NSX LDAP server connection status in Failed state - An undetermined error occurred
search cancel

NSX LDAP server connection status in Failed state - An undetermined error occurred

book

Article ID: 400294

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

NSX appliance cannot reach Active Directory server for LDAP authentication

  • An LDAP Authentication Provider is configured in NSX.
  • Within the NSX User Interface > User Management > LDAP > Connection Status returns - "Failed - An undetermined error occurred".
  • NSX manager is able to connect to the LDAP server via CLI on port 389
  • crl_checking_enabled is set to false
  • NSX Manager log shows the following:

/var/log/proton/nsxapi.log

[TIMESTAMP] NSX-MGR NSX 4699 POLICY [nsx@6876 comp="nsx-manager" level="WARNING" subcomp="manager"] Parent cannot be found for path /infra/realized-state/enforcement-points/default/services/nsservices/SERVICE:MS_Remote_Desktop_Licensing,SERVICE_ENTRY:LDAP-UDP/alarms/########-####-####-####-############

 

[TIMESTAMP] NSX-MGR NSX 4699 POLICY [nsx@6876 comp="nsx-manager" errorCode="PM0" level="ERROR" subcomp="manager"] Created alarm Alarm [policyPath=/infra/realized-state/enforcement-points/default/services/nsservices/SERVICE:MS_Remote_Desktop_Licensing,SERVICE_ENTRY:LDAP/alarms/########-####-####-####-############, message=java.lang.NullPointerException,errorId=PROVIDER_INVOCATION_FAILURE, path=null, apiError=null, sourceSiteId=null].

Environment

VMware NSX

VMware NSX-T Data Center

Cause

The NSX manager is unable to connect to the LDAP Server

Operating System (OS) related issue with the LDAP server

Resolution

Engage network/systems team to investigate the status of the LDAP server

Workaround:

  • Redeploy the LDAP Server