Solved

TomCat Service cannot authenticate from DMZ to AD to start TomCat Service 2008R2

Posted on 2014-02-06
4
299 Views
Last Modified: 2014-02-15
Hi Folks,

Have a Winodws 2008R2 box in the DMZ we run Tomcat on it and it starts its service with AD Account Credentials.

What ports do I need to make this happen:

DMZ >>> INTERNAL LAN

LAN >>> DMZ
0
Comment
Question by:999
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
4 Comments
 
LVL 11

Expert Comment

by:Manjunath Sullad
ID: 39841345
Check the connectivity to Active Directory, Telnet to DC with port number 389.

telnet Servername 389, If its working fine, There is no problem with LDAP service.

Also cross verify with Server Admin who is maintaining AD,
0
 

Author Comment

by:999
ID: 39841349
Need more than LDAP, Kerberos RCP secure channel setup and password exchanges after timeouts.

I am getting closer so will post when I nail it.
0
 

Accepted Solution

by:
999 earned 0 total points
ID: 39849353
I sorted guys DNS, LDAP(U) KERBEROD and RCP(135) from DMZ to INT
0
 

Author Closing Comment

by:999
ID: 39861177
I spent an entire weekend on this trial and error reducing the number of ports required just to allow a service to authenticate with AD.
0

Featured Post

Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

If you've heard about htaccess and it sounds like it does what you want, but you're not sure how it works... well, you're in the right place. Read on. Some Basics #1. It's a file and its filename is .htaccess (yes, with a dot in the front). #…
When it comes to security, close monitoring is a must. According to WhiteHat Security annual report, a substantial number of all web applications are vulnerable always. Monitis offers a new product - fully-featured Website security monitoring and pr…
This video Micro Tutorial explains how to clone a hard drive using a commercial software product for Windows systems called Casper from Future Systems Solutions (FSS). Cloning makes an exact, complete copy of one hard disk drive (HDD) onto another d…
With the advent of Windows 10, Microsoft is pushing a Get Windows 10 icon into the notification area (system tray) of qualifying computers. There are many reasons for wanting to remove this icon. This two-part Experts Exchange video Micro Tutorial s…

617 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question