<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:content="http://purl.org/rss/1.0/modules/content/"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
    xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>LDAP/Active Directory synchronization — multiOTP Pro forum</title>
        <link>http://forum.multiotp.com/index.php?p=/</link>
        <pubDate>Tue, 05 May 2026 16:32:58 +0000</pubDate>
        <language>en</language>
            <description>LDAP/Active Directory synchronization — multiOTP Pro forum</description>
    <atom:link href="http://forum.multiotp.com/index.php?p=/categories/ldap-ad/feed.rss" rel="self" type="application/rss+xml"/>
    <item>
        <title>LDAP unable to connect to DC Hardened</title>
        <link>http://forum.multiotp.com/index.php?p=/discussion/27/ldap-unable-to-connect-to-dc-hardened</link>
        <pubDate>Wed, 03 Sep 2025 21:29:08 +0000</pubDate>
        <category>LDAP/Active Directory synchronization</category>
        <dc:creator>ICONsa</dc:creator>
        <guid isPermaLink="false">27@/index.php?p=/discussions</guid>
        <description><![CDATA[Hello,
Since this morning I can no longer synchronize my multiotp to a hardened server requesting with SSL.
My DC is a Windows 2025 Server. Kerberos work only with AES.
If I try on LDAP port 389 I have this error message: FATAL: AD bind failed. Check the login credentials (49: Invalid credentials). (80090308: LdapErr: DSID-0C090549, comment: AcceptSecurityContext error, data 52e, v65f4)
If I try with 636 port without SSL: Fatal: AD bind failed. Check the login credentials (-1: Can't contact LDAP Server)
And with SSL flag : Fatal AD bind failed. Either the LDAPS connection failed or the login credential ar incorrect (Can't contact LDAP server), (Error in the pull function)

Windows creds was correct. I try with ldp.exe and it's working.
On Windows server a have a warning "ActiveDirectory_DomainService" 2085, error 2148074289
The SSL certificate on my DC was delivered through "Active Directory Certificate Services" maybe multiotp need to know my CA ?
Best regards
Luc

]]>
        </description>
    </item>
    <item>
        <title>Cisco domain authorization via MultiOTP's FreeRadius.</title>
        <link>http://forum.multiotp.com/index.php?p=/discussion/14/cisco-domain-authorization-via-multiotps-freeradius</link>
        <pubDate>Mon, 26 Apr 2021 11:51:09 +0000</pubDate>
        <category>LDAP/Active Directory synchronization</category>
        <dc:creator>NazZaR</dc:creator>
        <guid isPermaLink="false">14@/index.php?p=/discussions</guid>
        <description><![CDATA[I will try my best to describe our situation.

We have configured our Cisco ASA to request domain name, domain password and OTP when users connect through Cisco AnyConnect VPN. It works well, but we need to connect only through LDAPS.
To authorize username and password with domain, ASA goes to domain controller through LDAP, because ASA cannot connect through LDAPS.
To authorize OTP, ASA goes to MultiOTP. MultiOTP is configured to access domain controller through LDAPS, and it uses FreeRadius to do that, as I understand.
Is it possible to authorize domain requests from ASA through FreeRadius on MultiOTP? So it will be able to communicate via LDAPS with domain controller.

Thank you!
]]>
        </description>
    </item>
    <item>
        <title>Can't connect to AD</title>
        <link>http://forum.multiotp.com/index.php?p=/discussion/8/cant-connect-to-ad</link>
        <pubDate>Fri, 19 Feb 2016 13:10:56 +0000</pubDate>
        <category>LDAP/Active Directory synchronization</category>
        <dc:creator>slan</dc:creator>
        <guid isPermaLink="false">8@/index.php?p=/discussions</guid>
        <description><![CDATA[Hello so I have configure a multiOTP VM with an AD and a Zywall USG 110 but I can't connect through the USG 110<br /><br />I already posted <a rel="nofollow" href="http://forum.multiotp.net/discussion/19/can-t-connect-to-ad#latest">a question</a> in the opensource forum<br /><br />Thanks for any help you can give<br /><br />]]>
        </description>
    </item>
   </channel>
</rss>
