Home Forums OS X Server and Client Discussion Questions and Answers Testing authentication to AD server

Viewing 2 posts - 1 through 2 (of 2 total)
  • Author
    Posts
  • #355790
    Anonymous
    Participant

    I have tried to implement the link to AD as described in the clear and well documented article on the site. But in the end I couldn’t get the setup to work. I have searched furher and found very similar instructions elsewhere on the web. [url]www.bombich.com[/url]

    So, now I want to examine what is going wrong. I have tried to access the AD with a java application (LDAP browser) like suggested and by using the same authentication account and DC’s and NC’s I can access it without any problem.

    When I use lookupd -d, and use the allUsers command. I get 20 objects back (10 users returned bij the NIAgent and the same 10 users returned bij the DSAgent).
    Any thought on how to trace this problem? Can I get more info on what the DSAgent is doing? Or why lookupd can’t access the information?

    Regards
    Peter

    #355823
    Anonymous
    Participant

    Hi

    How did you configure the authentication tabs in directory access ?

    In Directory Access/services/ldapv3/configure/edit windows, you nead probably put on : “Use authentication when conecting” and put an AD administrator distinguished name and passwd.

    Verify the distinguished name twice.

    in the search and mapping tabs, verify the user search base.
    The default base is
    cn=Users, dc=intranet, dc=afp548, dc=com
    for exemple. It is frequent that the win admin change that for exemple with
    ou=All Users, dc=intranet, dc=afp548, dc=com

    Here’s the points that I frekently miss when I configure a client, I hope this will help you.

Viewing 2 posts - 1 through 2 (of 2 total)
  • You must be logged in to reply to this topic.

Comments are closed