Re: LDAP Lookup failure



Load LDP.exe from the Microsoft support tools and try to bind from the
failed server. This may help you narrow down the error. Try both the ip
address and the host name

Install disk

Support tools
d:\support\tools\setup.exe

Administrative tools
d:\i386\adminpak.msi

--


Paul Bergson MCT, MCSE, MCSA, CNE, CNA, CCA

This posting is provided "AS IS" with no warranties, and confers no rights.


"Mark" <nospam@xxxxxxxxxxxxxxxxxxxx> wrote in message
news:e%23Qv89TiFHA.3336@xxxxxxxxxxxxxxxxxxxxxxx
> It is an iGate SSL VPN appliance, which needs to retrieve auth data from
> the AD, to allow external users access through the VPN tunnel.
>
> Error log extract:
>
> [Fri Jul 8 17:08:34 2005] LDAP_INFO: Perform simple authentication for
> mark@server
> [Fri Jul 8 17:08:34 2005] LDAP_ERROR: ldap_simple_bind_s: Can't contact
> LDAP server
> [Fri Jul 8 17:08:34 2005] LDAP_ERROR: ldap bind error
>
> ## end ##
>
> "Al Mulnick" <amulnick_No_SPAM@xxxxxxxxxxx> wrote in message
> news:O%236qC2TiFHA.1232@xxxxxxxxxxxxxxxxxxxxxxx
>> Mark, what's the application?
>> A lot of times, if you turn up the audit logging for failed logon
>> attempts, it's really helpful in determining what credentials are being
>> passed to the server by the application. You can often narrow it down
>> pretty quickly that way.
>>
>> Al
>>
>>
>> "Mark" <nospam@xxxxxxxxxxxxxxxxxxxx> wrote in message
>> news:%23QBBcMSiFHA.1412@xxxxxxxxxxxxxxxxxxxxxxx
>>> Hi,
>>>
>>> I am not hugely experienced in AD matters, and have had some trouble
>>> with an application that needs to authenticate against my AD on SBS2003.
>>>
>>> On the software I am getting communication and bind errors, when doing
>>> the lookup. It is a very strange situation, as it works for a while, and
>>> then with no changes will stop and give the communication and bind
>>> errors.
>>>
>>> I have also tried using the LDAP browser application, and cannot get
>>> this to work.
>>>
>>> The following settings were used:
>>>
>>> Host: server.domain.local
>>> Port 389
>>> Version 3
>>>
>>> (I can fetch DN's succesfully)
>>>
>>> Turned off anonymous bind (should this work with anon?)
>>>
>>> User DN: cn=%username%
>>> Password: %correct password for user%
>>>
>>> Thanks for any help advice you can give.
>>>
>>> Mark
>>>
>>
>>
>
>


.



Relevant Pages

  • Re: LDAP Lookup failure
    ... and I can perform lookups and I can bind with the username used on the iGate ... > Load LDP.exe from the Microsoft support tools and try to bind from the ... > failed server. ... >> It is an iGate SSL VPN appliance, which needs to retrieve auth data from ...
    (microsoft.public.windows.server.active_directory)
  • [UNIX] Hardening the BIND DNS Server
    ... Hardening the BIND DNS Server ... Your Domain Name Service is the road sign to your systems on the Internet. ...
    (Securiteam)
  • Re: PDC Is not replicating !!
    ... Manage to change the Driver issue to boot the server. ... Starting test: Connectivity ... Starting test: Replications ... LDAP Bind. ...
    (microsoft.public.win2000.active_directory)
  • Re: Mail server security - best practices?
    ... Both BIND and qmail are pretty secure, ... and mail on a server that's 'half-internal' in that you seem not to ... I still employ IMAP-SSL on the private server, ...
    (comp.unix.bsd.openbsd.misc)
  • Re: bind hack?
    ... He writes BIND 9. ... rfcs as documentation and therefor basis for design it is a shitload ... dns server software developed, tested and finally deployed. ... security dilemma since this monoculture defines the standard. ...
    (FreeBSD-Security)

Loading