Solved

Sonicwall LDAP integration works with 2003 DC and not with 2008R2 DC

Posted on 2011-10-01
6
910 Views
Last Modified: 2012-05-12
Hi,

I have a NSA 3500 setup to authenticate users with LDAP on a windows 2003 Domain Controler and everything works fine. I upgraded the DC to a 2008R2 box and now I get a "LDAP communication error" when I try to test the connection. If I change the IP to point to another Domain controler that is on Windows 2003, then no problems and I get a "LDAP authentication succeeded". My guess is something needs to be changed on the Windows 2008 DC Box? I lokked around and none of the sonicwall documents are helpfull since it works fine with my 2003 box. Any ideas? Thanks!
0
Comment
  • 4
6 Comments
 
LVL 38

Expert Comment

by:Aaron Tomosky
Comment Utility
I'll admit I'm no dc expert but I do have a few ideas
Does 2008 support different authentication methods? Does the sonicwall need to be added to a firewall rule an or an allowed list on the dc? Are the 03 servers set to allow anonymous and 08 needs a login to query?

Maybe try to narrow it down, is the query reaching the 08 ldap service and getting denied or not reaching the ldap service?
0
 

Author Comment

by:Information Technology
Comment Utility
I will check on that thanks. I think I am leaning to something with the firewall...
0
 
LVL 10

Accepted Solution

by:
SuperTaco earned 500 total points
Comment Utility
I got my LDAP to work ONLY after setting up a network access policy on my server for RADIUS.  You do have to be careful, because LDAP communications between the SonicWALL and Server 2008 DO NOT like Secial characters, escpecially the "!" at the end of a password
0
Enabling OSINT in Activity Based Intelligence

Activity based intelligence (ABI) requires access to all available sources of data. Recorded Future allows analysts to observe structured data on the open, deep, and dark web.

 

Author Comment

by:Information Technology
Comment Utility
So weird, it just started to work again. not sure what happened...
0
 

Author Comment

by:Information Technology
Comment Utility
Oh, I since then updated the firmware and good point, out passwor does have a "!" at the end... Maybe the latest firmware fixed that issue...we are running 5.8.1 now
0
 

Author Closing Comment

by:Information Technology
Comment Utility
I did not have a chance to test chaning the password. but issue was resolved when updating the firmware.
0

Featured Post

What Should I Do With This Threat Intelligence?

Are you wondering if you actually need threat intelligence? The answer is yes. We explain the basics for creating useful threat intelligence.

Join & Write a Comment

In this tutorial I will show you with short command examples how to obtain a packet footprint of all traffic flowing thru your Juniper device running ScreenOS. I do not know the exact firmware requirement, but I think the fprofile command is availab…
We sought a budget ($5,000) firewall solution that would provide all the performance we needed with no single point of failure.  Hosting a SAAS web application in our datacenter, it was critical that we find a way to keep connectivity up and inbound…
It is a freely distributed piece of software for such tasks as photo retouching, image composition and image authoring. It works on many operating systems, in many languages.
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.

744 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now