Directory server connect failed, Invalid credentials, Invalid directory server address or port – HP Remote Insight Lights-Out Edition II Board User Manual

Page 186: Directory server timeout, Unauthorized, couldn't find riloe ii object

Advertising
background image

Troubleshooting the RILOE II 186

Unauthorized, couldn't find RIB object

Unauthorized, no readable roles

Unable to read restrictions on object

Time Restriction Not Satisfied

IP Restriction Not Satisfied

Unauthorized

Directory Server connect failed

The RILOE II was not able to connect to the LDAP server. Be sure that the Directory Server Address on the
RILOE II Directory Settings Screen is correct, and that the port number corresponds to the LDAP SSL port
number used by that directory server, usually port 636. If the directory server address is a DNS name, be
sure that the DNS server is properly configured on the RILOE II Network Setting Screen, and that the DNS
name of the directory server resolves to the appropriate address using "nslookup" or a similar tool.

Many SSL problems are reported with this error; be sure your directory server is properly configured for
LDAP SSL connections. Refer to the installation prerequisites for Active Directory ("

Active Directory

installation prerequisites

" on page

83

) or eDirectory for more information on testing LDAP SSL

configurations.

Invalid credentials

The directory server has denied the authentication request. If configured, check the searchable contexts to
be sure the user exists in one of those contexts, or try specifying a fully distinguished name. Directory
servers will deny the authentication request if the user account has been disabled, locked out, or is
otherwise prevented from authenticating due to network address or time restrictions placed on the
account.

This error is common on eDirectory when periods are used to separate the name components, or the
components are partially specified. LDAP distinguished name components are separated by commas, not
periods, and must be preceded by

cn=,

or appropriate naming attribute name.

NOTE: The short form of the login name by itself does not tell the directory which domain you are trying to

access. You must provide the domain name or use the LDAP distinguished name of your account.

Invalid Directory Server address or port

The specified Directory Server address was empty, or the port number was set to 0. Specify the correct
server address or port.

Directory Server timeout

The server did not acknowledge the bind request within a reasonable amount of time, normally 20
seconds. The server may be under heavy load or otherwise unwilling to process the request. Try again
later.

This error can also occur if the Directory Server address and port correspond to a service other than LDAP
SSL.

Unauthorized, couldn't find RILOE II object

An error occurred while trying to read the RILOE II object. Be sure that the distinguished name specified in
the Directory Settings screen matches the location of the object within the directory. The distinguished
name must be a fully distinguished LDAP name.

Advertising