LDAP Error after System restart

Discuss your pilot or production implementation with other Zimbra admins or our engineers.
Post Reply
JYvViva
Posts: 15
Joined: Wed Apr 20, 2016 10:20 pm

LDAP Error after System restart

Post by JYvViva »

Hello Team,

Following a sudden stop (electrical incident) of my Zimbra server, I am faced with an LDAP error that prevents related services to start.
[zimbra@mail ~]$ zmcontrol start
Host mail.x.y
Starting ldap...Done.
Search error: Unable to determine enabled services from ldap.
Enabled services read from cache. Service list may be inaccurate.
Starting zmconfigd...Failed.
Starting zmconfigd...failed.


Starting logger...Failed.
Starting logswatch...[] INFO: master is down, falling back to replica...
[] FATAL: failed to initialize LDAP client
com.zimbra.cs.ldap.LdapException: LDAP error: : invalid credentials
ExceptionId:main:1461154102405:f0399b34a76eb0cc
Code:ldap.LDAP_ERROR
at com.zimbra.cs.ldap.LdapException.LDAP_ERROR(LdapException.java:90)
at com.zimbra.cs.ldap.unboundid.UBIDLdapException.mapToLdapException(UBIDLdapException.java:74)
at com.zimbra.cs.ldap.unboundid.UBIDLdapException.mapToLdapException(UBIDLdapException.java:40)
at com.zimbra.cs.ldap.unboundid.LdapConnectionPool.createConnPool(LdapConnectionPool.java:117)
at com.zimbra.cs.ldap.unboundid.LdapConnectionPool.createConnectionPool(LdapConnectionPool.java:63)
at com.zimbra.cs.ldap.unboundid.UBIDLdapContext.init(UBIDLdapContext.java:101)
at com.zimbra.cs.ldap.unboundid.UBIDLdapClient.init(UBIDLdapClient.java:39)
at com.zimbra.cs.ldap.LdapClient.getInstance(LdapClient.java:65)
at com.zimbra.cs.ldap.LdapClient.initialize(LdapClient.java:88)
at com.zimbra.cs.account.ldap.LdapProv.<init>(LdapProv.java:48)
at com.zimbra.cs.account.ldap.LdapProvisioning.<init>(LdapProvisioning.java:265)
at com.zimbra.cs.account.ldap.LdapProvisioning.<init>(LdapProvisioning.java:262)
at sun.reflect.NativeConstructorAccessorImpl.newInstance0(Native Method)
at sun.reflect.NativeConstructorAccessorImpl.newInstance(NativeConstructorAccessorImpl.java:62)
at sun.reflect.DelegatingConstructorAccessorImpl.newInstance(DelegatingConstructorAccessorImpl.java:45)
at java.lang.reflect.Constructor.newInstance(Constructor.java:408)
at java.lang.Class.newInstance(Class.java:433)
at com.zimbra.cs.account.Provisioning.getInstance(Provisioning.java:286)
at com.zimbra.cs.account.Provisioning.getInstance(Provisioning.java:243)
at com.zimbra.cs.account.ProvUtil.initProvisioning(ProvUtil.java:810)
at com.zimbra.cs.account.ProvUtil.main(ProvUtil.java:3691)
Caused by: LDAPException(resultCode=49 (invalid credentials), errorMessage='invalid credentials')
at com.unboundid.ldap.sdk.LDAPConnection.bind(LDAPConnection.java:1894)
at com.unboundid.ldap.sdk.LDAPConnectionPool.createConnection(LDAPConnectionPool.java:988)
at com.unboundid.ldap.sdk.LDAPConnectionPool.<init>(LDAPConnectionPool.java:876)
at com.unboundid.ldap.sdk.LDAPConnectionPool.<init>(LDAPConnectionPool.java:779)
at com.unboundid.ldap.sdk.LDAPConnectionPool.<init>(LDAPConnectionPool.java:726)
at com.zimbra.cs.ldap.unboundid.LdapConnectionPool.createConnPool(LdapConnectionPool.java:112)
... 17 more
zimbra logger service is not enabled! failed.

Starting mailbox...Failed.

Starting memcached...Done.
Starting amavis...Done.
Starting antispam...Done.
Starting antivirus...Done.
Starting opendkim...Failed.
/opt/zimbra/bin/zmopendkimctl: line 54: kill: (5055) - No such process
opendkim: /opt/zimbra/conf/opendkim.conf: ldap://mail.x.y:389/?DKIMSelector?sub?(DKIMIdentity=$d): dkimf_db_open(): Invalid credentials
Failed to start opendkim: 0

Starting snmp...Done.
Starting spell...Done.
Starting mta...Done.
Starting stats...Done.

Code: Select all

$ ldapsearch -LLL -h localhost -p 389 -D  uid=zimbra,cn=admins,cn=zimbra -W
Enter LDAP Password:
ldap_sasl_bind(SIMPLE): Can't contact LDAP server (-1)

Code: Select all

zmldappasswd -r newpassword
zmldappasswd newpassword
Even zmldappaaswd was not successfull
I'm in trouble please. Dear Experts, Please give me a minute of your time to diagnose the problem.

Note: Before the sudden reboot, the server was working nickel without any concern for over 05 months
Virtual MMachine, VMware ESXi 5, IBM Bladecenter H, HX5 Blade, 04 CPU Intel Xeon E7- 4807 @ 1.87GHz, 16 Go RAM, CentOS 7 64bit, ZCS 8.6 64bit OSE
fbzimblet
Advanced member
Advanced member
Posts: 119
Joined: Sun Apr 17, 2016 4:15 pm

Re: LDAP Error after System restart

Post by fbzimblet »

JYvViva
Posts: 15
Joined: Wed Apr 20, 2016 10:20 pm

Re: LDAP Error after System restart

Post by JYvViva »

Thanks for the tip but, It didn't work for me.
It doesn't seem to be the same issue. I have a commercial Symantec cert, valid until november 2018.
Virtual MMachine, VMware ESXi 5, IBM Bladecenter H, HX5 Blade, 04 CPU Intel Xeon E7- 4807 @ 1.87GHz, 16 Go RAM, CentOS 7 64bit, ZCS 8.6 64bit OSE
fbzimblet
Advanced member
Advanced member
Posts: 119
Joined: Sun Apr 17, 2016 4:15 pm

Re: LDAP Error after System restart

Post by fbzimblet »

are you on multiserver?

I'm also having ldap ssl issue, but during upgrade. Because only mailbox hostname wth commercial ssl.
JYvViva
Posts: 15
Joined: Wed Apr 20, 2016 10:20 pm

Re: LDAP Error after System restart

Post by JYvViva »

No, I'm on single server
Virtual MMachine, VMware ESXi 5, IBM Bladecenter H, HX5 Blade, 04 CPU Intel Xeon E7- 4807 @ 1.87GHz, 16 Go RAM, CentOS 7 64bit, ZCS 8.6 64bit OSE
Post Reply