How can AD connectivity issues impact authentication for ONTAP local admin users?
Applies to
- ONTAP 9
- ONTAP administrator authentication
- ZAPI/REST-API
Answer
- The ONTAP HTTP server relies on MGWD for authentication.
- If both Active Directory (AD) domain users and ONTAP local admin users access the HTTP server and AD domain authentication is unavailable, AD users won't be able to authenticate.
- If AD domain users continue to connect, this can cause RPC requests to MGWD to time out, impacting both domain and password authentication
Apache error logAuthentication error (user adminuser1): Failed to invoke RPC with uncached client: RPC: Timed out; netid=tcp fd=xx TO=25.0s TT=25.000s...
Additional Information
additionalInformation_text
