IBM Support

ObjectServer connection to LDAPS fails with -3602:Not authenticated

Troubleshooting


Problem

OMNIbus v8.1.0.14 was configured to connect to LDAPS, with the correct parameters added to ldap.props, however the connection fails as follows:
User netcool_user@domain.com failed to login: Not authenticated
Error: E-AUT-102-007: Failed to bind to LDAP server for user cn=cnlabel,ou=OUAccounts,dc=company,dc=com. (81:Can't contact LDAP server)
Error: E-AUT-102-021: Error occurred while trying to establish bind connection. Error Can't contact LDAP server
Error: E-AUT-102-007: Failed to bind to LDAP server for user cn=cnlabel,ou=OUAccounts,dc=company,dc=com. (81:Can't contact LDAP server)
Error: E-AUT-102-021: Error occurred while trying to establish bind connection. Error Can't contact LDAP server
Error: E-OBX-102-023: Failed to authenticate user netcool_user. (-3602:Not authenticated)
The openssl s_client -connect [LDAP_server]:636
(where LDAP_server is the destination LDAP server and 636 is the SSL port in ldap.props)
returns information that TLSv1.2 is in use.
tcpdump output shows the Client Hello message issued but no response from the LDAP server.
The expanded error in the destination S Channel shows:
"An TLS 1.2 connection request was received from a remote client application, but none of the cipher suites supported by the client application are supported by the server. The SSL connection request has failed."

Symptom

Connection fails with
"Failed to authenticate user [username]. (-3602:Not authenticated)"

Document Location

Worldwide

[{"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSSHTQ","label":"Tivoli Netcool\/OMNIbus"},"ARM Category":[{"code":"a8m500000008aAoAAI","label":"Core Omnibus-\u003EObjectServer nco_objserv-\u003EOS - LDAP"}],"ARM Case Number":"","Platform":[{"code":"PF002","label":"AIX"},{"code":"PF016","label":"Linux"},{"code":"PF027","label":"Solaris"},{"code":"PF033","label":"Windows"}],"Version":"8.1.0","Line of Business":{"code":"LOB77","label":"Automation Platform"}}]

Log InLog in to view more of this document

This document has the abstract of a technical article that is available to authorized users once you have logged on. Please use Log in button above to access the full document. After log in, if you do not have the right authorization for this document, there will be instructions on what to do next.

Historical Number

TS003474590

Document Information

Modified date:
09 May 2025

UID

ibm16206165