Unsolved

This post is more than 5 years old

2 Posts

3266

September 5th, 2019 16:00

LDAP client settings on NAS server are not valid within domain

We have a run of the mill FreeIPA server that we are trying to integrate this Dell Unity box with to provide kerberized NFS shares.

I can successfully configure my "NFS Server" in dell unity, however when I get to the "LDAP/NIS" configuration of the setup process...

 

I put in "Authentication: Kerberos", put in my port, the Base DN: (I get it from the file /etc/ipa/default.conf), and then specify my principal and give it my password. I'm currently giving it a admin account username and password just so I can rule out a permissions issue.

After I click "Apply" it does its thing for a few minutes and then I'll start getting warnings in the log such as...

"In the NAS server , ONE LDAP server for Domain goes back from failure."

"LDAP client settings on NAS server are not valid within domain ".

Can someone tell me what the Dell Unity server is expecting in the "Specify custom principal"? Is there some other configuration that I should be doing to get it to work? Anyone else use FreeIPA and get it to authenticate with their Dell Unity box?

 

2 Posts

September 9th, 2019 12:00

I am also just working this today.. Apply takes just fine then I try the "Verify Connection" and I get "Could not connect to the LDAP server. Please recheck your LDAP configuration under Directory Services. (Error Code:0x6000193)" Can't find anything about ldap or domainjoin or the user i'm trying to connect with in any of the unity logs (/EMC/C4Core/log/*). It's like it's not really trying or I don't know where to look for errors.

2 Posts

September 9th, 2019 12:00

I should clarify that i'm trying to connect Unity authentication to FreeIPA before creating the NAS server.

2 Posts

September 10th, 2019 06:00

@silvertab 

I figured out the issue I was having to I think. I wrote a guide and they published it on the FreeIPA HowTo site.

www.freeipa.org/page/Howto/Integrating_Dell_EMC_Unity

Also see this mailing list for more information on the issue.

lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org/thread/OV672JPHLDQYGQLEVHBNFXSVYFZ6FEGM/

 

No Events found!

Top