<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FMC 6.2.2.1 / AdRealm Errors in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-6-2-2-1-adrealm-errors/m-p/3345027#M924599</link>
    <description>&lt;P&gt;Hi There,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do you mean the test AD join fails for realm but the user download does work properly?&lt;/P&gt;
&lt;P&gt;It could just be because "AD join username and password" fields are configured which are supposed to be used for Kerberos and failing because its not there on AD.&lt;/P&gt;
&lt;P&gt;You can safely ignore the error or remove the AD join username and password field or create a new realm without those fields.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rate if helps,&lt;/P&gt;
&lt;P&gt;Yogesh&lt;/P&gt;</description>
    <pubDate>Thu, 08 Mar 2018 18:06:26 GMT</pubDate>
    <dc:creator>yogdhanu</dc:creator>
    <dc:date>2018-03-08T18:06:26Z</dc:date>
    <item>
      <title>FMC 6.2.2.1 / AdRealm Errors</title>
      <link>https://community.cisco.com/t5/network-security/fmc-6-2-2-1-adrealm-errors/m-p/3336115#M924598</link>
      <description>&lt;P&gt;We are recieving the following REALM errors - I cannot seem to find much details on the internet on the&amp;nbsp;&lt;SPAN&gt;Firepower SF-IMS[4384] error codes.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Our&amp;nbsp;realm is configured in our identity policy and its configured in our access control policy. When download users is selected, it downloads groups with appropriate amount of users for groups. Has anyone seen this before ? Any suggestions ?&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Feb 22 2018 13:11:16 Firepower SF-IMS[4384]: [11596] ADI:adi.AdRealm [INFO] auth: failed to join domain xxx.xxxxx.xx&lt;BR /&gt;Feb 22 2018 13:11:16 Firepower SF-IMS[4384]: [11596] ADI:krb-realm [ERROR] Could not add host to xxx.xxxxx.xx: Constraint violation&lt;BR /&gt;Feb 22 2018 13:11:16 Firepower SF-IMS[4384]: [11596] ADI:ldap-join [ERROR] LDAP add failed: Constraint violation&lt;BR /&gt;Feb 22 2018 13:11:16 Firepower SF-IMS[4384]: [11596] ADI:adi.AdRealm [INFO] auth: joining KRB realm xxx.xxxxx.xx&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To add to the mix a new added error&lt;/P&gt;
&lt;P&gt;Firepower SF-IMS[4384]: [30220] ADI:ldap-join [ERROR] LDAP add failed: Server is unwilling to perform&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any suggestions would be greatly appreciated&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:24:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-6-2-2-1-adrealm-errors/m-p/3336115#M924598</guid>
      <dc:creator>JMCNEL</dc:creator>
      <dc:date>2020-02-21T15:24:09Z</dc:date>
    </item>
    <item>
      <title>Re: FMC 6.2.2.1 / AdRealm Errors</title>
      <link>https://community.cisco.com/t5/network-security/fmc-6-2-2-1-adrealm-errors/m-p/3345027#M924599</link>
      <description>&lt;P&gt;Hi There,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do you mean the test AD join fails for realm but the user download does work properly?&lt;/P&gt;
&lt;P&gt;It could just be because "AD join username and password" fields are configured which are supposed to be used for Kerberos and failing because its not there on AD.&lt;/P&gt;
&lt;P&gt;You can safely ignore the error or remove the AD join username and password field or create a new realm without those fields.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rate if helps,&lt;/P&gt;
&lt;P&gt;Yogesh&lt;/P&gt;</description>
      <pubDate>Thu, 08 Mar 2018 18:06:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-6-2-2-1-adrealm-errors/m-p/3345027#M924599</guid>
      <dc:creator>yogdhanu</dc:creator>
      <dc:date>2018-03-08T18:06:26Z</dc:date>
    </item>
    <item>
      <title>Re: FMC 6.2.2.1 / AdRealm Errors</title>
      <link>https://community.cisco.com/t5/network-security/fmc-6-2-2-1-adrealm-errors/m-p/3345036#M924600</link>
      <description>I removed the username and password and it fixed the issue. Also I opened a TAC case and was told that the "test" but does not work - there is a bug on it.</description>
      <pubDate>Thu, 08 Mar 2018 18:13:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-6-2-2-1-adrealm-errors/m-p/3345036#M924600</guid>
      <dc:creator>JMCNEL</dc:creator>
      <dc:date>2018-03-08T18:13:35Z</dc:date>
    </item>
  </channel>
</rss>

