345" );

$wgLDAPSearchAttributes = array( "BASF IT Services"=>"cn" );

$wgLDAPBaseDNs = array( "BASF IT Services"=>"o=AUTH" );

$wgLDAPEncryptionType = array( "BASF IT Services"=>"clear" );

$wgLDAPLowerCaseUsername = array( "BASF IT Services"=>true );

$wgLDAPDisableAutoCreate = array( "BASF IT Services" => false );

$wgLDAPUseLocal = false;

$wgLDAPAddLDAPUsers = false;

$wgLDAPUpdateLDAP = false;

$wgLDAPMailPassword = false;

$wgLDAPRetrievePrefs = array( "IT"=>"true" );

$wgMinimalPasswordLength = 1; $wgLDAPDebug = 3;

until here everything is fine, but i need to restrice this on two groups and all users of it:

ou=IT,ou=CONTRACTORS,o=AUTH

and

ou=BASF IT SERVICES GMBH,ou=EMPLOYEES,o=AUTH

to restrict it, i have added and tried this:

$wgLDAPGroupUseFullDN = array( "IT"=>true; );

$wgLDAPRequiredGroups = array( "IT"=>array( "ou=IT,ou=CONTRACTORS,o=AUTH","ou=IT,ou=EMPLOYEES,o=AUTH" ));

$wgLDAPGroupUseFullDN = array( "IT"=>true );

$wgLDAPGroupObjectclass = array( "IT"=>"organizationalUnit" );

$wgLDAPGroupAttribute = array( "IT"=>"inetOrgPerson" );

$wgLDAPGroupSearchNestedGroups = array( "IT"=>true );

$wgLDAPGroupNameAttribute = array( "IT"=>"ou" );

'''and here I am really not sure....if you need more infos, just write me....but Debugging is also not working? any help here? i set the $wgLDAPDebug = 3; and on the media wiki:'''

error_reporting(E_ALL);

ini_set("display_errors", 1);

$wgShowExceptionDetails = true;

anything you need just ask...i am totally new to ldap and the mediawiki so pls dont be so hard with me ;)

greetz & thx4all