Symantec Access Management

  • 1.  Error 81 . Can't contact LDAP server (SMPS.log)

    Posted 07-17-2015 11:25 AM

    Hello All,

    I am seeing the below error in SMPS.log . Do you have any idea about this, why it is occuring? . Does it affect the end user who is trying to login to the application?.

     

    [SmDsLdapFunctionImpl.cpp:494][ERROR][sm-Ldap-00770] (AuthenticateUser) DN: 'uid=xyz,ou=users,dc=abc,dc=com' . Status: Error 81 . Can't contact LDAP server



  • 2.  Re: Error 81 . Can't contact LDAP server (SMPS.log)

    Posted 07-17-2015 11:52 AM

    Hello,

     

    If policy server is able to make successful connection to policy store and userstore, then this error will occur if accessing connection to store is exceeding maximum idle timeout time.

     

    Thanks & Regards,

    Ankush



  • 3.  Re: Error 81 . Can't contact LDAP server (SMPS.log)

    Posted 07-17-2015 11:58 AM

    Thank you Ankush for the quick response. Is there any fix for this? Dos the user gets affected?



  • 4.  Re: Error 81 . Can't contact LDAP server (SMPS.log)

    Posted 07-17-2015 12:09 PM

    If you are using AD directory server , try increasing value of MaxConnIdleTime setting, see if it helps.

    This might affect users only if too much threads gets queued up on server.

     

    Thanks & Regards,

    Ankush



  • 5.  Re: Error 81 . Can't contact LDAP server (SMPS.log)

    Posted 07-19-2015 09:16 PM

    Hi Rahul,

     

    There could be multiple reasons for the error "Error 81. Can't Contact LDAP Server".

    To get a better understanding of the problem, could you please help clarify following :

     

    Few questions

    ===========

    • How often do you see the error? Is there specific pattern on when do you see these errors ?
    • What is your LDAP User Store ? (AD/ CA Directory etc )
    • Are you using SSL connection (SSL)  ?
    • If AD, what is the value of MaxConnIdleTime settting on the AD Server?
    • Do you have " Enhanced LDAP Referrals" enabled on the Policy Server Management Console ?
    • Are you able to successfully perform "View Contents" for the user directory in Administrative UI ? Do you see this error while doing View Contents


    Cheers,

    Ujwol Shrestha



  • 6.  Re: Error 81 . Can't contact LDAP server (SMPS.log)

    Posted 07-24-2015 11:40 AM

    *We see this error almost everyday.

    * We are using CA Directory
    * We are using SSL
    *We have disabled Enhance LDAP Referal.

    * Yes I can connect and View contents using Admin UI.



  • 7.  Re: Error 81 . Can't contact LDAP server (SMPS.log)
    Best Answer

    Posted 07-27-2015 09:03 PM

    Hi Rahul,

     

    Based on your problem description, it seems that you are getting these errors because the LDAP connection is getting IDLE time out and when Policy server tries to use this connection it throws Error 81 on the smps.log

    Following thread explains this problem in much detail :

    https://communities.ca.com/message/241809911#241809911

     

    Cheers,

    Ujwol Shrestha



  • 8.  Re: Error 81 . Can't contact LDAP server (SMPS.log)

    Posted 07-28-2015 11:49 AM

    Thank you Ujwol