cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2517
Views
0
Helpful
4
Replies

CUCM Will not sync with Microsoft AD LDS

ralphdejesus
Level 1
Level 1

Been trying to get it to connect with a new 2012R2 MS AD LDS. Keep getting error 32. Have tried a bunch of setting changes on the LDS relating to error 32 but no luck.

2016-03-10 16:50:04,040 ERROR [DSLDAPSyncImpl(1ff58c6b-94fc-0d27-5cb8-99c6d6eeaab2)] ldapplugable.DSLDAPSyncImpl (DSLDAPSyncImpl.java:1761) - LDAPSync(1ff58c6b-94fc-0d27-5cb8-99c6d6eeaab2)[getInvocationId] caught exception ... [LDAP: error code 32 - 0000208D: NameErr: DSID-0315270B, problem 2001 (NO_OBJECT), data 0, best match of:
        'CN=Configuration,CN={D3104D78-795E-4892-BDA3-7AA1BD2614DB}'
]
2016-03-10 16:50:04,040 ERROR [DSLDAPSyncImpl(1ff58c6b-94fc-0d27-5cb8-99c6d6eeaab2)] ldapplugable.DSLDAPSyncImpl (DSLDAPSyncImpl.java:1762) - LDAPSync(1ff58c6b-94fc-0d27-5cb8-99c6d6eeaab2)[getInvocationId] javax.naming.NameNotFoundException: [LDAP: error code 32 - 0000208D: NameErr: DSID-0315270B, problem 2001 (NO_OBJECT), data 0, best match of:
        'CN=Configuration,CN={D3104D78-795E-4892-BDA3-7AA1BD2614DB}'
]; remaining name 'CN=NTDS Settings,CN=VOIPLDS2$instance1,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,CN={D3104D78-795E-4892-BDA3-7AA1BD2614DB}'
MESSAGE [LDAP: error code 32 - 0000208D: NameErr: DSID-0315270B, problem 2001 (NO_OBJECT), data 0, best match of:
        'CN=Configuration,CN={D3104D78-795E-4892-BDA3-7AA1BD2614DB}'
]
com.sun.jndi.ldap.LdapCtx.mapErrorCode(LdapCtx.java:3112)
com.sun.jndi.ldap.LdapCtx.processReturnCode(LdapCtx.java:3033)
com.sun.jndi.ldap.LdapCtx.processReturnCode(LdapCtx.java:2840)

options: q=quit, n=next, p=prev, b=begin, e=end (lines 121 - 140 of 160) :
com.sun.jndi.ldap.LdapCtx.searchAux(LdapCtx.java:1849)
com.sun.jndi.ldap.LdapCtx.c_search(LdapCtx.java:1772)
com.sun.jndi.toolkit.ctx.ComponentDirContext.p_search(ComponentDirContext.java:386)
com.sun.jndi.toolkit.ctx.PartialCompositeDirContext.search(PartialCompositeDirContext.java:356)
com.sun.jndi.toolkit.ctx.PartialCompositeDirContext.search(PartialCompositeDirContext.java:339)
javax.naming.directory.InitialDirContext.search(InitialDirContext.java:267)
com.cisco.ccm.dir.dirsync.ldapplugable.DSLDAPSyncImpl.getInvocationId(DSLDAPSyncImpl.java:1751)
com.cisco.ccm.dir.dirsync.ldapplugable.DSLDAPSyncImpl.checkLDAP(DSLDAPSyncImpl.java:850)
com.cisco.ccm.dir.dirsync.ldapplugable.DSLDAPSyncImpl.run(DSLDAPSyncImpl.java:368)

2016-03-10 16:50:04,101 ERROR [DirSync-DBInterface] common.DSDBInterface (DSDBInterface.java:530) - DSDBInterface.updateUserInfo LDAP data discarded: Missing LDAP attribute: Attribute Count=5 AgreementId=1ff58c6b-94fc-0d27-5cb8-99c6d6eeaab2
[directoryuri, userid, telephonenumber, mailid, uniqueidentifier]
2016-03-10 16:50:04,104 ERROR [DirSync-DBInterface] common.DSDBInterface (DSDBInterface.java:530) - DSDBInterface.updateUserInfo LDAP data discarded: Missing LDAP attribute: Attribute Count=5 AgreementId=1ff58c6b-94fc-0d27-5cb8-99c6d6eeaab2
[directoryuri, userid, telephonenumber, mailid, uniqueidentifier]
2016-03-10 16:50:04,106 ERROR [DirSync-DBInterface] common.DSDBInterface (DSDBInterface.java:530) - DSDBInterface.updateUserInfo LDAP data discarded: Missing LDAP attribute: Attribute Count=5 AgreementId=1ff58c6b-94fc-0d27-5cb8-99c6d6eeaab2
[directoryuri, userid, telephonenumber, mailid, uniqueidentifier]
2016-03-10 16:50:04,109 ERROR [DirSync-DBInterface] common.DSDBInterface (DSDBInterface.java:530) - DSDBInterface.updateUserInfo LDAP data discarded: Missing LDAP attribute: Attribute Count=5 AgreementId=1ff58c6b-94fc-0d27-5cb8-99c6d6eeaab2
[directoryuri, userid, telephonenumber, mailid, uniqueidentifier]
2016-03-10 16:50:04,111 ERROR [DirSync-DBInterface] common.DSDBInterface (DSDBInterface.java:530) - DSDBInterface.updateUserInfo LDAP data discarded: Missing LDAP attribute: Attribute Count=5 AgreementId=1ff58c6b-94fc-0d27-5cb8-99c6d6eeaab2
[directoryuri, userid, telephonenumber, mailid, uniqueidentifier]

4 Replies 4

can you check if you have configured the last name for the users whom you want to sync from AD to cucm, as from the logs we see "Missing LDAP attribute: Attribute Count=5"

also pls verify the configuration. refer the link below for best practices when deploying LDAP sync with CUCM.

http://www.cisco.com/c/en/us/td/docs/voice_ip_comm/cucm/srnd/collab10/collab10/directry.html#pgfId-1045284

 

Hi,

make sure you have end user active in LDAP and it is filled with all required fields in LDAP..

also check the search base or search rule if you have configured in CUCM..

Warm Regard's
Amit Sahrma

Hi there ,

May I know if u where able to fix it.

Anything specific to be configured on LDS ?

I m facing same issue.

Thx for help..

I had error "LDAP data discarded: Missing LDAP attribute" and it turned out that I forgot to enable synchronizing from LDAP server. I needed to delete LDAP directory entry, then go to: CUCM Admin -> System -> LDAP -> LDAP System -> check Enable Synchronizing from LDAP Server. Select to sync by sAMAccountName, mail, or some other type and click Save. After this I inserted LDAP directory again, and performed full sync, and it was successful.