OpenLDAP authentication fails when configured with nested groups or
posixgroups
Symptom
OpenLDAP authentication fails when the directory is configured with nested groups or posixgroups.
Cause
iLO does not support nested groups or posixgroups with OpenLDAP.
Action
Configure iLO with a group in which the LDAP user has a direct membership. Make sure the OpenLDAP
directory group has an objectClass of the type groupOfNames.
iLO Zero Sign In fails after domain controller OS reinstall
Symptom
The iLO web interface
Zero Sign In
option does not work after the domain controller OS is reinstalled.
Cause
The key version number sequence is reset when the domain controller OS is reinstalled.
Action
Generate and install a new Kerberos keytab file.
Failed iLO login with Active Directory credentials
Symptom
User authentication fails when iLO is configured to use Active Directory.
Cause
There is a certificate problem:
• An SSL certificate is not installed on the Active Directory server.
• An old SSL certificate on the Active Directory server points to a previously trusted CA with the same
name as the CA in the current certificate. This situation might happen if a certificate service is added
and removed, and then added again.
You can verify this cause by checking the SSL Connection test results on the
Directory Tests
page.
Action
1.
Open the MMC.
2.
Add the certificates snap-in.
3.
When prompted, select
Computer Account
for the type of certificates you want to view.
4.
To return to the certificates snap-in, click
OK
.
OpenLDAP authentication fails when configured with nested groups or
posixgroups
377