IBM Support

After configured federated directory with AD using SSL/TLS, reverse proxy can not get started and also I can not login to admin CLI as sec_master.

Troubleshooting


Problem

To use AD as one of federated directories, I registed an Active Directory server (SSL/TLS). After I saved, deployed and restarted runtime, my reverse proxy can not get started any more.

Symptom


These messages can be seen in msg__webseald-<instance name>.log:
HPDCO0192W LDAP server ad.example.com:636 has failed.
HPDDB0450W Could not bind to server (wga.example.com, 0x13212077).
HPDDB0609E Could not rebuild database replica (/var/pdweb/default/db/webseald-default.db, 0x13212077).

Furthermore, I can not use admin CLI any more.

Welcome to the IBM Security Access Manager appliance
Enter "help" for a list of available commands
wga.example.com> isam
wga.example.com:isam> admin

pdadmin> login
Enter User ID: sec_master
Enter Password:
Error: HPDAC0779E The LDAP registry server is down. (status 0x1005b30b)

[{"Product":{"code":"SSZU8Q","label":"IBM Security Access Manager"},"Business Unit":{"code":"BU048","label":"IBM Software"},"Component":"General Information","Platform":[{"code":"PF004","label":"Appliance"}],"Version":"Version Independent","Edition":"","Line of Business":{"code":"LOB77","label":"Automation Platform"}}]

Log InLog in to view more of this document

This document has the abstract of a technical article that is available to authorized users once you have logged on. Please use Log in button above to access the full document. After log in, if you do not have the right authorization for this document, there will be instructions on what to do next.

Document Information

Modified date:
16 June 2018

UID

swg22015607