跳转到主内容

IP无效的PTR导致ONTAP 9中出现secd.conn.auth.failure:notice或secd.ldap.noServers:EMERGENCY错误

Views:
10
Visibility:
Public
Votes:
0
Category:
ontap-9
Specialty:
nas<a>LDAP 签名</a><a>LDAP 密封</a><a>秒</a>
Last Updated:

适用场景

ONTAP 9

问题描述

  • 使用 LDAP 签名和 / 或签章保护 LDAP 服务器
  • EMS日志中的错误: secd.conn.auth.failure:noticesecd.ldap.noServers:EMERGENCY
  • 站点发现:
  • EMS

secd: secd.ldap.noServers:EMERGENCY]: None of the LDAP servers configured for Vserver <VServer Name> are currently accessible via the network

  • SECD:

[auth_secd:notice] GSSAPI Error: Unspecified GSS failure. Minor code may provide more information (Server not found in Kerberos database)

  • GPO处理:

SECD

.------------------------------------------------------------------------------.
                                 RPC FAILURE:
                       secd_rpc_gpo_get_list has failed
                        Result = 0, RPC Result = 6940
                   RPC received at Thu Feb 13 09:51:42 2020
------------------------------------------------------------------------------'

FAILURE: Unable to SASL bind to LDAP server using GSSAPI: Local error
Additional info: SASL(-1): generic failure: GSSAPI Error: Unspecified GSS failure.  Minor code may provide more information (Server not found in Kerberos database)
Unable to connect to LDAP (Active Directory) service on dc1.demo.netapp.com (Error: Local error)
No servers available for MS_LDAP_AD, vserver: 3, domain: demo.netapp.com.
Unable to make a connection (LDAP (Active Directory):DEMO.NETAPP.COM), result: 6940

  • 此错误状态 SPN (ldap/gc.demo.netapp.com)的详细信息不正确(dc1.demo.netapp.com:

info : [krb5 context 0991DC00] ccselect can't find appropriate cache for server principal ldap/gc.demo.netapp.com@

注意: 在数据包跟踪中 、TGS-REQ 返回错误 KRB5KDC_ERR_S_PRINCIPAL_UNKNOWN

Sign in to view the entire content of this KB article.

New to NetApp?

Learn more about our award-winning Support

NetApp provides no representations or warranties regarding the accuracy or reliability or serviceability of any information or recommendations provided in this publication or with respect to any results that may be obtained by the use of the information or observance of any recommendations provided herein. The information in this document is distributed AS IS and the use of this information or the implementation of any recommendations or techniques herein is a customer's responsibility and depends on the customer's ability to evaluate and integrate them into the customer's operational environment. This document and the information contained herein may be used solely in connection with the NetApp products discussed in this document.
Scan to view the article on your device