Forum Discussion

RobL216_235020's avatar
RobL216_235020
Icon for Nimbostratus rankNimbostratus
Jun 03, 2016

One node not allowing AD logons

We have 2 BIG-IP LTM's running in a HA.

 

Both seem to be working fine but the one node will not allow me to logon with my Domain credentials.

 

Both nodes are configured the same and I can logon to the troublesome node with a local account.

 

I have gone through the configurations on both and they are identical.

 

Anyone seen this problem before and have any idea what I could look at to fix the problem?

 

1 Reply

  • Hello,

     

    Can you please check your Fw rules to validate that flow between our Device and you AD is open. Additional you can check that a ldap query is done when you attempt to connect with your ad credentials. Connect to your device (in cli with your root credentials) and enter the following command:

     

    tcpdump -nni 0.0 host 'AD IP'

     

    If configuration is the same in both device (cluster), ldap query follow the routing table so go through the same interface (you have to open FW rule from selfIF of both memebers). keep me update about this check. Regards,