<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ILO and Active Directory Integration in Server Management - Remote Server Management</title>
    <link>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924890#M2473</link>
    <description>The authentication failures mean that iLO was denied a connection to the directory server when it used those credentials.  It also attempts to use search contexts as applied to those credentials.&lt;BR /&gt;&lt;BR /&gt;However, if the credentials fail and if none of the contexts work either, then none of them can be validated.&lt;BR /&gt;&lt;BR /&gt;It would not get to this stage if there was not a directory server responding, so that is probably okay.  Perhaps there is some ambiguity in the username.&lt;BR /&gt;&lt;BR /&gt;Do you know the fully distinguished username to try using that?</description>
    <pubDate>Thu, 11 Jan 2007 15:17:01 GMT</pubDate>
    <dc:creator>acartes</dc:creator>
    <dc:date>2007-01-11T15:17:01Z</dc:date>
    <item>
      <title>ILO and Active Directory Integration</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924889#M2472</link>
      <description>I have setup my ILO port via the LDAP Migration utility (We are using LDAP without the schema changes). I have followed the instructions and validated the setup on the ILO port but for some reason I cannot get the darn thing to validate me. Every time I attempt to test the logon (user@domain.com) it responds with:&lt;BR /&gt;&lt;BR /&gt;Unable to authenticate test user user@domain.com&lt;BR /&gt;Ceasing tests.&lt;BR /&gt;&lt;BR /&gt;If I try using the domain\user logon method I get the following response:&lt;BR /&gt;&lt;BR /&gt;Unable to authenticate test user domain\user [Invalid credentials]&lt;BR /&gt;Ceasing tests.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;I have tried just about everything I can think of. One thing I have noticed is that the test for Directory User Context 1 is not being run before it attempts to validate my account. How can it do that? Shouldn't it validate my context before it attempts to validate my logon credentials?&lt;BR /&gt;&lt;BR /&gt;This is very frustrating. Can anyone who has made this work without extending their schema lend me some assistance?&lt;BR /&gt;&lt;BR /&gt;Thanks,&lt;BR /&gt;Tim</description>
      <pubDate>Thu, 11 Jan 2007 13:16:22 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924889#M2472</guid>
      <dc:creator>THemmerling</dc:creator>
      <dc:date>2007-01-11T13:16:22Z</dc:date>
    </item>
    <item>
      <title>Re: ILO and Active Directory Integration</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924890#M2473</link>
      <description>The authentication failures mean that iLO was denied a connection to the directory server when it used those credentials.  It also attempts to use search contexts as applied to those credentials.&lt;BR /&gt;&lt;BR /&gt;However, if the credentials fail and if none of the contexts work either, then none of them can be validated.&lt;BR /&gt;&lt;BR /&gt;It would not get to this stage if there was not a directory server responding, so that is probably okay.  Perhaps there is some ambiguity in the username.&lt;BR /&gt;&lt;BR /&gt;Do you know the fully distinguished username to try using that?</description>
      <pubDate>Thu, 11 Jan 2007 15:17:01 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924890#M2473</guid>
      <dc:creator>acartes</dc:creator>
      <dc:date>2007-01-11T15:17:01Z</dc:date>
    </item>
    <item>
      <title>Re: ILO and Active Directory Integration</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924891#M2474</link>
      <description>In the administrator groups part of directory settings in the ILO have you setup the group. Make sure you use a group that you created and not and in built group.&lt;BR /&gt;&lt;BR /&gt;try run the ilo test with your display name as well.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;If you do not have active x running on your pc try using your display name eg joe bloggs.&lt;BR /&gt;&lt;BR /&gt;If you do not have active x running on your pc try using your acount name. username@domain.com or domain\username.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;I did get directory integration to work without schema changes.&lt;BR /&gt;&lt;BR /&gt;steven</description>
      <pubDate>Fri, 12 Jan 2007 10:05:11 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924891#M2474</guid>
      <dc:creator>Steven Baillie</dc:creator>
      <dc:date>2007-01-12T10:05:11Z</dc:date>
    </item>
    <item>
      <title>Re: ILO and Active Directory Integration</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924892#M2475</link>
      <description>see&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://forums1.itrc.hp.com/service/forums/questionanswer.do?threadId=1005787" target="_blank"&gt;http://forums1.itrc.hp.com/service/forums/questionanswer.do?threadId=1005787&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;this is the info I use to get the integration to work.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;steven</description>
      <pubDate>Fri, 12 Jan 2007 10:31:19 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924892#M2475</guid>
      <dc:creator>Steven Baillie</dc:creator>
      <dc:date>2007-01-12T10:31:19Z</dc:date>
    </item>
    <item>
      <title>Re: ILO and Active Directory Integration</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924893#M2476</link>
      <description>I was able to authenticate using the fully qualified name (CN=xxxx\, xxx,OU=ouname,dc=domain,dc=com)&lt;BR /&gt;&lt;BR /&gt;I will follow up on the other ideas and let you know what I find out.&lt;BR /&gt;&lt;BR /&gt;Tim</description>
      <pubDate>Mon, 15 Jan 2007 11:43:42 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924893#M2476</guid>
      <dc:creator>THemmerling</dc:creator>
      <dc:date>2007-01-15T11:43:42Z</dc:date>
    </item>
    <item>
      <title>Re: ILO and Active Directory Integration</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924894#M2477</link>
      <description>Like Steven said, please make sure your clients ActivX is enabled.</description>
      <pubDate>Wed, 17 Jan 2007 09:07:57 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924894#M2477</guid>
      <dc:creator>barnett chan</dc:creator>
      <dc:date>2007-01-17T09:07:57Z</dc:date>
    </item>
    <item>
      <title>Re: ILO and Active Directory Integration</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924895#M2478</link>
      <description>This is such a frustrating setup. I have verified that Active-X is enabled on my machine. Then I checked to make sure that my user account is a member of the group that I have defined. My directory context is dc=domain,dc=com.&lt;BR /&gt;&lt;BR /&gt;Here are the results of my login attempts:&lt;BR /&gt;&lt;BR /&gt;Full Qualified Name - Successful login&lt;BR /&gt;domain\username - Invalid credentials&lt;BR /&gt;username@domain - unable to authenticate no reason given&lt;BR /&gt;&lt;BR /&gt;Any other ideas?</description>
      <pubDate>Wed, 17 Jan 2007 12:25:56 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924895#M2478</guid>
      <dc:creator>THemmerling</dc:creator>
      <dc:date>2007-01-17T12:25:56Z</dc:date>
    </item>
    <item>
      <title>Re: ILO and Active Directory Integration</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924896#M2479</link>
      <description>I could only get joe bloggs to work in the testing part of the ILO and not domain\username or username@domain.com.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;however when I try to login to the ilo from my pc I could login as domain\username or username@domain.com with activx enabled.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;I hope this helps.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;steven</description>
      <pubDate>Thu, 18 Jan 2007 04:44:42 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924896#M2479</guid>
      <dc:creator>Steven Baillie</dc:creator>
      <dc:date>2007-01-18T04:44:42Z</dc:date>
    </item>
    <item>
      <title>Re: ILO and Active Directory Integration</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924897#M2480</link>
      <description>&amp;lt;&lt;LIGHT goes="" on=""&gt;&amp;gt;&lt;BR /&gt;The Login page to iLO uses ActiveX to resolve the username with greater precision.&lt;BR /&gt;&lt;BR /&gt;The iLO Directory settings test page does not use ActiveX.  In he iLO directory tests case, the only resolution attempted is by applying the search contexts.  This implies that you may have greater credentials flexibility on the login page than on the directory tests page.&lt;BR /&gt;&lt;BR /&gt;As far as the tests, the credentials must be authenticated before any of the successive memberships can be applied.  However, the search contexts are applied in an attempt to authenticate; they just cannot be validated unless they are part of a successful authentication.&lt;BR /&gt;&lt;BR /&gt;You might want to install a search context like&lt;BR /&gt;ou=ouname,dc=domain,dc=com&lt;BR /&gt;or&lt;BR /&gt;@domain.com&lt;BR /&gt;&lt;BR /&gt;and then iLO will apply the username to those search contexts.  Of course, if the directory service rejects them...&lt;BR /&gt;&lt;BR /&gt;You may want to try using a different tool to access the directory:  the LDP tool that ships with Windows.&lt;BR /&gt;Try a simple ldap authentication using the same name/password. Use the "SIMPLE" method under the "Advanced" area of the Bind dialog and do not use the "domain" checkbox or text. Type the name as given to ilo "domain\username" or "user@domain" in the username box.  LDP will give you more details on why the invalid credentials error is occurring.&lt;/LIGHT&gt;</description>
      <pubDate>Fri, 19 Jan 2007 10:25:04 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-and-active-directory-integration/m-p/3924897#M2480</guid>
      <dc:creator>acartes</dc:creator>
      <dc:date>2007-01-19T10:25:04Z</dc:date>
    </item>
  </channel>
</rss>

