Users unable to login to Groupwise with LDAP tree as authenticator

  • 3626365
  • 23-May-2007
  • 26-Apr-2012

Environment

Novell GroupWise 7
Novell Open Enterprise Server (Linux based)

Situation

Symptoms:
Groupwise 7 installed on Linux pointing to external LDAP authentication source.
The log file showed d06b and 65535 errors and users couldn't login.
LDAP traces showed 632 (no referrals) errors.

Resolution

Corrective Steps:
1. Add the /noldapx switch in the groupwise poa startup file. This will cause Groupwise to query LDAP without the ldapxs extentions.
2. For LDAP authentication to work properly, the Internet email address attribute must be populated for all users, as the email address is used in the query.


Additional Information

Root Cause:
Groupwise by default uses the ldapxs LDAP extentions, which contain users' context information of the tree in which GroupWise resides. This is done to improve authentication time. If the LDAP source is in a different tree, the user information may be different and cause errors and login failure.