Connect. Communicate. Collaborate. Securely.

Home » Kerio User Forums » Kerio Connect » LDAP connection error happens randomly after 9.2.3 installed (LDAP connection error happens randomly and all user pause and ask to input login password)
  •  
mf001

Messages: 3
Karma: 0
Send a private message to this user
We have been using Kerio Connect for 6 years above. Recently we experience LDAP connection error, once this happen all users pause and ask to input password again. But this happen randomly with below warning log showed. We notice this is only happen after install the recent 9.2.3 version update. Strangle thing is we can still connect to the ADs in Kerio Edit domain / directory service after such disconnection.
Kerio Connect is installed at Mac Mini server with the latest MACOS install. This error happen very randomly like 5-6 times a day or every second day. Our current method to solve this is restart the Mac mini server, since stop and start Kerio service does not help. Anyone has experience and a clue to solve this? It is very troublesome. Thanks.

Can't bind to LDAP server xxx.xxxx.com. simple bind failed. User name: uid=administrator<_at_>xxxx.com,cn=users,dc=xxxx,dc=com. Err. code: -1, message: Can't contact LDAP server, LDAP srv. message: (NULL). ThreadId: 4766994432
Can't bind to LDAP server xxx.xxxx.com using any supported authentication method. Username: administrator<_at_>xxxx.com. (ThreadId=4766994432)
Failed to list users, LDAP server isn't available.

Too many connections to LDAP servers (xxx.xxxx.com xxxx.xxxx.com). Number of actual connections is 32 and is limited to 32.
[11/May/2017 21:04:52] Failed to list users, LDAP server isn't available.
[

[Updated on: Fri, 19 May 2017 03:42]

  •  
GilbertS

Messages: 2
Karma: 0
Send a private message to this user
We have the exact same issue, started with 9.2.2 , havn't updated to 9.2.3 yet, still on 9.2.2 patch #1.

Would be nice to have a solution to this.

[02/Jun/2017 09:11:24] Can't bind to LDAP server xxx.xxx.xxx. simple bind failed. User name: uid=Administrator<_at_>xxx.xxx,cn=users,dc=xxx,dc=xxx. Err. code: -1, message: Can't contact LDAP server, LDAP srv. message: (NULL). ThreadId: 5792
[02/Jun/2017 09:11:24] Can't bind to LDAP server xxx.xxx.xxx using any supported authentication method. Username: xxx<_at_>xxx.xxx. (ThreadId=5792)
[02/Jun/2017 09:11:25] Failed to list users, LDAP server isn't available.
  •  
mf001

Messages: 3
Karma: 0
Send a private message to this user
GilbertS

We had solve the issue "sort of", our error was costed by DNS(s) typed in the Mac mini server. The AD servers DNS is not sync correctly which is the main cause of this error. Double check your DNS servers and make sure those are one type into your Mac mini network setting.
  •  
GilbertS

Messages: 2
Karma: 0
Send a private message to this user
Hi!

Sorry, i should have specified, we run the Kerio Server on a Windows 2008 R2 server.

But ok, Did you specify the AD-Servers as the only DNS servers on the Macmini ?

On our Kerio Windows 2008 Server we have:

Primary DNS: The internal AD server
Secondary DNS: ISP DNS Server

And we've always had it like this, for many years, it's just recently after 9.2.2 upgrade that we started to have issues...
  •  
mf001

Messages: 3
Karma: 0
Send a private message to this user
Hi
We have two AD servers in our network, and the same two DNS servers comes with the AD. Yes, we did specify the AD / DNS servers as Mac mini primary and secondary DNS setting.
So your case quite different to us. But I believe the main problem came from your internal AD server. As I suppose you install the Kerio into the AD server, right? In your primary DNS: have you tried to put 127.0.0.1?
Previous Topic: Plus sign in email address
Next Topic: Meeting Invite Message Body Vanishes
Goto Forum:
  


Disclaimer:
Kerio discussion forums are intended for open communication between forum members and may contain information and material posted by members which may be useful in learning about Kerio products. The discussion forums are not intended to provide technical support for any specific product. Any information implied or expressed in the discussion forums is that of the posting member. Kerio is in no way responsible for the information posted in the forums, or its accuracy. Kerio employees may participate in the discussions, but their postings do not represent an offical position of the company on any issues raised or discussed. Kerio reserves the right to monitor and maintain the forums to promote free and accurate exchange of information.

Current Time: Sat Nov 18 18:57:49 CET 2017

Total time taken to generate the page: 0.00463 seconds
.:: Contact :: Home ::.
Powered by: FUDforum 3.0.4.