<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Error when configuring LDAP authentication over SSL to Active Directory in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Error-when-configuring-LDAP-authentication-over-SSL-to-Active/m-p/95278#M19856</link>
    <description>&lt;P&gt;I have installed Splunk on a Windows 2012 server.  I am able to configure unsecured LDAP to a Windows domain controller, but as soon as I enable LDAP over SSL and change the port, I receive the error in Splunk Web:&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;Encountered the following error while trying to update: In handler 'LDAP-auth': strategy="MyLDAPStrategy" Error binding to LDAP. reason="Can't contact LDAP server"&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;Additionally, in SPLUNKD.log I see the following limited info:&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;07-15-2013 11:02:33.221 -0500 ERROR ScopedLDAPConnection - strategy="MyLDAPStrategy" Error binding to LDAP. reason="Can't contact LDAP server"&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;07-15-2013 11:02:33.221 -0500 ERROR AdminHandler:AuthenticationHandler - strategy="MyLDAPStrategy" Error binding to LDAP. reason="Can't contact LDAP server"&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;I have reviewed the instructions listed &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Security/ConfigureLDAPwithSplunkWeb"&gt;here&lt;/A&gt;, including placing the root CA cert of the LDAP server certificate in &lt;STRONG&gt;$SPLUNK_HOME/etc/openldap/certs/&lt;/STRONG&gt; and then modifying the &lt;STRONG&gt;ldap.conf&lt;/STRONG&gt; file accordingly.  I have confirmed basic connectivity on the LDAPS port (636) of the domain controller using telnet client from the Splunk server.&lt;/P&gt;

&lt;P&gt;Could anyone provide some additional insight or ideas into what I might be missing?  Help will be greatly appreciated.&lt;/P&gt;</description>
    <pubDate>Mon, 15 Jul 2013 18:07:49 GMT</pubDate>
    <dc:creator>castellowc</dc:creator>
    <dc:date>2013-07-15T18:07:49Z</dc:date>
    <item>
      <title>Error when configuring LDAP authentication over SSL to Active Directory</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Error-when-configuring-LDAP-authentication-over-SSL-to-Active/m-p/95278#M19856</link>
      <description>&lt;P&gt;I have installed Splunk on a Windows 2012 server.  I am able to configure unsecured LDAP to a Windows domain controller, but as soon as I enable LDAP over SSL and change the port, I receive the error in Splunk Web:&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;Encountered the following error while trying to update: In handler 'LDAP-auth': strategy="MyLDAPStrategy" Error binding to LDAP. reason="Can't contact LDAP server"&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;Additionally, in SPLUNKD.log I see the following limited info:&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;07-15-2013 11:02:33.221 -0500 ERROR ScopedLDAPConnection - strategy="MyLDAPStrategy" Error binding to LDAP. reason="Can't contact LDAP server"&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;&lt;STRONG&gt;07-15-2013 11:02:33.221 -0500 ERROR AdminHandler:AuthenticationHandler - strategy="MyLDAPStrategy" Error binding to LDAP. reason="Can't contact LDAP server"&lt;/STRONG&gt;&lt;/P&gt;

&lt;P&gt;I have reviewed the instructions listed &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/Security/ConfigureLDAPwithSplunkWeb"&gt;here&lt;/A&gt;, including placing the root CA cert of the LDAP server certificate in &lt;STRONG&gt;$SPLUNK_HOME/etc/openldap/certs/&lt;/STRONG&gt; and then modifying the &lt;STRONG&gt;ldap.conf&lt;/STRONG&gt; file accordingly.  I have confirmed basic connectivity on the LDAPS port (636) of the domain controller using telnet client from the Splunk server.&lt;/P&gt;

&lt;P&gt;Could anyone provide some additional insight or ideas into what I might be missing?  Help will be greatly appreciated.&lt;/P&gt;</description>
      <pubDate>Mon, 15 Jul 2013 18:07:49 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Error-when-configuring-LDAP-authentication-over-SSL-to-Active/m-p/95278#M19856</guid>
      <dc:creator>castellowc</dc:creator>
      <dc:date>2013-07-15T18:07:49Z</dc:date>
    </item>
    <item>
      <title>Re: Error when configuring LDAP authentication over SSL to Active Directory</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Error-when-configuring-LDAP-authentication-over-SSL-to-Active/m-p/95279#M19857</link>
      <description>&lt;P&gt;I have the same issue, installing SPLUNK 5.0.4 on a Windows 2k8 R2 server. authenticating to a Windows 2008 native domain.&lt;BR /&gt;
Testing LDAP using LDAP Search v4.5 (from SecurityXploded)I can make a secure connection to the ldap server and return a list of users, however with exactly the same BIND account and base DN strings in Splunk I am getting "Error binding to LDAP. reason="Can't contact LDAP server"&lt;/P&gt;</description>
      <pubDate>Mon, 19 Aug 2013 22:35:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Error-when-configuring-LDAP-authentication-over-SSL-to-Active/m-p/95279#M19857</guid>
      <dc:creator>JohnHowellANZ</dc:creator>
      <dc:date>2013-08-19T22:35:20Z</dc:date>
    </item>
    <item>
      <title>Re: Error when configuring LDAP authentication over SSL to Active Directory</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Error-when-configuring-LDAP-authentication-over-SSL-to-Active/m-p/95280#M19858</link>
      <description>&lt;P&gt;We're seeing the exact same issue - can bind just fine without SSL on 389 but as soon as we force the use of SSL on our domain controllers by setting the "Domain Controller: LDAP server signing requirements" entry to "Require signing" it throws the error you got. We're tried both 636 and 3269 for the port with no luck. &lt;/P&gt;

&lt;P&gt;Our environment consists of a Windows Server 2008 R2 DC and a Splunk 6.0.1 install. &lt;/P&gt;</description>
      <pubDate>Thu, 30 Jan 2014 02:07:31 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Error-when-configuring-LDAP-authentication-over-SSL-to-Active/m-p/95280#M19858</guid>
      <dc:creator>spsponger2</dc:creator>
      <dc:date>2014-01-30T02:07:31Z</dc:date>
    </item>
  </channel>
</rss>

