PowerFlex LDAP authentication for MDM access with multiple external OpenLDAP servers

Summary: Adding multiple LDAP servers with the same Distinguished Name for high availability purposes

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Symptoms

The customer tried adding multiple LDAP servers with the same Distinguished Name for high availability.

[root@node4 ~]# scli --add_ldap_service --ldap_service_uri "ldaps://10.xxx.xx.xxx" --ldap_base_dn "ou=user,dc=test,dc=org" --username_dn_format "uid=[USER],ou=user,dc=test,dc=org" --search_filter_format "(&(objectClass=inetOrgPerson)(uid=[USER])(memberOf=[GROUP]))"

Successfully added an LDAP service. Object ID xxxxxxxxxxxxxxxxx with Name: N/A, URI: ldaps://10.xxx.xx.xxx and base DN: ou=user,dc=test,dc=org

[root@node4 ~]# scli --add_ldap_service --ldap_service_uri "ldaps://10.xxx.xx.xxx" --ldap_base_dn "ou=user,dc=test,dc=org" --username_dn_format "uid=[USER],ou=user,dc=test,dc=org" --search_filter_format "(&(objectClass=inetOrgPerson)(uid=[USER])(memberOf=[GROUP]))"

Error: MDM failed command. Status: LDAP service entry with the same domain already exists.

Cause

It is not possible to add multiple LDAP servers with the same DN. PowerFlex does not support multiple LDAP servers with the same Base_DN.

Resolution

This feature is not supported by PowerFlex currently.
Article Properties
Article Number: 000174024
Article Type: Solution
Last Modified: 29 Apr 2025
Version:  4
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.