<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA LDAP Auth.  ERROR: Authentication Rejected: Memory error in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347344#M234382</link>
    <description>&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I had a working VPN with users authenticating via LDAP.&amp;nbsp; One day it decided it did not want to work anymore.&amp;nbsp; We are not aware of any changes to the ASA and the only thing that may have changed on the LDAP server is windows updates.&amp;nbsp; One day this was working fine, and then it stopped and I have not been able to fix it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The base DN, username, password, etc. nothting has changed.&amp;nbsp; I verified all info is correct:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;INFO: Attempting Authentication test to IP address &amp;lt;10.0.1.136&amp;gt; (timeout: 12 seconds)&lt;/P&gt;&lt;P&gt;[433] Session Start&lt;BR /&gt;[433] New request Session, context 0xca21bb58, reqType = Authentication&lt;BR /&gt;[433] Fiber started&lt;BR /&gt;[433] Creating LDAP context with uri=ldap://10.0.1.136:389&lt;BR /&gt;[433] Connect to LDAP server: &lt;A href="https://community.cisco.com/" target="_blank"&gt;ldap://10.0.1.136:389&lt;/A&gt;, status = &lt;SPAN style="color: #ff0000;"&gt;Successful&lt;/SPAN&gt;&lt;BR /&gt;[433] supportedLDAPVersion: value = 3&lt;BR /&gt;[433] supportedLDAPVersion: value = 2&lt;BR /&gt;[433] Binding as ASALDAP&lt;BR /&gt;[433] Performing Simple authentication for ASALDAP to 10.0.1.136&lt;BR /&gt;[433] LDAP Search:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Base DN = [DC=pip,DC=local]&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Filter&amp;nbsp; = [sAMAccountName=jbutterfield]&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Scope&amp;nbsp;&amp;nbsp; = [SUBTREE]&lt;BR /&gt;&lt;SPAN style="color: #ff0000;"&gt;[433] Request for jbutterfield returned code (1) Operations error&lt;/SPAN&gt;&lt;BR /&gt;[433] Fiber exit Tx=275 bytes Rx=733 bytes, status=-1&lt;BR /&gt;[433] Session End&lt;BR /&gt;&lt;SPAN style="color: #ff0000;"&gt;ERROR: Authentication Rejected: Memory error&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Wireshark on the server indicates that bind is successful, but then:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;LdapErr: DSID-0C0906E8, comment: In order to perform this operation a successful bind must be completed on the connection., data 0, v1db1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; But previous to that line it indicated:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;LDAPMessage bindResponse(2) success&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any ideas?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server LDAPServerGroup protocol ldap&lt;/P&gt;&lt;P&gt;aaa-server LDAPServerGroup (inside) host 10.0.1.136&lt;/P&gt;&lt;P&gt;ldap-base-dn DC=pip,DC=local&lt;/P&gt;&lt;P&gt;ldap-scope subtree&lt;/P&gt;&lt;P&gt;ldap-naming-attribute sAMAccountName&lt;/P&gt;&lt;P&gt;ldap-login-password *****&lt;/P&gt;&lt;P&gt;ldap-login-dn CN=ASALDAP,CN=Users,DC=pip,DC=local&lt;/P&gt;&lt;P&gt;server-type microsoft&lt;/P&gt;&lt;P&gt;ldap-attribute-map LDAPMap&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The following output is from AD Explorer.&amp;nbsp; I logged into ADExplorer using ASALDAP user/pass.&amp;nbsp; I browsed the directory and gathered this distinguished name.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;CN=ASALDAP,CN=Users,DC=pip,DC=local&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 03:55:10 GMT</pubDate>
    <dc:creator>John Butterfield</dc:creator>
    <dc:date>2019-03-11T03:55:10Z</dc:date>
    <item>
      <title>ASA LDAP Auth.  ERROR: Authentication Rejected: Memory error</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347344#M234382</link>
      <description>&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I had a working VPN with users authenticating via LDAP.&amp;nbsp; One day it decided it did not want to work anymore.&amp;nbsp; We are not aware of any changes to the ASA and the only thing that may have changed on the LDAP server is windows updates.&amp;nbsp; One day this was working fine, and then it stopped and I have not been able to fix it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The base DN, username, password, etc. nothting has changed.&amp;nbsp; I verified all info is correct:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;INFO: Attempting Authentication test to IP address &amp;lt;10.0.1.136&amp;gt; (timeout: 12 seconds)&lt;/P&gt;&lt;P&gt;[433] Session Start&lt;BR /&gt;[433] New request Session, context 0xca21bb58, reqType = Authentication&lt;BR /&gt;[433] Fiber started&lt;BR /&gt;[433] Creating LDAP context with uri=ldap://10.0.1.136:389&lt;BR /&gt;[433] Connect to LDAP server: &lt;A href="https://community.cisco.com/" target="_blank"&gt;ldap://10.0.1.136:389&lt;/A&gt;, status = &lt;SPAN style="color: #ff0000;"&gt;Successful&lt;/SPAN&gt;&lt;BR /&gt;[433] supportedLDAPVersion: value = 3&lt;BR /&gt;[433] supportedLDAPVersion: value = 2&lt;BR /&gt;[433] Binding as ASALDAP&lt;BR /&gt;[433] Performing Simple authentication for ASALDAP to 10.0.1.136&lt;BR /&gt;[433] LDAP Search:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Base DN = [DC=pip,DC=local]&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Filter&amp;nbsp; = [sAMAccountName=jbutterfield]&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Scope&amp;nbsp;&amp;nbsp; = [SUBTREE]&lt;BR /&gt;&lt;SPAN style="color: #ff0000;"&gt;[433] Request for jbutterfield returned code (1) Operations error&lt;/SPAN&gt;&lt;BR /&gt;[433] Fiber exit Tx=275 bytes Rx=733 bytes, status=-1&lt;BR /&gt;[433] Session End&lt;BR /&gt;&lt;SPAN style="color: #ff0000;"&gt;ERROR: Authentication Rejected: Memory error&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Wireshark on the server indicates that bind is successful, but then:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;LdapErr: DSID-0C0906E8, comment: In order to perform this operation a successful bind must be completed on the connection., data 0, v1db1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; But previous to that line it indicated:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;LDAPMessage bindResponse(2) success&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any ideas?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server LDAPServerGroup protocol ldap&lt;/P&gt;&lt;P&gt;aaa-server LDAPServerGroup (inside) host 10.0.1.136&lt;/P&gt;&lt;P&gt;ldap-base-dn DC=pip,DC=local&lt;/P&gt;&lt;P&gt;ldap-scope subtree&lt;/P&gt;&lt;P&gt;ldap-naming-attribute sAMAccountName&lt;/P&gt;&lt;P&gt;ldap-login-password *****&lt;/P&gt;&lt;P&gt;ldap-login-dn CN=ASALDAP,CN=Users,DC=pip,DC=local&lt;/P&gt;&lt;P&gt;server-type microsoft&lt;/P&gt;&lt;P&gt;ldap-attribute-map LDAPMap&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The following output is from AD Explorer.&amp;nbsp; I logged into ADExplorer using ASALDAP user/pass.&amp;nbsp; I browsed the directory and gathered this distinguished name.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;CN=ASALDAP,CN=Users,DC=pip,DC=local&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 03:55:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347344#M234382</guid>
      <dc:creator>John Butterfield</dc:creator>
      <dc:date>2019-03-11T03:55:10Z</dc:date>
    </item>
    <item>
      <title>ASA LDAP Auth.  ERROR: Authentication Rejected: Memory error</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347345#M234383</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/cisco/psn/bssprt/bss?searchType=bstbugidsearch&amp;amp;page=bstBugDetail&amp;amp;BugID=CSCtc69310" target="_blank"&gt;CSCtc69310&lt;/A&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; LDAP authentication with Kerberos SASL fails with memory error &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;B&gt;Symptom:&lt;/B&gt;&lt;/P&gt;&lt;P&gt;ASA configured to authenticate against LDAP server with Kerberos SASL fails. &lt;/P&gt;&lt;P&gt;"test aaa authentication" command shows "ERROR: Authentication Rejected: Memory error".&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;B&gt;Conditions:&lt;/B&gt;&lt;/P&gt;&lt;P&gt;ASA with LDAP and Kerberos SASL.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;B&gt;Workaround:&lt;/B&gt;&lt;/P&gt;&lt;P&gt;If possible,&lt;STRONG&gt; use "digest-md5" as the SASL mechanism rather than Kerberos.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;~BR &lt;BR /&gt;Jatin Katyal &lt;BR /&gt; &lt;BR /&gt;**Do rate helpful posts**&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Sep 2013 22:08:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347345#M234383</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2013-09-18T22:08:27Z</dc:date>
    </item>
    <item>
      <title>ASA LDAP Auth.  ERROR: Authentication Rejected: Memory error</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347346#M234384</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; I don't know, would I need to specify that on the ASA or on the Windows Domain Controller, or both?&amp;nbsp; How does one chooose one vs. the other?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Sep 2013 22:18:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347346#M234384</guid>
      <dc:creator>John Butterfield</dc:creator>
      <dc:date>2013-09-18T22:18:24Z</dc:date>
    </item>
    <item>
      <title>ASA LDAP Auth.  ERROR: Authentication Rejected: Memory error</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347347#M234385</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808d1a7c.shtml#asdm"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808d1a7c.shtml#asdm&lt;/A&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/7/4/4/157447-ldap.PNG" class="jive-image" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;~BR &lt;BR /&gt;Jatin Katyal &lt;BR /&gt; &lt;BR /&gt;**Do rate helpful posts**&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Sep 2013 22:25:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347347#M234385</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2013-09-18T22:25:17Z</dc:date>
    </item>
    <item>
      <title>ASA LDAP Auth.  ERROR: Authentication Rejected: Memory error</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347348#M234388</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; no luck there:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;test aaa-server authentication LDAPServerGroup host 10.0.1.136 username jbutterfield password xxxxx&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;INFO: Attempting Authentication test to IP address &amp;lt;10.0.1.136&amp;gt; (timeout: 12 seconds)&lt;/P&gt;&lt;P&gt;ERROR: Authentication Server not responding: AAA Server has been removed&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server LDAPServerGroup protocol ldap&lt;/P&gt;&lt;P&gt;aaa-server LDAPServerGroup (inside) host 10.0.1.136&lt;/P&gt;&lt;P&gt; ldap-base-dn DC=pip,DC=local&lt;/P&gt;&lt;P&gt; ldap-scope subtree&lt;/P&gt;&lt;P&gt; ldap-naming-attribute sAMAccountName&lt;/P&gt;&lt;P&gt; ldap-login-password *****&lt;/P&gt;&lt;P&gt; ldap-login-dn CN=ASALDAP,CN=Users,DC=pip,DC=local&lt;/P&gt;&lt;P&gt; sasl-mechanism digest-md5&lt;/P&gt;&lt;P&gt; server-type microsoft&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Sep 2013 22:41:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347348#M234388</guid>
      <dc:creator>John Butterfield</dc:creator>
      <dc:date>2013-09-18T22:41:06Z</dc:date>
    </item>
    <item>
      <title>ASA LDAP Auth.  ERROR: Authentication Rejected: Memory error</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347349#M234391</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; I did switch it to an NTDomain protocol authentication using another server group &amp;amp; that does work, but the downside there is that you can't use the LDAP mapping against NTDomain protocol.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server NTDomain protocol nt&lt;/P&gt;&lt;P&gt;aaa-server NTDomain (inside) host 10.0.1.136&lt;/P&gt;&lt;P&gt; nt-auth-domain-controller 10.0.1.136&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would still like to figure out why LDAP is not working.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Sep 2013 22:54:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347349#M234391</guid>
      <dc:creator>John Butterfield</dc:creator>
      <dc:date>2013-09-18T22:54:36Z</dc:date>
    </item>
    <item>
      <title>ASA LDAP Auth.  ERROR: Authentication Rejected: Memory error</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347350#M234403</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Could you please remove the whole config and readd the below listed one.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server LDAPServerGroup protocol ldap&lt;/P&gt;&lt;P&gt;aaa-server LDAPServerGroup (inside) host 10.0.1.136&lt;/P&gt;&lt;P&gt; ldap-base-dn DC=pip,DC=local&lt;/P&gt;&lt;P&gt; ldap-scope subtree&lt;/P&gt;&lt;P&gt; ldap-naming-attribute sAMAccountName&lt;/P&gt;&lt;P&gt; ldap-login-password *****&lt;/P&gt;&lt;P&gt; ldap-login-dn CN=ASALDAP,CN=Users,DC=pip,DC=local&lt;/P&gt;&lt;P&gt; server-port 389&lt;/P&gt;&lt;P&gt; server-type microsoft&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;run debug ldap 255 and try again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;~BR &lt;BR /&gt;Jatin Katyal &lt;BR /&gt; &lt;BR /&gt;**Do rate helpful posts**&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Sep 2013 23:00:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347350#M234403</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2013-09-18T23:00:18Z</dc:date>
    </item>
    <item>
      <title>ASA LDAP Auth.  ERROR: Authentication Rejected: Memory error</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347351#M234420</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Still same response.&amp;nbsp; I did replace the *** with correct password&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server LDAPServerGroup protocol ldap&lt;/P&gt;&lt;P&gt;aaa-server LDAPServerGroup (inside) host 10.0.1.136&lt;/P&gt;&lt;P&gt; server-port 389&lt;/P&gt;&lt;P&gt; ldap-base-dn DC=pip,DC=local&lt;/P&gt;&lt;P&gt; ldap-scope subtree&lt;/P&gt;&lt;P&gt; ldap-naming-attribute sAMAccountName&lt;/P&gt;&lt;P&gt; ldap-login-password *****&lt;/P&gt;&lt;P&gt; ldap-login-dn CN=ASALDAP,CN=Users,DC=pip,DC=local&lt;/P&gt;&lt;P&gt; server-type microsoft&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;INFO: Attempting Authentication test to IP address &amp;lt;10.0.1.136&amp;gt; (timeout: 12 seconds)&lt;/P&gt;&lt;P&gt;[859] Session Start&lt;BR /&gt;[859] New request Session, context 0xc9630220, reqType = Authentication&lt;BR /&gt;[859] Fiber started&lt;BR /&gt;[859] Creating LDAP context with uri=ldap://10.0.1.136:389&lt;BR /&gt;[859] Connect to LDAP server: &lt;A href="https://community.cisco.com/"&gt;ldap://10.0.1.136:389&lt;/A&gt;, status = Successful&lt;BR /&gt;[859] supportedLDAPVersion: value = 3&lt;BR /&gt;[859] supportedLDAPVersion: value = 2&lt;BR /&gt;[859] Binding as ASALDAP&lt;BR /&gt;[859] Performing Simple authentication for ASALDAP to 10.0.1.136&lt;BR /&gt;[859] LDAP Search:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Base DN = [DC=pip,DC=local]&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Filter&amp;nbsp; = [sAMAccountName=jbutterfield]&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Scope&amp;nbsp;&amp;nbsp; = [SUBTREE]&lt;BR /&gt;[859] Request for jbutterfield returned code (1) Operations error&lt;BR /&gt;[859] Fiber exit Tx=275 bytes Rx=733 bytes, status=-1&lt;BR /&gt;[859] Session End&lt;BR /&gt;ERROR: Authentication Rejected: Memory error&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Sep 2013 23:09:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347351#M234420</guid>
      <dc:creator>John Butterfield</dc:creator>
      <dc:date>2013-09-18T23:09:32Z</dc:date>
    </item>
    <item>
      <title>Re: ASA LDAP Auth.  ERROR: Authentication Rejected: Memory error</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347352#M234436</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;MS is aware of this problem and there is a hotfix available &lt;/P&gt;&lt;P&gt;Micorosft KB951191&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="https://www.google.co.in/search?newwindow=1&amp;amp;site=&amp;amp;source=hp&amp;amp;q=Micorosft+KB951191&amp;amp;oq=Micorosft+KB951191&amp;amp;gs_l=hp.3...1224.1224.0.1691.1.1.0.0.0.0.333.333.3-1.1.0....0...1c.1.27.hp..1.0.0.r8VMRYsGgeg" rel="nofollow"&gt;https://www.google.co.in/search?newwindow=1&amp;amp;site=&amp;amp;source=hp&amp;amp;q=Micorosft+KB951191&amp;amp;oq=Micorosft+KB951191&amp;amp;gs_l=hp.3...1224.1224.0.1691.1.1.0.0.0.0.333.333.3-1.1.0....0...1c.1.27.hp..1.0.0.r8VMRYsGgeg&lt;/A&gt;&lt;/P&gt;&lt;P&gt;You may discuss with your windows team regarding the same.&lt;/P&gt;&lt;P&gt;~BR &lt;BR /&gt;Jatin Katyal &lt;BR /&gt; &lt;BR /&gt;**Do rate helpful posts**&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 21 Sep 2013 22:55:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347352#M234436</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2013-09-21T22:55:47Z</dc:date>
    </item>
    <item>
      <title>Re: ASA LDAP Auth.  ERROR: Authentication Rejected: Memory error</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347353#M234449</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; I have been unable to install the Hotfix.&amp;nbsp; It just won't install.&amp;nbsp; MS says that it has to be installed on a server running AD DS, which it is, but it just wont' install.&amp;nbsp; I report back more when I know more.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 24 Sep 2013 22:01:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-ldap-auth-error-authentication-rejected-memory-error/m-p/2347353#M234449</guid>
      <dc:creator>John Butterfield</dc:creator>
      <dc:date>2013-09-24T22:01:39Z</dc:date>
    </item>
  </channel>
</rss>

