Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

Configure WAS 6.1 with Active Directory LDAP

636 views
Skip to first unread message

cho...@hk1.ibm.com

unread,
Feb 1, 2008, 2:27:51 PM2/1/08
to
I'm testing on configuration of WAS6.1 with Active directory based on the installation guide with the following:<br />
Primary administrative user name: wasadmin (i.e. AD account)<br />
type of LDAP server: Active Directory<br />
Host: localhost<br />
port: 389<br />
base distinguished name (DN): dc=garfieldword,dc=com<br />
Bind distinguised name (DN): cn=root,cn=users,dc=garfieldword,dc=com (i.e. AD account)<br />
bind password: &lt;root password on AD&gt;<br />
<br />
But, I always got the error message 'SECJ7333E: Could not find admin name in the specified user registry'.<br />
<br />
Anyone has experience on AD with WAS. Please help. Thanks in adances.

Peer Hebing

unread,
Feb 2, 2008, 6:35:40 AM2/2/08
to
Hi

Explanation Admin name does not exist in the specified user registry
Action Ensure the admin name exists in the user registry prior to
executing command

Message has been deleted

Peer Hebing

unread,
Feb 2, 2008, 6:41:49 AM2/2/08
to
Hi

cho...@hk1.ibm.com wrote:

> But, I always got the error message 'SECJ7333E: Could not find admin name in the specified user registry'.

> Anyone has experience on AD with WAS. Please help. Thanks in adances.

SECJ7333E: Could not find admin name in the specified user registry


Explanation Admin name does not exist in the specified user registry
Action Ensure the admin name exists in the user registry prior to
executing command

So the question is: Do you have an Account for wasadmin in your Active
Directory?
hth
Peer

rol...@ar.ibm.com

unread,
Feb 8, 2008, 3:45:23 AM2/8/08
to
Hi,<br />
WAS user in your case "cn=root,cn=users,dc=garfieldword,dc=com" must have read access to "cn=root,cn=users,dc=garfieldword,dc=com" and "dc=garfieldword,dc=com" why don't you try to use a ldap client browser bind as "cn=root,cn=users,dc=garfieldword,dc=com" .<br />
<p />
Bye.

jainn...@gmail.com

unread,
Feb 8, 2008, 7:30:12 AM2/8/08
to
Hi <br />
please try given the full qualified name.<br />
eg: cn=wasadmin,cn=users,dc=garfieldword,dc=com<br />
<br />
Thanks

maximo...@puntoip.es

unread,
Feb 14, 2008, 1:00:21 AM2/14/08
to
Hi,<br />
<br />
I have a similar problem to GarfieldWorld.<br />
<br />
In my case the error is following:<br />
<br />
javax.naming.AuthenticationException: <a href="http://www-128.ibm.com/developerworks/forums/">LDAP: error code 49 - 80090308: LdapErr: DSID-0C090334, comment: AcceptSecurityContext error, data 525, vece</a><br />
<br />
My config:<br />
Primary administrative user name: ippradm<br />
User Identity Server<br />
User: ippradm<br />
Pwd: ippradm password on AD<br />

type of LDAP server: Active Directory<br />
Host: localhost<br />
port: 389<br />
base distinguished name (DN): dc=domain,dc=com<br />
Bind distinguised name (DN): cn=ippradm,cn=users,dc=domain,dc=com<br />
bind password: &lt;ippradm password on AD&gt;<br />
<br />
Thanks in adances.<br />
<br />
Regards.

maximo...@puntoip.es

unread,
Feb 14, 2008, 2:18:25 PM2/14/08
to
Hi,<br />
<br />
I have found where the problem,<br />
<br />
The problem is the domain name that we are using on a test server. This domain name has the character "-".<br />
<br />
I created another test server with a new domain, with a name without this character, and has functioned without any problems.<br />
<br />
Thanks
0 new messages