UniViewer impossible to authenticate the user with a Management Server using LDAP with SSL.
book
Article ID: 85735
calendar_today
Updated On:
Products
CA Automic Dollar Universe
Issue/Introduction
Error Message : Returned by the unicheckldap command ########################## app/bin/unicheckldap.bat -login <USERNAME> -password <PASSWORD>
[...]
Host: <LDAPHOST> Port: 636 SSL: true
[...]
FAILURE Login: <USERNAME> authentication failed
[...]
SEVERE: Authentication Exception javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C090334, comment: AcceptSecurityContext error, data 52e, vece ] at com.sun.jndi.ldap.LdapCtx.mapErrorCode(Unknown Source) at com.sun.jndi.ldap.LdapCtx.processReturnCode(Unknown Source) at com.sun.jndi.ldap.LdapCtx.processReturnCode(Unknown Source) at com.sun.jndi.ldap.LdapCtx.connect(Unknown Source) at com.sun.jndi.ldap.LdapCtx.<init>(Unknown Source) at com.sun.jndi.ldap.LdapCtxFactory.getUsingURL(Unknown Source) at com.sun.jndi.ldap.LdapCtxFactory.getUsingURLs(Unknown Source) at com.sun.jndi.ldap.LdapCtxFactory.getLdapCtxInstance(Unknown Source) at com.sun.jndi.ldap.LdapCtxFactory.getInitialContext(Unknown Source) at javax.naming.spi.NamingManager.getInitialContext(Unknown Source) at javax.naming.InitialContext.getDefaultInitCtx(Unknown Source) at javax.naming.InitialContext.init(Unknown Source) at javax.naming.InitialContext.<init>(Unknown Source) at javax.naming.directory.InitialDirContext.<init>(Unknown Source) at com.orsyp.central.ldap.SimpleLogin.login(SimpleLogin.java:47) at com.orsyp.central.ldap.LDAPManagerImpl.authenticate(LDAPManagerImpl. ava:123) at com.orsyp.central.ldap.LDAPcheck.main(LDAPcheck.java:101) FAILURE Login: <USERNAME> authentication failed ##########################
Patch level detected:Univiewer Management Server 4.0.00 Product Version: Dollar.Universe 6.0.0
Description :With a Management Server using LDAP with SSL, in the UniViewer login screen, it's not possible to authenticate the user.
Cause
Cause type: Configuration Root Cause: This is generated if the SSL certificate is not good.
Environment
OS: All OS Version: All
Resolution
The SSL certificate has to be verified and replaced.