windows-server-2008-r2 – NetApp FAS 2040 LDAP Win2k8R2

前端之家收集整理的这篇文章主要介绍了windows-server-2008-r2 – NetApp FAS 2040 LDAP Win2k8R2前端之家小编觉得挺不错的,现在分享给大家,也给大家做个参考。
我试图让我的FAS2040使用LDAP操作用户查找,下面是文件管理器配置选项:
filer> options ldap
ldap.ADdomain                dc1.colour.domain.local
ldap.base                  OU=Users,OU=something1,OU=something2,OU=darkside,DC=colour,DC=domain,DC=local
ldap.base.group
ldap.base.netgroup
ldap.base.passwd
ldap.enable                  on
ldap.minimum_bind_level      anonymous
ldap.name                    domain-admin-account
ldap.nssmap.attribute.gecos  gecos
ldap.nssmap.attribute.gidNumber gidNumber
ldap.nssmap.attribute.groupname cn
ldap.nssmap.attribute.homeDirectory homeDirectory
ldap.nssmap.attribute.loginShell loginShell
ldap.nssmap.attribute.memberNisNetgroup memberNisNetgroup
ldap.nssmap.attribute.memberUid memberUid
ldap.nssmap.attribute.netgroupname cn
ldap.nssmap.attribute.nisNetgroupTriple nisNetgroupTriple
ldap.nssmap.attribute.uid    uid
ldap.nssmap.attribute.uidNumber uidNumber
ldap.nssmap.attribute.userPassword userPassword
ldap.nssmap.objectClass.nisNetgroup nisNetgroup
ldap.nssmap.objectClass.posixAccount posixAccount
ldap.nssmap.objectClass.posixGroup posixGroup
ldap.passwd                  ******
ldap.port                    389
ldap.servers
ldap.servers.preferred
ldap.ssl.enable              off
ldap.timeout                 20
ldap.usermap.attribute.unixaccount unixaccount
ldap.usermap.attribute.windowsaccount sAMAccountName
ldap.usermap.base
ldap.usermap.enable          on

输出nsswitch.conf:

hosts: files dns
passwd: ldap files 
netgroup: ldap files 
group: ldap files 
shadow: files nis

错误消息:

[filer: auth.ldap.trace.LDAPConnection.statusMsg:info]: AUTH: TraceLDAPServer- Starting AD LDAP server address discovery for dc1.colour.domain.LOCAL.
[filer: auth.ldap.trace.LDAPConnection.statusMsg:info]: AUTH: TraceLDAPServer- Found no AD LDAP server addresses using DNS site query (site).
[filer: auth.ldap.trace.LDAPConnection.statusMsg:info]: AUTH: TraceLDAPServer- Found no AD LDAP server addresses using generic DNS query.
Could not get passwd entry for name = <random user>

the filer can ping the FQDN of dc1
the filer can ping the IP of dc1
the filer cannot ping "dc1"

我不确定我哪里出错了,所以任何指针都会很棒.

所以你没有列出服务器IP.因此,它试图使用域名的DNS RR记录.可以吗?它应该有一个_msdcs.domain.com条目,其中包含域中所有域控制器的IP地址列表.听起来像第二个和第三个错误行指出了这一点.

我的猜测是,无法获取name =< random user>的passwd条目错误是先前错误的级联.

猜你在找的Windows相关文章