'SecD Error: no connections available' when resetting CIFS domain password
Applies to
- ONTAP 9
- CIFS
- Microsoft Active Directory (AD)
Issue
- When attempting to reset the CIFS domain password for an SVM, the following error is encountered:
::> vserver cifs domain password reset -vserver SVM1
Enter your user ID: user1
Enter your password:
Error: command failed: Password update failed. Reason: SecD Error: no
connections available.
- SECD logs show the following error:
[kern_secd:info:10248] Error: CIFS server password reset procedure failed
[kern_secd:info:10248] [ 10845] Successfully connected to ip 192,168.0.100:100, port 389 using TCP
[kern_secd:info:10248] [ 10845] Entry for host-address: 192,168.0.100:100 not found in the current source: FILES. Ignoring and trying next available source
[kern_secd:info:10248] [ 10846] Source: DNS unavailable. Entry for host-address:192,168.0.100:100 not found in any of the available sources
[kern_secd:info:10248] [ 10847] Entry for host-name: NodeA not found in any of the available sources
[kern_secd:info:10248] [ 10858] Successfully connected to ip 192.168.2.100, port 88 using TCP
[kern_secd:info:10248] [ 10895] Unable to SASL bind to LDAP server using GSSAPI: Local error
[kern_secd:info:10248] [ 10895] Unable to connect to LDAP (Active Directory) service on domain.com (Error: Local error)
[kern_secd:info:10248] [ 10918] Successfully connected to ip 192.168.2.100, port 88 using TCP
[kern_secd:info:10248] [ 11076] Could not authenticate as 'SVM1$@domain.com': Invalid Credentials (KRB5KDC_ERR_PREAUTH_FAILED).
[kern_secd:info:10248] [ 11104] Successfully connected to ip 192.168.2.100, port 88 using TCP
[kern_secd:info:10248] [ 11321] Successfully connected to ip 192,168.0.100, port 389 using TCP
[kern_secd:info:10248] [ 11322] Entry for host-address: 192,168.0.100 not found in the current source: FILES. Ignoring and trying next available source
[kern_secd:info:10248] [ 11322] Source: DNS unavailable. Entry for host-address:192,168.0.100 not found in any of the available sources
[kern_secd:info:10248] [ 11324] Entry for host-name: NodeA not found in any of the available sources
[kern_secd:info:10248] [ 11335] Successfully connected to ip 192.168.2.100, port 88 using TCP
[kern_secd:info:10248] [ 11375] Unable to SASL bind to LDAP server using GSSAPI: Local error
[kern_secd:info:10248] [ 11376] Unable to connect to LDAP (Active Directory) service ondomain.com (Error: Local error)
[kern_secd:info:10248] [ 11376] No servers available for MS_LDAP_AD, vserver: 3, domain: domain.com.
[kern_secd:info:10248] [ 11376] Unable to make a connection (LDAP (Active Directory):domain.com), Result: RESULT_ERROR_SECD_NO_SERVER_AVAILABLE
[kern_secd:info:10248] [ 11376] Retry requested, but the retry window (7000 ms) has expired; giving up.
