?
Solved

Citrix LDAP help

Posted on 2016-07-14
3
Medium Priority
?
37 Views
Last Modified: 2016-10-25
Hi,

we have upgraded our DC recently and unfortunately, our domain is not a registered domain. It is XXXX.CENTRAL. As per the new rules of CA, we cannot get a trusted certificate for a non-registered domain. LDAP is rejecting our authentication, due to that. I cannot get rid of my old DC because it has a valid certificate running.

I wanted a solution such that I can by pass the certificate purchase.
0
Comment
Question by:ajoyrajan
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 24

Expert Comment

by:Dirk Kotte
ID: 41712854
you have to recreate the certificate trust.
with no public CA you have to import the certificate of issuing CA (and existing Sub-CA's) as trusted.

which component try to authenticate at which device?
Netscaler to AD?
netscaler to storefront?
other...?
do you get the error if you try to use LDAP-SSL?
0
 
LVL 1

Accepted Solution

by:
ajoyrajan earned 0 total points
ID: 41742360
Hi

Thanks for the reply, but we have resolved the issue by changing the LDAP to plaintext and RSA device to point to the new DC.
0
 
LVL 1

Author Closing Comment

by:ajoyrajan
ID: 41748468
Resolved it myself.
0
Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This process allows computer passwords to be managed and secured without using LAPS. This is an improvement on an existing process, enhanced to store password encrypted, instead of clear-text files within SQL
In the absence of a fully-fledged GPO Management product like AGPM, the script in this article will provide you with a simple way to watch the domain (or a select OU) for GPOs changes and automatically take backups when policies are added, removed o…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…
Suggested Courses

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question