How to configure AD authentication for cluster when CIFS is not licensed
Applies to
- ONTAP 9
Description
This article describes the procedure to enable Active Directory (AD) domain users and groups to access the cluster and SVMs when the CIFS is not licensed.
If AD authentication is not configured properly, the following error is logged in the messages.log when the user attempts to login to cluster:
Messages.log:
00000027.046d4c91 3db22b6e Fri Oct 12 2018 12:11:25 +11:00 [auth_sshd:info:83202] Invalid user Domain\\AD_user from 10.21.xx.yy
00000027.046d4c94 3db22bd2 Fri Oct 12 2018 12:11:35 +11:00 [auth_sshd:error:83212] in do_pam_domain_auth(): ERROR: do_pam_domain_auth: AUTH of user: Domain\AD_user Failed
00000027.046d4c95 3db22bd2 Fri Oct 12 2018 12:11:35 +11:00 [auth_sshd:error:83202] error: PAM: authentication error for Domain\\AD_user from 10.21.xx.yy