[SOLVED] AD Users cannot login

Discuss your pilot or production implementation with other Zimbra admins or our engineers.
acelmanaged
Posts: 12
Joined: Sat Sep 13, 2014 1:55 am

[SOLVED] AD Users cannot login

Post by acelmanaged »

Hi,



My test environment is a VMWare Workstation with three virtual machines.

1. Windows 2008 AD Server

2. RedHat 6 ZCS Server

3. Windows 7 Client



I have configured authentication for the domain and managed to create two users in ZCS and link them to the users in AD fine.



However when my users try to either navigate to the Webclient or by using Zimbra desktop they are unable to log in to the account using any combination of username/email addresses.



If I am logged on as admin I am able to click the View Mail button to see their inbox.



I have logged a support request with Zimbra for this however they are researching the problem and time is ticking away on my trial.



Any additional help would be greatly appreciated :)
zolty43415
Posts: 16
Joined: Sat Sep 13, 2014 1:54 am

[SOLVED] AD Users cannot login

Post by zolty43415 »

1. what do you have written in user settings in field external ldap account ?

2. have u sucesfully configured external authentication ?

3. did you pass authentication test during configuration ?
acelmanaged
Posts: 12
Joined: Sat Sep 13, 2014 1:55 am

[SOLVED] AD Users cannot login

Post by acelmanaged »

[quote]1. what do you have written in user settings in field external ldap account ?

2. have u sucesfully configured external authentication ?

3. did you pass authentication test during configuration ?[/quote]



1. How do I check this sorry? Bit of a newb I'm afraid.



2. Yes succesfully configured and...

3. Pass test successfully
zolty43415
Posts: 16
Joined: Sat Sep 13, 2014 1:54 am

[SOLVED] AD Users cannot login

Post by zolty43415 »

ad1.

choose account -> Edit

Look in Password section
acelmanaged
Posts: 12
Joined: Sat Sep 13, 2014 1:55 am

[SOLVED] AD Users cannot login

Post by acelmanaged »

[quote]ad1.

choose account -> Edit

Look in Password section[/quote]



Oh that bit! Here you go:



ou=martinb,ou=Users,dc=acel,dc=co



Is the "ou=martinb" correct?
zolty43415
Posts: 16
Joined: Sat Sep 13, 2014 1:54 am

[SOLVED] AD Users cannot login

Post by zolty43415 »

try to write there:

martinb@acel.co
Just to make sure:

martinb is your user in AD ? and acel.co is your Domain ?
acelmanaged
Posts: 12
Joined: Sat Sep 13, 2014 1:55 am

[SOLVED] AD Users cannot login

Post by acelmanaged »

[quote]try to write there:

martinb@acel.co



Just to make sure:

martinb is your user in AD ? and acel.co is your Domain ?[/quote]



The username is martinb and acel.co is my domain.



Just for reference I have tried the following:



uid=martinb

ou=martinb

uid=martinb@acel.co

userPrincipalName=martinb@acel.co



However when I try what you suggest on its own it works when I type the whole email address in i.e: martin.ball@acel.co is this the correct behaviour as I would really like to just have to type the username i.e: martinb?
zolty43415
Posts: 16
Joined: Sat Sep 13, 2014 1:54 am

[SOLVED] AD Users cannot login

Post by zolty43415 »

so when you typed martin.ball@acel.co it works ?

check again whast is your username in Active Directory...in my opinion it is martin.ball
can you login to windows on

useR: martinb@acel.co

pass: your password
?
acelmanaged
Posts: 12
Joined: Sat Sep 13, 2014 1:55 am

[SOLVED] AD Users cannot login

Post by acelmanaged »

[quote]so when you typed martin.ball@acel.co it works ?

check again whast is your username in Active Directory...in my opinion it is martin.ball



can you login to windows on

useR: martinb@acel.co

pass: your password



?[/quote]



WebMail



martin.ball@acel.co = Works

martin.ball = Works

martinb@acel.co = Does not work

martinb = Does not work



Active Directory



Username: martinb



I can log onto windows using



UN: martinb@acel.co

PW: password
zolty43415
Posts: 16
Joined: Sat Sep 13, 2014 1:54 am

[SOLVED] AD Users cannot login

Post by zolty43415 »

you must have miss understood me.
i want you to write martinb@acel.co in zimbra administration in your account settings in field externat LDAP account to authentication (it is in Password section).
then try to login as user martin.ball (as i suppose it is your email address) with password from AD in WebMail
Post Reply