Differences
This shows you the differences between two versions of the page.
Both sides previous revision Previous revision | Next revision Both sides next revision | ||
tutorial:adm:manage_ad [2019/11/20 12:16] doischert [Distinguished Name (DN), Common Name (CN)] |
tutorial:adm:manage_ad [2020/01/07 11:38] doischert |
||
---|---|---|---|
Line 225: | Line 225: | ||
If you are running on a Windows server, the ' | If you are running on a Windows server, the ' | ||
+ | |||
===== Connection via SSL not working ===== | ===== Connection via SSL not working ===== | ||
If you just imported root certificate to IdM truststore, but SSL connection to AD is still not working try following method to find which server hostname you should use. | If you just imported root certificate to IdM truststore, but SSL connection to AD is still not working try following method to find which server hostname you should use. | ||
Line 230: | Line 231: | ||
{{: | {{: | ||
click on View certificate -> tab General -> field Issued To -> Common name(CN) and use this value as server hostname. | click on View certificate -> tab General -> field Issued To -> Common name(CN) and use this value as server hostname. | ||
+ | |||
+ | ===== LdapErr: DSID-0C0907C5 ===== | ||
+ | If you see this error when reconciliating AD groups: | ||
+ | < | ||
+ | |||
+ | the likely cause is that some groups have many members. AD has a property MaxPageSize which is probably set to lower than necessary (default is 1000). Increasing the value to an arbitrary large number (30000) helped in our case but only AD admin can change this. | ||
===== Video Guide ===== | ===== Video Guide ===== | ||
[[https:// | [[https:// |