156
Using iDRAC6 With Microsoft Active Directory
I enabled certificate validation but I failed my Active Directory log in. I ran the
diagnostics from the GUI and the test result shows the following error message:
ERROR: Can't contact LDAP server,
error:14090086:SSL
routines:SSL3_GET_SERVER_CERTIFICATE:certificate
verify failed: Please check the correct
Certificate Authority (CA) certificate has been
uploaded to iDRAC. Please also check if the iDRAC
date is within the valid period of the
certificates and if the Domain Controller Address
configured in iDRAC matches the subject of the
Directory Server Certificate.
What could the problem be and how do I fix it?
If certificate validation is enabled, iDRAC6 uses the uploaded CA certificate
to verify the directory server certificate when iDRAC6 establishes the SSL
connection with the directory server. The most common reasons for failing
certification validation are:
•
iDRAC6 date is not within the valid period of the server certificate or
CA certificate. Check iDRAC6 time and the valid period of
your certificate.
•
The Domain Controller Addresses configured in iDRAC6 do not match
the Subject or Subject Alternative Name of the directory server certificate.
–
If you are using an IP address, see "I am using an IP address for a
Domain Controller Address, and I failed certificate validation. What
is the problem?".
–
If you are using FQDN, ensure you are using the FQDN of the domain
controller, and not the domain itself. For example, use
servername.example.com
and
not
example.com.
What should I check if I cannot log in to iDRAC6 using Active Directory?
First, diagnose the problem using the Test Settings feature. For directions,
see "My Active Directory log in failed. What do I do?"
Then, fix the specific problem indicated by the test results.
For additional
Summary of Contents for IDRAC6
Page 38: ...38 iDRAC6 Enterprise Overview ...
Page 84: ...84 Configuring the Managed Server ...
Page 120: ...120 Configuring iDRAC6 Enterprise Using the Web Interface ...
Page 160: ...160 Using iDRAC6 With Microsoft Active Directory ...
Page 166: ...166 Configuring Smart Card Authentication ...
Page 222: ...222 Using GUI Console Redirection ...
Page 228: ...228 Configuring the vFlash Media Card for Use With iDRAC6 ...
Page 270: ...270 Using the RACADM Command Line Interface ...
Page 308: ...308 Using iDRAC6 Configuration Utility ...
Page 334: ...334 Recovering and Troubleshooting the Managed System ...
Page 382: ...382 RACADM Subcommand Overview ...
Page 452: ...452 iDRAC6 Enterprise Property Database Group and Object Definitions ...
Page 462: ...462 Glossary ...
Page 472: ...472 Index ...