Help
  • Explore Community
  • Get Started
  • Ask the Community
  • How-To & Best Practices
  • Contact Support
Notifications
Login / Register
Community
Community
Notifications
close
  • Forums
  • Knowledge Center
  • Events & Webinars
  • Ideas
  • Blogs
Help
Help
  • Explore Community
  • Get Started
  • Ask the Community
  • How-To & Best Practices
  • Contact Support
Login / Register
Sustainability
Sustainability

We Value Your Feedback!
Could you please spare a few minutes to share your thoughts on Cloud Connected vs On-Premise Services. Your feedback can help us shape the future of services.
Learn more about the survey or Click here to Launch the survey
Schneider Electric Services Innovation Team!

AD Authentication setup

EcoStruxure IT forum

Schneider Electric support forum about installation and configuration for DCIM including EcoStruxure IT Expert, IT Advisor, Data Center Expert, and NetBotz

cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
  • Home
  • Schneider Electric Community
  • EcoStruxure IT
  • EcoStruxure IT forum
  • AD Authentication setup
Options
  • Subscribe to RSS Feed
  • Mark Topic as New
  • Mark Topic as Read
  • Float this Topic for Current User
  • Bookmark
  • Subscribe
  • Mute
  • Printer Friendly Page
Invite a Co-worker
Send a co-worker an invite to the portal.Just enter their email address and we'll connect them to register. After joining, they will belong to the same company.
You have entered an invalid email address. Please re-enter the email address.
This co-worker has already been invited to the Exchange portal. Please invite another co-worker.
Please enter email address
Send Invite Cancel
Invitation Sent
Your invitation was sent.Thanks for sharing Exchange with your co-worker.
Send New Invite Close
Top Experts
User Count
Cory_McDonald
Admiral Cory_McDonald Admiral
124
Jef
Admiral Jef Admiral
109
gsterling
Captain gsterling Captain
71
APC_Steve
Captain APC_Steve Captain
62
View All

Invite a Colleague

Found this content useful? Share it with a Colleague!

Invite a Colleague Invite
Back to EcoStruxure IT forum
DCIM_Support
Picard DCIM_Support
Picard

Posted: ‎2020-07-03 07:13 AM . Last Modified: ‎2024-04-08 04:15 AM

0 Likes
11
1087
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2020-07-03 07:13 AM . Last Modified: ‎2024-04-08 04:15 AM

AD Authentication setup

I am working on using AD for authentication with DCE 7.4.1

I have configured the authentication server and selected a group that I created in AD. However, I am not realizing any benefit from this as the credentials are not accepted at login. Unless I'm unclear on what to expect.  

Secondly, while the Group I've selected appears, individual users do not (2nd screenshot)

 

(CID:108829490)

Labels
  • Labels:
  • Data Center Expert
Reply

Link copied. Please paste this link to share this article on your social media post.

  • All forum topics
  • Previous Topic
  • Next Topic
Replies 11
DCIM_Support
Picard DCIM_Support
Picard

Posted: ‎2020-07-03 07:13 AM . Last Modified: ‎2024-04-08 04:15 AM

0 Likes
9
1087
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2020-07-03 07:13 AM . Last Modified: ‎2024-04-08 04:15 AM

Hi Ed,

 

A good place to start is to look at k-base FA158395. This should help you with a lot of the little stuff.

If you've set up an AD group and have added it to DCE, the next thing you have to do is to give that groups permissions inside of DCE. We don't pull permissions from the server, just names, passwords, and e-mails for server level events.

 

If your users can't log in. please be sure they are in the same search base used to add the group. If DCE can't search for both the group AND it's included users, you won't be able to log in with those credentials. Make sure you also do not have duplicate users where they exist on the DCE server as well las the AD group as this could cause conflicts.

 

Finally, if you had started this incorrectly, delete the AD entry and make a new one. I have seen issues where you choose LDAP and then go all the way to the end and logins fail (even though it appears to allow you to add them) or even if you choose LDAP and go part of the way to finish, go back and change to AD, sometimes the change doesn't take and you'll still get a failure.

 

Thanks,

Steve

(CID:108829501)

Reply

Link copied. Please paste this link to share this article on your social media post.

DCIM_Support
Picard DCIM_Support
Picard

Posted: ‎2020-07-03 07:13 AM . Last Modified: ‎2024-04-08 04:15 AM

In response to DCIM_Support
0 Likes
0
1087
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2020-07-03 07:13 AM . Last Modified: ‎2024-04-08 04:15 AM

Ok. I change the AD group to Universal and tried removing it from DCE and adding back as the scenario you described could have happened. Still no luck.

The search base is essentially the entire directory : DC=milbank,DC=local.  Perhaps I'm hitting a size limit that was mentioned in the technote but the users and the group are in different OUs below this base.

I have specified DCE permissions to the group once it has been selected.

Ed

 

(CID:109446914)

Reply

Link copied. Please paste this link to share this article on your social media post.

DCIM_Support
Picard DCIM_Support
Picard

Posted: ‎2020-07-03 07:13 AM . Last Modified: ‎2024-04-08 04:15 AM

In response to DCIM_Support
0 Likes
0
1087
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2020-07-03 07:13 AM . Last Modified: ‎2024-04-08 04:15 AM

Hi Ed, I just re-read your initial post. Hopefully this is just a secondary question but you mentioned: while the Group I've selected appears, individual users do not You should know that the users will not show, only the groups. Rights are then associated based on those groups. Steve

(CID:109446915)

Reply

Link copied. Please paste this link to share this article on your social media post.

DCIM_Support
Picard DCIM_Support
Picard

Posted: ‎2020-07-03 07:13 AM . Last Modified: ‎2024-04-08 04:15 AM

In response to DCIM_Support
0 Likes
0
1087
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2020-07-03 07:13 AM . Last Modified: ‎2024-04-08 04:15 AM

Back to the login issue, can you create a test group and in the same container, create a user. Make it very simple with no difference between long and short names. Add that group and give that groups rights within DCE. Can that user log in? Steve

(CID:109446916)

Reply

Link copied. Please paste this link to share this article on your social media post.

DCIM_Support
Picard DCIM_Support
Picard

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2024-04-08 04:15 AM

In response to DCIM_Support
0 Likes
0
1087
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2024-04-08 04:15 AM

If you look at the screenshot I inserted in the original post what I meant to convey was that if I chose individual users rather than a group the did not (and do not) appear under the "Users" heading.

(CID:109446918)

Reply

Link copied. Please paste this link to share this article on your social media post.

DCIM_Support
Picard DCIM_Support
Picard

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2024-04-08 04:15 AM

In response to DCIM_Support
0 Likes
0
1087
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2024-04-08 04:15 AM

Sorry, I must have misunderstood. I thought you expected to see the users once you added the group. Ok, so if you DID add individual users through the authentication server, they did not show up? Could you try the test I suggested and again, create this as a new authentication server entry? Steve

(CID:109446917)

Reply

Link copied. Please paste this link to share this article on your social media post.

DCIM_Support
Picard DCIM_Support
Picard

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2024-04-08 04:15 AM

In response to DCIM_Support
0 Likes
0
1087
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2024-04-08 04:15 AM

I've added a user in the same container as the group. Removed the group from DCE and added it back.

 

(CID:109446906)

Reply

Link copied. Please paste this link to share this article on your social media post.

DCIM_Support
Picard DCIM_Support
Picard

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2024-04-08 04:15 AM

In response to DCIM_Support
0 Likes
0
1087
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2024-04-08 04:15 AM

Hi Ed, 

 

I feel there's something we're missing and doing this over the forum may not be the best way to reach a resolution. What region are you in? US, Europe? I think it may be best if we contact you directly. I can get your e-mail from the system but want to verify who to get to contact you.


Steve

(CID:109446909)

Reply

Link copied. Please paste this link to share this article on your social media post.

DCIM_Support
Picard DCIM_Support
Picard

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2024-04-08 04:15 AM

In response to DCIM_Support
0 Likes
0
1087
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2024-04-08 04:15 AM

This issue has been resolved. I followed the very useful technote but in the end I believe the ultimate resolution to enable AD authentication (after the components were configured) was a restart of the server

(CID:109447665)

Reply

Link copied. Please paste this link to share this article on your social media post.

DCIM_Support
Picard DCIM_Support
Picard

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2024-04-08 04:15 AM

In response to DCIM_Support
0 Likes
0
1087
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2024-04-08 04:15 AM

That's weird. It shouldn't be required but I'm glad it worked!

(CID:109447666)

Reply

Link copied. Please paste this link to share this article on your social media post.

DCIM_Support
Picard DCIM_Support
Picard

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2023-10-20 04:54 AM

0 Likes
0
1087
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2020-07-03 07:14 AM . Last Modified: ‎2023-10-20 04:54 AM

superhero.png

This question is closed for comments. You're welcome to start a new topic if you have further comments on this issue.

Reply

Link copied. Please paste this link to share this article on your social media post.

To The Top!

Forums

  • APC UPS Data Center Backup Solutions
  • EcoStruxure IT
  • EcoStruxure Geo SCADA Expert
  • Metering & Power Quality
  • Schneider Electric Wiser

Knowledge Center

Events & webinars

Ideas

Blogs

Get Started

  • Ask the Community
  • Community Guidelines
  • Community User Guide
  • How-To & Best Practice
  • Experts Leaderboard
  • Contact Support
Brand-Logo
Subscribing is a smart move!
You can subscribe to this board after you log in or create your free account.
Forum-Icon

Create your free account or log in to subscribe to the board - and gain access to more than 10,000+ support articles along with insights from experts and peers.

Register today for FREE

Register Now

Already have an account? Login

Terms & Conditions Privacy Notice Change your Cookie Settings © 2025 Schneider Electric

This is a heading

With achievable small steps, users progress and continually feel satisfaction in task accomplishment.

Usetiful Onboarding Checklist remembers the progress of every user, allowing them to take bite-sized journeys and continue where they left.

of