Unsolved
10 Posts
0
891
[LDAP] Import Directory Group Error objectGuid Empty
Hi all, I configuration ldap server, connect to server succsess. I used openldap server
But in step Import Directory Group, I can't import and error objectGuid is null or empty.
DELL-Erman O
Moderator
Moderator
•
2.2K Posts
0
June 9th, 2023 04:00
Hi, please update OME because available updates may fix LDAP import issues. And double check your LDAP server and configured attributes. I found a github link it could be helpful for you
"ome_domain_user_groups unable to import new directory groups" https://dell.to/3CqVfYN
"ome_user and Import Directory Group" https://dell.to/3CiSYPl
take a look at this video for nothing to miss it "Lightweight Directory Access Protocol integration in Dell EMC OpenManage" https://dell.to/3WUgrQF Enterprise Console
corntus
10 Posts
0
June 11th, 2023 19:00
Hi, thank you, but I have updated to the latest version of OME,Version 3.10.1 (Build 51), in step add Ldap, I've connect success to server ldap. (
This error occurs at step Import Directory Group. So, I will double check ldap server and configured attributes. If you have any other solution please let me know.
Many thanks,
DELL-Joey C
Moderator
Moderator
•
3.2K Posts
0
June 11th, 2023 22:00
Hi @corntus,
The error might be (most likely) to be related to LDAP objectGUID configuration attributes.
Do update us the outcome after you have checked.
corntus
10 Posts
0
June 12th, 2023 00:00
Hi, I can't find objectGUID attributes in ldap server (openldap). may be it doesn't have this attribute.
Open LDAP Authentication provider default: entryuuid
DELL-Erman O
Moderator
Moderator
•
2.2K Posts
0
June 12th, 2023 01:00
Hmm, I saw it freeipa uses the attribute ipauniqueID https://dell.to/3quiyhK this is might causing the situation. I would try to import it after trying to change attribute.
corntus
10 Posts
0
June 13th, 2023 18:00
I can't change attribute,do you have any solution?
DELL-Joey C
Moderator
Moderator
•
3.2K Posts
0
June 13th, 2023 20:00
Hi @corntus,
I tried to find a related article on OpenLDAP but none appeared in the search engine Google. We do not have any knowledge on OpenLDAP that could help your issue. GUID is a global unique ID that is used is AD. Perhaps, try adding a line NULL in objectGUID attribute on one of your user attributes to see if it helps. Again, to mention, we do not have any knowledge on OpenLDAP, hence unsure how you can configure similar to Microsoft AD.
corntus
10 Posts
0
June 14th, 2023 03:00
Hi. thank you.
My openldap works fine in other tools including idrac dell server, but openmanage doesn't work.
So, I wonder, Type of Directory "LDAP" of OME, but can't use
DELL-Erman O
Moderator
Moderator
•
2.2K Posts
0
June 14th, 2023 06:00
sorry to hear you're still having trouble with it. I'm not sure what we are missing really. I think there are might be some compatibility issues. I can recommend you contact software support team. They can do further analysis.
DELL-Young E
Moderator
Moderator
•
3.7K Posts
0
June 21st, 2023 21:00
Hello, I will try to ask the related team if this is something that can be updated.
corntus
10 Posts
0
June 21st, 2023 21:00
May be this ObjectGuid not support for LDAP (FREEI PA), or support team DELL for OME can update script fix this issue ?
corntus
10 Posts
0
June 25th, 2023 18:00
Hi, Do you have an answer to this problem?
DELL-Young E
Moderator
Moderator
•
3.7K Posts
0
June 25th, 2023 23:00
Hello for now could you kindly look at the mismatch we found and see if it helps? (Please see the attached) https://dell.to/3NPMSNi
Also please send your service tag to Dell_Erman by private message as your service tag is a private property.
1 Attachment
e7ef9fd0-ded0-4b6e-ab52-f10298f8692d-305435852.jpg
corntus
10 Posts
0
June 29th, 2023 02:00
I test connection with "Attribute of Group Membership: member" successful.
When I set "Attribute of Group Membership: Uniquemember". I received the notice...
corntus
10 Posts
0
June 30th, 2023 01:00
Hi, I did import group successful.
But I must add admin group for user login. if the admin group is not added, the user cannot login.
So all users if i want them to login OME i have to give them admin rights on my ldap server.
As such, they are also in the admin group on ldap.
why does OME allow login when user must belong to admin group on lđap server and not another group?