Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations gkittelson on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

LDAP Connection

Status
Not open for further replies.

LaforcE

IS-IT--Management
Jun 2, 2003
76
CA
Trying to connect a third party help desk software, in the Active Directory on my Windows 2003 Server (Trought LDAP request)

The software is asking for thing like "Base DN", "Username Attribute" etc ...

I've tried to fill in the blank with all the knowledge of LDAP I have (Wich is near NULL) and I'm always getting this error:

Cannot login to LDAP server: 80090308: LdapErr: DSID-0C09030B, comment: AcceptSecurityContext error, data 525, v893.

I think I'm not giving the right path, or something. Is there any ways, tools, command line command or something that I can use to get all the good info and good "directory structure" of my LDAP server ?

Thanks!!!

- Security is a never ending job.
 
The best way to view your structure would be to use the Active Directory Users and Computers administration tool - which should be installed on the server running AD.

This will give you a base dn - at a minimum it will probably be something like dc=corp,dc=organization,dc=com - but you should just take a look to see for sure.

If you have issues logging in - which it looks like you do - try the userPrincipleName - which will look like user@corp.organization.com.

HTH

-Chris Larivee
 
Ok ... IT's should be pretty simple ...

Let's say the DC name is Server1 in the Company1 domain (.lan).

So there askin for: ---) (is what I tried)

LDAP server ---) 192.168.0.1 (server1 or server1.company1.lan)

Base DN ---) DC=company1,DC=lan (DC=server1,DC=company1,DC=lan)

Domain ---) company1 (also tried company1.lan)

Username attribute "optional" ---) I tried nothing, than UID than ID than UID=user and ID=user

Test Login ---) user and user@company1.lan

Password --) it's a secret

---------
Always getting same result :
Cannot login to LDAP server: 80090308: LdapErr: DSID-0C09030F, comment: AcceptSecurityContext error, data 525, vece
----------
If i change the serveur name or ip i'm getting unable to contact LDAP server or something timeout ...

:(


- Security is a never ending job.
 
You may want to try:

Server: servername.company1.lan:389 (if it is running on port 389)
Base DN: Try DC=corp,DC=company1,DC=lan - literally - put in corp
Domain: company1
Username attribute: samAccountName
Test login: Try user@corp.company1.lan
Password: Of course

-Chris Larivee
 
Hehhe getting crazy. BTW thanks for your help.

but you know ... still ...

Status: Cannot login to LDAP server: 80090308: LdapErr: DSID-0C09030F, comment: AcceptSecurityContext error, data 525, vece

Waaaaaaaa!

- Security is a never ending job.
 
Got it.

It was an UPPERCASE problem.

Everything have to be in uppercase ...

Grrr...

hehe :)

- Security is a never ending job.
 
Well that's not very nice ... wonder why it is case specific ... at least you got it resolved ...

-Chris Larivee
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top