Solved

Ldap query doesn't work normally

Posted on 2011-09-30
3
529 Views
Last Modified: 2012-05-12
Good Morning All,

We have 2 domain controller in Windows 2008 server.
Since yesterday, we have a problem with ldap query.  On printers, scan to mail function doesn't work. I use a simple user to connect to ldap.
If use user + password for connect to ldap, i have an error "Access Denied" on the printer.
But, if i use domain\user + password, the scan to mail function works. Same problem with different users.
I do not want change the authentication on 120 printers.


In my 2 domain controllers, I don't see anything in log files.

Can anyone help me?

Thanks.

Benoît
0
Comment
Question by:TheKingPeanuts
  • 2
3 Comments
 
LVL 6

Accepted Solution

by:
Reubenwelsh earned 500 total points
ID: 36890448
Hi,

do you have Windows Support Tools installed? if not install it and run the following since it seems your DC's are having some issues. (im taking for granted you havent done any changes recently doing any changes to the user rights...)

Dcdiag.exe /v >> c:\temp\pre_dcdiag.txt
This will tell you if there is trouble with your DCs or services associated with it

Repadmin /showreps >> c:\temp\pre_rep_partners.txt
This shows all replication and if it was successful or not.  Just be aware that Global Catalogs will have more info here than a normal domain controller.

repadmin /replsum /errorsonly >> c:\temp\pre_repadmin_err.txt
This one takes some time, but will give you all issues with your DCs


Check the logs and see if they give you any errors.
0
 

Author Comment

by:TheKingPeanuts
ID: 36890493
Hi,

Thanks for you help.
You will find attached log files.
I have many errors id 15100 in SystemLog test dcdiag.

Benoît


pre-dcdiag.txt
pre-rep-partners.txt
pre-repadmin-err.txt
0
 
LVL 6

Expert Comment

by:Reubenwelsh
ID: 36890569
Hi again,

Are any of your other services that use "default domain" (default domain is what lets you skip the domain name). OWA for example?

Would be interesting if they had issues as well.

Do you have any other issues you are aware of in the network?

Cheers
Reuben
0

Featured Post

U.S. Department of Agriculture and Acronis Access

With the new era of mobile computing, smartphones and tablets, wireless communications and cloud services, the USDA sought to take advantage of a mobilized workforce and the blurring lines between personal and corporate computing resources.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

If you migrate a Terminal Server licenses server inside the 2008 server family, you can takte advantage of the build-in migration tool. If you like to migrate an older 2003 Server (and the installed client CALs) to a 2008 R2 server for example, you …
I had a question today where the user wanted to know how to delete an SSL Certificate, so I thought that I would quickly add this How to! Article for your reference. WHY WOULD YOU WANT TO DELETE A CERTIFICATE? 1. If an incorrect certificate was …
This tutorial will show how to push an installation of Backup Exec to an additional server in both 2012 and 2014 versions of the software. Click on the Backup Exec button in the upper left corner. From here, select Installation and Licensing, then I…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

864 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now