cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1813
Views
0
Helpful
2
Replies

DAG application source LDAP Bind Failed

Hemanth_B
Level 1
Level 1
1 Accepted Solution

Accepted Solutions

DuoKristina
Cisco Employee
Cisco Employee

First, the Search username format is wrong. Per the DAG AD authentication instructions you should specify the username in NTLM DOMAIN\username format. I am guessing yours should be TEST-AD\duomfa.

Second, your search base valueis wrong. CN=Users,CN=Builtin,DC=TEST_AD,DC=internal,CN=Administrators is not a valid DN for those containers in AD.

If you want to specify more than one search base they should be one per line, and they need to be complete DNs. So, this would be valid to search all those containers:

CN=Users,DC=TEST_AD,DC=internal
CN=Builtin,DC=TEST_AD,DC=internal
CN=Administrators,DC=TEST_AD,DC=internal
Duo, not DUO.

View solution in original post

2 Replies 2

DuoKristina
Cisco Employee
Cisco Employee

First, the Search username format is wrong. Per the DAG AD authentication instructions you should specify the username in NTLM DOMAIN\username format. I am guessing yours should be TEST-AD\duomfa.

Second, your search base valueis wrong. CN=Users,CN=Builtin,DC=TEST_AD,DC=internal,CN=Administrators is not a valid DN for those containers in AD.

If you want to specify more than one search base they should be one per line, and they need to be complete DNs. So, this would be valid to search all those containers:

CN=Users,DC=TEST_AD,DC=internal
CN=Builtin,DC=TEST_AD,DC=internal
CN=Administrators,DC=TEST_AD,DC=internal
Duo, not DUO.

Hemanth_B
Level 1
Level 1

Thank-you, it fixed the issue

Quick Links