Page 1 of 2

5.6.7 Not listing LDAP Users for Import

Posted: Mon Nov 11, 2019 4:50 am
by optionstechnology
All of the servers I have upgraded to 5.6.7 have lost the ability to list LDAP users/folders for import-
LDAP.PNG
This was working prior to the upgrade and is only effecting servers upgraded to version 5.6.#

Re: 5.6.7 Not listing LDAP Users for Import

Posted: Mon Nov 11, 2019 10:10 am
by scottwilkerson
I believe this was fixed in 5.6.8

Code: Select all

Fixed issue with overwriting user meta data on each page load causing LDAP/AD import blank screen for LDAP/AD users [TPS#14636] -JO

Re: 5.6.7 Not listing LDAP Users for Import

Posted: Tue Nov 26, 2019 11:19 am
by optionstechnology
This has worked on most of our servers but one still cannot show the LDAP AD folders-
568ldap.PNG
Any further troubleshooting I can do?

Re: 5.6.7 Not listing LDAP Users for Import

Posted: Tue Nov 26, 2019 3:19 pm
by ssax
Please PM a screenshot of your settings in Admin > LDAP / AD Integration.

Attach this file as well from the non-working system:

Code: Select all

/usr/local/nagiosxi/html/includes/auth.inc.php
Please enable debug logging by following this KB article:

https://support.nagios.com/kb/article/a ... n-600.html

Then run this tail command (use this one instead of the guide and leave it running):

Code: Select all

tail -Fn0 /var/log/httpd/error_log /var/log/httpd/ssl_error_log
Then try the import again and send us the entire output of the tail command above so that we can see what is occurring.

Please PM a copy of your profile as well, you can download it from Admin > System Profile > Download Profile.

Re: 5.6.7 Not listing LDAP Users for Import

Posted: Fri Dec 13, 2019 8:10 am
by optionstechnology
Sent the required files to you. FYI, I've already upgraded to 5.6.9 and I'm still seeing this issue.

Really strange - earlier it wouldn't log me in at all on the LDAP page, giving me the error you see below.

The randomly it would work and log me in and I could see the OUs. Still wouldnt let me add any users though (said none were selected).

Re: 5.6.7 Not listing LDAP Users for Import

Posted: Fri Dec 13, 2019 8:13 am
by optionstechnology
Also, the cert definitely is not expired as you can see in my private messages

Re: 5.6.7 Not listing LDAP Users for Import

Posted: Fri Dec 13, 2019 12:16 pm
by ssax
DC2's cert says expired, DC1 is working. Please check PM.

Re: 5.6.7 Not listing LDAP Users for Import

Posted: Thu Jan 02, 2020 5:11 pm
by optionstechnology
Just PM'd you the output of the commands you requested.

I guess this would explain why it works sometimes, because its hitting a different DC?

Re: 5.6.7 Not listing LDAP Users for Import

Posted: Thu Jan 02, 2020 5:45 pm
by cdienger
ssax is out of the office. Please PM me the output.

Re: 5.6.7 Not listing LDAP Users for Import

Posted: Fri Jan 03, 2020 5:03 pm
by optionstechnology
I have PM'd it to you