Your Active Directory Group Membership May Not Be Recognized in Laserfiche Forms 10 when Signing In With Directory Server 10.

May 11, 2020 | KB: 1014008
Directory Server 10

Summary

When authenticating through Directory Server, you may find that your Active Directory group membership is not recognized properly in Laserfiche Forms. You may receive the following error: "The user does not belong to a group that is authorized to sign in to Laserfiche Forms. [LFF5013-UserNotPartOfAuthorizedGroup]."

Cause

Laserfiche Directory Server may incorrectly filter out user groups from a user's token when there is no local administrator user.

Resolution

This issue is resolved in Laserfiche Directory Server 10.4.0 and later.

Workaround

In the event that you do not wish to upgrade your Laserfiche Directory Server version, ensure that there is a local administrator user named "Administrator" on the Laserfiche Directory Server computer.