This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

No groups have been found for this user - adirectory/ldap

I know that I have tried this test before and it worked, but every time I test user authentication under Definitions and Users > Authentication Services > Servers, I get "Denied - No groups have been found for this user".

The UTM has been in use for over a year and we are not having any authentication issues, but in adding an LDAP server for UPN authentication, the test always fails. I went back and tested the adirectory servers that were already created and got the same result. I have tried every permutation of user name that I can think of:

domain\user.name

user.name@domain.com

"User Name"

CN=user.name

I got to be missing something simple, the server test itself works fine. Just the user test fails.



This thread was automatically locked due to age.
  • Hi Tim,

    I can confirm that I have the same "issue". However all authentication - for example on the portal - works fine. Maybe some kind of bug in the admin interface?

    Daniel

  • NUTM-6356  

    [WebAdmin] AD User Test fails after first creation of an authentication server

    I am hoping that the patch released today will address this issue. Version 9.410-6.

  • Got the same issue, on allready configured UTM SG210 it works fine, on newly configured UTM SG105 it does not work. Both are on version 9.411-3, ADs are same on both DCs, same groups are created and set info BaseDN...

    On SG105:

    Domain user:

    User authentication:

    Authentication test passed.


    User is a member of the following groups:

    No groups have been found for this user
     
     
    What wonders me...:
    Domain admin:
    User authentication:

    Authentication test passed.


    User is a member of the following groups:

    VPN Users
     
    they both are in the same VPN Users group, why does domain admin works? Domain user is also not able to see Remote Access tab in user portal... Admin does...
     
    Thank you, Vitek
  • Check your prefetch setting to sync AD. Definitions & Users>Authentication Services>Advanced. The minimum period you can set the UTM to sync with AD is once every 24 hours. You can manually sync with AD and that will correct this.