<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: AD Authentication in HPE OneView</title>
    <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654566#M141</link>
    <description>&lt;P&gt;I'm building a new install of&amp;nbsp;v1.10&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I used an hasty (inaccurate) example in my thread because I didn't want to publish my AD onto this forum.&amp;nbsp;You are correct the&amp;nbsp;group I was looking to use&amp;nbsp;was in the default container object for User Accounts in Active Directory, which as you pointed out is&amp;nbsp;&lt;SPAN&gt;NOT&lt;/SPAN&gt; an OU. The User account was off in a different OU container. I was concatenating the two together with the "+" and it didn't work. It started working when I created a group in the same&amp;nbsp;OU where the user&amp;nbsp;account was located and set that context into the configuration.&amp;nbsp; I've worked with AD since 2000 and forgot&amp;nbsp;that NOT an OU technicality lol&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks again&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;</description>
    <pubDate>Thu, 23 Oct 2014 19:49:19 GMT</pubDate>
    <dc:creator>GYoung</dc:creator>
    <dc:date>2014-10-23T19:49:19Z</dc:date>
    <item>
      <title>AD Authentication</title>
      <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6653298#M134</link>
      <description>&lt;P&gt;I have sucessfully configured the appliance to connect to our AD but then cannot login to the appliance or add a domain group using AD credentials. I'm using the appliance in trial mode until my licenses come in. Is this as limitation of the trial license mode?&lt;/P&gt;</description>
      <pubDate>Wed, 22 Oct 2014 15:43:28 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6653298#M134</guid>
      <dc:creator>GYoung</dc:creator>
      <dc:date>2014-10-22T15:43:28Z</dc:date>
    </item>
    <item>
      <title>Re: AD Authentication</title>
      <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6653680#M135</link>
      <description>&lt;P&gt;Hello, and welcome to the HP OneView Community forums.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;AD/LDAP authentication is not a licenseable feature to HP OneView, which means a trial license or purchased license would have no impact on the feature.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Remember, OneView only supports Cononical Name (CN) account names for Active Directory.&amp;nbsp; Did you use the same account you used to configure AD in the appliance when you tried to add a Directory Group?&lt;/P&gt;</description>
      <pubDate>Thu, 23 Oct 2014 03:46:08 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6653680#M135</guid>
      <dc:creator>ChrisLynch</dc:creator>
      <dc:date>2014-10-23T03:46:08Z</dc:date>
    </item>
    <item>
      <title>Re: AD Authentication</title>
      <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654300#M136</link>
      <description>&lt;P&gt;I did use the same account. That's the puzzling part. The configuration to AD was sucessful but then I can't&amp;nbsp;use that same AD account to login to the VM or connect to AD and add a CN group.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have also started over and rebuilt the VM from a new import with the same result.&amp;nbsp;I have opened a case with HP Support so maybe they can help figure&amp;nbsp;this out.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your reply.&amp;nbsp;I will update this post&amp;nbsp;with any helpful solution to this problem.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;</description>
      <pubDate>Thu, 23 Oct 2014 15:22:40 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654300#M136</guid>
      <dc:creator>GYoung</dc:creator>
      <dc:date>2014-10-23T15:22:40Z</dc:date>
    </item>
    <item>
      <title>Re: AD Authentication</title>
      <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654320#M137</link>
      <description>&lt;P&gt;Is the user account you used in the Search Context(OU container) you provided?&amp;nbsp; Please note that the AD/LDAP implementation does not support Subtree search yet, and you must specify the OU where your user account and groups are located.&amp;nbsp; You can add up to 4 Search Contexts.&amp;nbsp; E.g.: OU=users,OU=corp,dc=domain,dc=com+OU=groups,OU=corp,dc=domain,dc=com+OU=Admins,OU=corp,dc=domain,dc=com+OU=ops,OU=corp,dc=domain,dc=com&lt;/P&gt;</description>
      <pubDate>Thu, 23 Oct 2014 15:30:52 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654320#M137</guid>
      <dc:creator>ChrisLynch</dc:creator>
      <dc:date>2014-10-23T15:30:52Z</dc:date>
    </item>
    <item>
      <title>Re: AD Authentication</title>
      <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654360#M138</link>
      <description>&lt;P&gt;Short answer to your question is, Yes. What I haven't done is create a computer account for the VM and put in that configuration. Do I need that part? I thought that was optional.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;</description>
      <pubDate>Thu, 23 Oct 2014 15:59:06 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654360#M138</guid>
      <dc:creator>GYoung</dc:creator>
      <dc:date>2014-10-23T15:59:06Z</dc:date>
    </item>
    <item>
      <title>Re: AD Authentication</title>
      <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654492#M139</link>
      <description>&lt;P&gt;Ok. I figured it out.&lt;/P&gt;&lt;P&gt;Looks like the User Accounts &amp;amp; Groups need to be in the same OU.&lt;/P&gt;&lt;P&gt;My users&amp;nbsp;are in&amp;nbsp;cn=users and my groups are in cn=groups.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The model OU=users,OU=corp,dc=domain,dc=com+OU=groups,OU=corp,dc=domain,dc=com did not work.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When i built a group (OneViewAdmins) in the same OU with the users (gary)&amp;nbsp;it started working..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Ataboy to&amp;nbsp; &lt;A href="https://community.hpe.com/t5/user/viewprofilepage/user-id/1458" target="_self"&gt;&lt;SPAN class="login-bold"&gt;&lt;STRONG&gt;Chris Lynch, HP&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/A&gt;&amp;nbsp;for pointing in this direction.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 23 Oct 2014 18:30:23 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654492#M139</guid>
      <dc:creator>GYoung</dc:creator>
      <dc:date>2014-10-23T18:30:23Z</dc:date>
    </item>
    <item>
      <title>Re: AD Authentication</title>
      <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654536#M140</link>
      <description>&lt;P&gt;What version of the OneView appliance are you using?&amp;nbsp; We introduced the multiple search contexts in the 1.05 release, and I have plenty of customers using multiple search contexts without issue.&amp;nbsp; CN=Users is the default container object for User Accounts in Active Directory, but there is no CN=Groups default conatiner.&amp;nbsp; If you created an OU in the root of your domain, and are using the default Users container (remember, this is not an OU), then your search context should be:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;CN=users,DC=domain,DC=com+OU=groups,DC=domain,DC=com&lt;/P&gt;</description>
      <pubDate>Thu, 23 Oct 2014 19:18:48 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654536#M140</guid>
      <dc:creator>ChrisLynch</dc:creator>
      <dc:date>2014-10-23T19:18:48Z</dc:date>
    </item>
    <item>
      <title>Re: AD Authentication</title>
      <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654566#M141</link>
      <description>&lt;P&gt;I'm building a new install of&amp;nbsp;v1.10&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I used an hasty (inaccurate) example in my thread because I didn't want to publish my AD onto this forum.&amp;nbsp;You are correct the&amp;nbsp;group I was looking to use&amp;nbsp;was in the default container object for User Accounts in Active Directory, which as you pointed out is&amp;nbsp;&lt;SPAN&gt;NOT&lt;/SPAN&gt; an OU. The User account was off in a different OU container. I was concatenating the two together with the "+" and it didn't work. It started working when I created a group in the same&amp;nbsp;OU where the user&amp;nbsp;account was located and set that context into the configuration.&amp;nbsp; I've worked with AD since 2000 and forgot&amp;nbsp;that NOT an OU technicality lol&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks again&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;</description>
      <pubDate>Thu, 23 Oct 2014 19:49:19 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654566#M141</guid>
      <dc:creator>GYoung</dc:creator>
      <dc:date>2014-10-23T19:49:19Z</dc:date>
    </item>
    <item>
      <title>Re: AD Authentication</title>
      <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654586#M142</link>
      <description>&lt;P&gt;Hmmm...&amp;nbsp; That certainly should not be the case.&amp;nbsp; I would suggest you open a support case with (800) HPINVENT.&lt;/P&gt;</description>
      <pubDate>Thu, 23 Oct 2014 20:12:37 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6654586#M142</guid>
      <dc:creator>ChrisLynch</dc:creator>
      <dc:date>2014-10-23T20:12:37Z</dc:date>
    </item>
    <item>
      <title>Re: AD Authentication</title>
      <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6659080#M143</link>
      <description>&lt;P&gt;I need a bit of more data from you.&amp;nbsp; What version of the appliance did you deploy?&amp;nbsp; You can get it from Top Level Menu -&amp;gt; Settings and the Appliance panel.&amp;nbsp; We do have a patch coming that addresses some LDAP issues with 1.10.05.&lt;/P&gt;</description>
      <pubDate>Wed, 29 Oct 2014 18:06:06 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6659080#M143</guid>
      <dc:creator>ChrisLynch</dc:creator>
      <dc:date>2014-10-29T18:06:06Z</dc:date>
    </item>
    <item>
      <title>Re: AD Authentication</title>
      <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6659124#M144</link>
      <description>&lt;P&gt;I'm at &lt;SPAN&gt;1.10.03-103740, Jun 26, 2014. But I had re-installed the App so I have had the problem with both 1.10.03 and 1.10.05. I have worked around the problem by having the groups in with the user accounts so I've moved on.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I just installed the 1.10.05 update, thanks for the minder... :-P&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Cheers&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Oct 2014 20:00:25 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6659124#M144</guid>
      <dc:creator>GYoung</dc:creator>
      <dc:date>2014-10-29T20:00:25Z</dc:date>
    </item>
    <item>
      <title>Re: AD Authentication</title>
      <link>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6661180#M145</link>
      <description>&lt;P&gt;Please know that there are additional LDAP/AD issues with 1.10.05 that we are addressing in a future patch.&amp;nbsp; I do not have an ETA on its release right now, but do know that it is in testing and qualification.&amp;nbsp; Once it is available, an announcement will be made.&lt;/P&gt;</description>
      <pubDate>Fri, 31 Oct 2014 17:55:26 GMT</pubDate>
      <guid>https://community.hpe.com/t5/hpe-oneview/ad-authentication/m-p/6661180#M145</guid>
      <dc:creator>ChrisLynch</dc:creator>
      <dc:date>2014-10-31T17:55:26Z</dc:date>
    </item>
  </channel>
</rss>

