OpenShift LDAP Group Sync Error "Invalid Credentials" ... data 531 ...
Issue
- Get the following error when attempting to do an LDAP group sync via 'adm groups sync" :
Error determining LDAP group membership for "CN=eng,OU=it,OU=internal,DC=foo,DC=bar,DC=com": could not bind to the LDAP server: LDAP Result Code 49 "Invalid Credentials": 80090308: LdapErr: DSID-0C09042F, comment: AcceptSecurityContext error, data 531, v2580.
could not bind to the LDAP server: LDAP Result Code 49 "Invalid Credentials": 80090308: LdapErr: DSID-0C09042F, comment: AcceptSecurityContext error, data 531, v2580
- Microsoft Active Directory returns the error "AcceptSecurityContext error, data 531".
- Specifically the 531, indicates "not permitted to logon at this workstation".
- This is used to limit the machines from which a user can log on, by DNS or NetBIOS name.
Environment
- Red Hat OpenShift Container Platform
- 3.x
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.