Anonymous_User Absent Member.
Absent Member.
172 views

Active Directory with LDAP driver


Hi everyone,

Is it possible to use an LDAP driver with Active Directory ? It seems
that it's not the case : the schema can't be retrieved.
Using the 389 port, the trace file indicates that confidentiality is
required (even though I can access it with an ldap browser and a 389
ldap connection).
When I use the 636 port I get Connection lost waiting for results from
.... java.io.EOFException: BERDecoder: decode: EOF in Identifier

Any ideas ?


--
karimbouami
------------------------------------------------------------------------
karimbouami's Profile: https://forums.netiq.com/member.php?userid=6191
View this thread: https://forums.netiq.com/showthread.php?t=49672

Labels (1)
0 Likes
3 Replies
Anonymous_User Absent Member.
Absent Member.

Re: Active Directory with LDAP driver

On 1/13/2014 11:24 AM, karimbouami wrote:
>
> Hi everyone,
>
> Is it possible to use an LDAP driver with Active Directory ? It seems
> that it's not the case : the schema can't be retrieved.
> Using the 389 port, the trace file indicates that confidentiality is
> required (even though I can access it with an ldap browser and a 389
> ldap connection).
> When I use the 636 port I get Connection lost waiting for results from
> ... java.io.EOFException: BERDecoder: decode: EOF in Identifier
>
> Any ideas ?
>
>

Yes, the LDAP driver will work. You will just limit yourself in terms of functionality.
You will need to configure SSL on your AD server which is not a big deal and only takes about 10
minutes. But since the LDAP driver and the AD driver are licensed together I would encourage you to
use the AD driver as it will provide you more functionality.


--
-----------------------------------------------------------------------
Will Schneider
Knowledge Associate http://forums.netiq.com

If you find this post helpful, please click on the star below.
0 Likes
Anonymous_User Absent Member.
Absent Member.

Re: Active Directory with LDAP driver


I was coming to the forum to ask the same question. I'll give it a try.
AD is handled by another state agecny. We have tried for years but
they will not allow the installation of the loader. I've written a bash
script to one by one compare users and send a ldapmodify to AD if
attrirubte mismatches are found but this process is slow so we only run
it once a day. Would be nice to have the LDAP driver do it for us.


--
ncisrael
------------------------------------------------------------------------
ncisrael's Profile: https://forums.netiq.com/member.php?userid=769
View this thread: https://forums.netiq.com/showthread.php?t=49672

0 Likes
Anonymous_User Absent Member.
Absent Member.

Re: Active Directory with LDAP driver

On 1/13/2014 12:55 PM, ncisrael wrote:
> AD is handled by another state agecny. We have tried for years but
> they will not allow the installation of the loader.


You can run it on your own windows machine. There is ZERO requirement to run it on the DC and I
will stand staunchly behind that you should never run it on a DC. That is a bad design in my book.
At least for a large customer.

For others that may read this, if you are doing Exchange provisioning I'm even more against the DC
running the RL. End the madness people.


--
-----------------------------------------------------------------------
Will Schneider
Knowledge Associate http://forums.netiq.com

If you find this post helpful, please click on the star below.
0 Likes
The opinions expressed above are the personal opinions of the authors, not of Micro Focus. By using this site, you accept the Terms of Use and Rules of Participation. Certain versions of content ("Material") accessible here may contain branding from Hewlett-Packard Company (now HP Inc.) and Hewlett Packard Enterprise Company. As of September 1, 2017, the Material is now offered by Micro Focus, a separately owned and operated company. Any reference to the HP and Hewlett Packard Enterprise/HPE marks is historical in nature, and the HP and Hewlett Packard Enterprise/HPE marks are the property of their respective owners.