troubleshooting Question

Problem configuring Netscreen 25 for AD/ LDAP authentication with Remote VPN

Avatar of R-P-B
R-P-BFlag for United States of America asked on
DatabasesVPNHardware Firewalls
5 Comments1 Solution1605 ViewsLast Modified:
Windows Server 2003 AD
Netscreen Remote client Version 10.8.3
Netscreen 25 Screen OS 5.4.0r4.0

The problem is that I cannot get my existing user accounts to authenticate to the netscreen using the netscreen VPN client.
When I enter the account credentials I get re-promted to enter the credentials again.
I have been able to successfully connect a newly created test account that was created in the same OU as my existing user accounts.
The only discernable difference between the test account and my existing accounts (other than group membership) is that the test account was created as a single name account (first name only).
I created another test account in the same way I would create a new user using first and last name (username = 1st init+lastname) and like my existing accounts it would not connect.
I opened a support call with Juniper but the Juniper tech bailed on me once he saw that I had a working test account.
LDAP is not my strong suite but I suspect the issue is with my DN string on the Netscreen.
The AD tree is as follows
RPB.NET
            RPB
                   RPB-EMPLOYEES
             OU
             OU
             OU
             Etc&
All of my users are in the RPB-EMPLOYEES OU.

My DN string in the Netscreen is,
OU=RPB-employees,OU=RPB,dc=RPB,dc=NET

I would greatly appreciate any assistance I can get on this issue.

Thanks,
Richard
Join the community to see this answer!
Join our exclusive community to see this answer & millions of others.
Unlock 1 Answer and 5 Comments.
Join the Community
Learn from the best

Network and collaborate with thousands of CTOs, CISOs, and IT Pros rooting for you and your success.

Andrew Hancock - VMware vExpert
See if this solution works for you by signing up for a 7 day free trial.
Unlock 1 Answer and 5 Comments.
Try for 7 days

”The time we save is the biggest benefit of E-E to our team. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange.

-Mike Kapnisakis, Warner Bros