Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

No response from the LDAP Server #7360

Closed
esbsilva opened this issue May 27, 2024 · 2 comments
Closed

No response from the LDAP Server #7360

esbsilva opened this issue May 27, 2024 · 2 comments
Milestone

Comments

@esbsilva
Copy link

Document: Configuring SPNEGO authentication
http://openliberty.io/docs/latest/configuring-spnego-authentication.html

Good afternoon.

I'm using the settings available in this article to configure communication between the i2 Analyze program and a client's LDAP.

The client uses a windows environment both on the LDAP server with AD and in the user environment.

However, when validating communication between the machines using the "klist" command mentioned in step 2.C.i, we are unable to obtain a response with the registered tickets.

In a controlled internal environment, we were able to configure this successfully.

Our question at the moment would be to understand if there is a recommended user profile for this communication to be successful.

Thank you very much for your help.

Yours sincerely.

Error SPNEGO.docx

@dmuelle dmuelle added this to the 24.0.0.6 milestone May 28, 2024
@dmuelle
Copy link
Member

dmuelle commented May 28, 2024

Hi @esbsilva - Thanks for opening this issue. I am checking with our security team to better understand your problem and any gaps in our documentation and will provide a response asap.

@dmuelle
Copy link
Member

dmuelle commented May 28, 2024

Hi @esbsilva - our security team provided the following response:

When there are no tickets on the client, it is most likely because the client machine is not logged on to the Windows domain and did not get a chance to receive the tickets yet. In a controlled internal environment, the client machines are usually configured to be part of the domain.
Although the cited page does not cover all troubleshooting cases, if you need further assistance with this issue you can open a support ticket or review our support options.

We also have further LDAP/SPNEGO documentation that might be helpful:

Closing this issue as no doc updates are required at this time. Thanks

@dmuelle dmuelle closed this as completed May 28, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants