secd.ldap.noServers and secd.conn.auth.failure after LDAPS is mismatched
Applies to
- ONTAP 9
- LDAP
- CIFS
Issue
- After a mismatch in the environment if LDAPS is required by AD (Active Directory) but set to false on the SVM or set to true on the SVM, but not required by AD, the following errors are observed in EMS:
[node1: secd: secd.conn.auth.failure:notice]: Vserver (SVM1) could not authenticate over the network to server (DC1). Error: Local error (Service: LDAP (Active Directory), Operation: SiteDiscovery).
[node1: secd: secd.ldap.noServers:EMERGENCY]: None of the LDAP servers configured for Vserver (SVM1) are currently accessible via the network for LDAP service type (Service: LDAP (Active Directory), Operation: SiteDiscovery).
- Folder NTFS permissions will not be allowed to be modified as the user cannot be successfully authenticated when
secd.ldap.noServerserror is present. The following error may also be displayed when attempting this:
The program cannot open the required dialog box because it cannot determine whether the computer named "host's FQDN" is joined to a domain.
