cancel
Showing results for 
Search instead for 
Did you mean: 
mcoen
Level 7

LDAP synchronisation error

I'm using ePO4.5 and EEPC v6. I have created a group in AD and put AD accounts into the group. I have then added this group as Encryption users on a client PC. I can then successfully do an LDAP synchronisation on the ePO server, and the correct accounts are pushed onto the client PC.

However, if certain AD accounts are members of the AD group, the LDAP sync fails. The task log just says it is starting to synch the AD group, and then the task finishes. The orion.log says, "ERROR [mfsSmiley Tongueool-2-thread-2] scheduler.Engine  - task [LDAP sychronisation] failed with exception
java.util.concurrent.ExecutionException: com.mcafee.orion.core.cmd.CommandException: Wrong LDAP server connection supplied".

I can't find any pattern for which AD accounts sync OK and which fail.

Any thoughts on where the problem lies would be greatly appreciated.

0 Kudos
7 Replies
peter_eepc
Level 15

Re: LDAP synchronisation error

Do you run ePO 4.5 Patch 1 ? I think this problem was resolved in Patch 1.

0 Kudos
mcoen
Level 7

Re: LDAP synchronisation error

Yes, patch 1 has been installed.

0 Kudos
peter_eepc
Level 15

Re: LDAP synchronisation error

Goto ePO "Menu" -> "Configuration" -> "Registered Servers".

Try to run "Test Connection" on "Registered Server Builder"  "Details" page of your LDAP server.

0 Kudos
mcoen
Level 7

Re: LDAP synchronisation error

Yes, the Test Connection is successful every time. The LDAP synchronisation works successfully too. But if I add, for instance, my AD account to the AD group being synchronised, the sync fails. Remove my account from the group, the sync works again. There is something about my, and certain other AD accounts, that the LDAP sync process does not like and it aborts.

0 Kudos
peter_eepc
Level 15

Re: LDAP synchronisation error

I know that this is a wild guess, but check if allowed characters section applies to your case.

https://kc.mcafee.com/corporate/index?page=content&id=KB65773

0 Kudos

Re: LDAP synchronisation error

Did you ever find a solution to this?  I am having the same issue.

0 Kudos
mcoen
Level 7

Re: LDAP synchronisation error

No resolution yet. I've had a call logged with McAfee for months now and they haven't come up with anything yet.

0 Kudos