Solved

Ldap query doesn't work normally

Posted on 2011-09-30
3
532 Views
Last Modified: 2012-05-12
Good Morning All,

We have 2 domain controller in Windows 2008 server.
Since yesterday, we have a problem with ldap query.  On printers, scan to mail function doesn't work. I use a simple user to connect to ldap.
If use user + password for connect to ldap, i have an error "Access Denied" on the printer.
But, if i use domain\user + password, the scan to mail function works. Same problem with different users.
I do not want change the authentication on 120 printers.


In my 2 domain controllers, I don't see anything in log files.

Can anyone help me?

Thanks.

Benoît
0
Comment
Question by:TheKingPeanuts
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 6

Accepted Solution

by:
Reubenwelsh earned 500 total points
ID: 36890448
Hi,

do you have Windows Support Tools installed? if not install it and run the following since it seems your DC's are having some issues. (im taking for granted you havent done any changes recently doing any changes to the user rights...)

Dcdiag.exe /v >> c:\temp\pre_dcdiag.txt
This will tell you if there is trouble with your DCs or services associated with it

Repadmin /showreps >> c:\temp\pre_rep_partners.txt
This shows all replication and if it was successful or not.  Just be aware that Global Catalogs will have more info here than a normal domain controller.

repadmin /replsum /errorsonly >> c:\temp\pre_repadmin_err.txt
This one takes some time, but will give you all issues with your DCs


Check the logs and see if they give you any errors.
0
 

Author Comment

by:TheKingPeanuts
ID: 36890493
Hi,

Thanks for you help.
You will find attached log files.
I have many errors id 15100 in SystemLog test dcdiag.

Benoît


pre-dcdiag.txt
pre-rep-partners.txt
pre-repadmin-err.txt
0
 
LVL 6

Expert Comment

by:Reubenwelsh
ID: 36890569
Hi again,

Are any of your other services that use "default domain" (default domain is what lets you skip the domain name). OWA for example?

Would be interesting if they had issues as well.

Do you have any other issues you are aware of in the network?

Cheers
Reuben
0

Featured Post

Free Tool: SSL Checker

Scans your site and returns information about your SSL implementation and certificate. Helpful for debugging and validating your SSL configuration.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Normally after a failure of Domain Controller, when promoting new DC the DC is renamed, we will discuss the options in Dcpromo to re-create the DC with the same name. Scenario: You are a small IT shop with two Domain Controllers (Domain Contr…
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
This tutorial will give a short introduction and overview of Backup Exec 2012 and how to navigate and perform basic functions. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as conne…
This tutorial will walk an individual through the steps necessary to enable the VMware\Hyper-V licensed feature of Backup Exec 2012. In addition, how to add a VMware server and configure a backup job. The first step is to acquire the necessary licen…

763 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question