跳转到主内容
NetApp Response to Russia-Ukraine Cyber Threat
In response to the recent rise in cyber threat due to the Russian-Ukraine crisis, NetApp is actively monitoring the global security intelligence and updating our cybersecurity measures. We follow U.S. Federal Government guidance and remain on high alert. Customers are encouraged to monitor the Cybersecurity and Infrastructure Security (CISA) website for new information as it develops and remain on high alert.

使用 SSL/TLS 时, EMS 中的 "secd.ldap.noservers "

Views:
49
Visibility:
Public
Votes:
0
Category:
ontap-9
Specialty:
nas
Last Updated:

适用于

  • ONTAP
  • 第三方 LDAP 服务器
  • SSL/TLS 协议

问题

  • 在现有 LDAP 配置上启用 SSL/TLS 后、 EMS 中将开始显示以下消息

secd.ldap.noServers: None of the LDAP servers configured for Vserver (VS1) are currently accessible via the network for LDAP service type (Service: LDAP (Active Directory), Operation: SiteDiscovery).

  • Secd 日志包含以下某些条目

Required certificate with CA NAME is not installed

LDAP TLS Alert generated is 'fatal:unknown CA '

error:14090086:SSL routines:ssl3_get_server_certificate:certificate verify failed

RESULT_ERROR_LDAPSERVER_SERVER_DOWN:7642

LDAP TLS Alert generated is 'fatal:decrypt error'
 

error:0407006A:rsa routines:RSA_padding_check_PKCS1_type_1:block type is not 01
 

RESULT_ERROR_LDAPSERVER_CONNECT_ERROR:7652

由于无法再连接到 LDAP 服务器,因此对存储资源的访问可能会因配置而受到影响

 

Scan to view the article on your device
CUSTOMER EXCLUSIVE CONTENT

Registered NetApp customers get unlimited access to our dynamic Knowledge Base.

New authoritative content is published and updated each day by our team of experts.

Current Customer or Partner?

Sign In for unlimited access

New to NetApp?

Learn more about our award-winning Support