Solved

TomCat Service cannot authenticate from DMZ to AD to start TomCat Service 2008R2

Posted on 2014-02-06
4
289 Views
Last Modified: 2014-02-15
Hi Folks,

Have a Winodws 2008R2 box in the DMZ we run Tomcat on it and it starts its service with AD Account Credentials.

What ports do I need to make this happen:

DMZ >>> INTERNAL LAN

LAN >>> DMZ
0
Comment
Question by:999
  • 3
4 Comments
 
LVL 11

Expert Comment

by:Manjunath Sullad
ID: 39841345
Check the connectivity to Active Directory, Telnet to DC with port number 389.

telnet Servername 389, If its working fine, There is no problem with LDAP service.

Also cross verify with Server Admin who is maintaining AD,
0
 

Author Comment

by:999
ID: 39841349
Need more than LDAP, Kerberos RCP secure channel setup and password exchanges after timeouts.

I am getting closer so will post when I nail it.
0
 

Accepted Solution

by:
999 earned 0 total points
ID: 39849353
I sorted guys DNS, LDAP(U) KERBEROD and RCP(135) from DMZ to INT
0
 

Author Closing Comment

by:999
ID: 39861177
I spent an entire weekend on this trial and error reducing the number of ports required just to allow a service to authenticate with AD.
0

Featured Post

Simplifying Server Workload Migrations

This use case outlines the migration challenges that organizations face and how the Acronis AnyData Engine supports physical-to-physical (P2P), physical-to-virtual (P2V), virtual to physical (V2P), and cross-virtual (V2V) migration scenarios to address these challenges.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The password reset disk is often mentioned as the best solution to deal with the lost Windows password problem. In Windows 2008, 7, Vista and XP, a password reset disk can be easily created. But besides Windows 7/Vista/XP, Windows Server 2008 and ot…
If you are a web developer, you would be aware of the <iframe> tag in HTML. The <iframe> stands for inline frame and is used to embed another document within the current HTML document. The embedded document could be even another website.
This video Micro Tutorial explains how to clone a hard drive using a commercial software product for Windows systems called Casper from Future Systems Solutions (FSS). Cloning makes an exact, complete copy of one hard disk drive (HDD) onto another d…
Windows 8 comes with a dramatically different user interface known as Metro. Notably missing from the new interface is a Start button and Start Menu. Many users do not like it, much preferring the interface of earlier versions — Windows 7, Windows X…

828 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question