<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic LDAP queries not working in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/LDAP-queries-not-working/m-p/116518#M21676</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;I have encountered a somewhat strange error regarding ldap queries.&lt;/P&gt;&lt;P&gt;After replacing hardware on two clusters, to new appliances and lifting them from R77.30 to R80.40,&amp;nbsp;&lt;/P&gt;&lt;P&gt;we see now that ldap is not working anymore.&lt;/P&gt;&lt;P&gt;This has two major impacts:&lt;/P&gt;&lt;P&gt;1. logs are not populated&lt;/P&gt;&lt;P&gt;2. remote access is not working as intended.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For remote access, we see that users are authenticated with generic* user. Tcpdump show us that ldap search request is sent, but it completely disregards the branches defined in ldap account unit, and only searches the last two DC=xxxx,DC=xxxx parts. Therefore, we see the ldap server send an error code 10, which means that the user is not found.&lt;/P&gt;&lt;P&gt;The customer still has a remote access cluster on R77.30, where it works just fine, and we also tested on a backup site running R80.20. There we see succesful ldap authentication when logging on with vpn client.&lt;/P&gt;&lt;P&gt;There has been no other changes done here, so im struggling to see why this would suddenly stop to work, just because we switched hardware and software version.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have a tac case going, but its progressing slowly, so was wondering if anyone in the community here has encountered anything similar,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 21 Apr 2021 10:58:15 GMT</pubDate>
    <dc:creator>KM1895</dc:creator>
    <dc:date>2021-04-21T10:58:15Z</dc:date>
    <item>
      <title>LDAP queries not working</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-queries-not-working/m-p/116518#M21676</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;I have encountered a somewhat strange error regarding ldap queries.&lt;/P&gt;&lt;P&gt;After replacing hardware on two clusters, to new appliances and lifting them from R77.30 to R80.40,&amp;nbsp;&lt;/P&gt;&lt;P&gt;we see now that ldap is not working anymore.&lt;/P&gt;&lt;P&gt;This has two major impacts:&lt;/P&gt;&lt;P&gt;1. logs are not populated&lt;/P&gt;&lt;P&gt;2. remote access is not working as intended.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For remote access, we see that users are authenticated with generic* user. Tcpdump show us that ldap search request is sent, but it completely disregards the branches defined in ldap account unit, and only searches the last two DC=xxxx,DC=xxxx parts. Therefore, we see the ldap server send an error code 10, which means that the user is not found.&lt;/P&gt;&lt;P&gt;The customer still has a remote access cluster on R77.30, where it works just fine, and we also tested on a backup site running R80.20. There we see succesful ldap authentication when logging on with vpn client.&lt;/P&gt;&lt;P&gt;There has been no other changes done here, so im struggling to see why this would suddenly stop to work, just because we switched hardware and software version.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have a tac case going, but its progressing slowly, so was wondering if anyone in the community here has encountered anything similar,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 21 Apr 2021 10:58:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-queries-not-working/m-p/116518#M21676</guid>
      <dc:creator>KM1895</dc:creator>
      <dc:date>2021-04-21T10:58:15Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP queries not working</title>
      <link>https://community.checkpoint.com/t5/General-Topics/LDAP-queries-not-working/m-p/116737#M21707</link>
      <description>&lt;P&gt;Try using the ldapsearch command manually to see what happens as a troubleshooting step.&lt;BR /&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk55040" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk55040&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 23 Apr 2021 17:42:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/LDAP-queries-not-working/m-p/116737#M21707</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-04-23T17:42:39Z</dc:date>
    </item>
  </channel>
</rss>

