<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: LDAP Server as FQDN in LDAP Server Profile in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/ldap-server-as-fqdn-in-ldap-server-profile/m-p/120711#M45962</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Have you confirmed that DNS resolution is working fine ?&lt;/P&gt;
&lt;P&gt;You may want to check for&amp;nbsp;&lt;SPAN&gt;DNS resolution errors in the logs.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Cheers,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-Kim.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 24 Oct 2016 07:23:29 GMT</pubDate>
    <dc:creator>kiwi</dc:creator>
    <dc:date>2016-10-24T07:23:29Z</dc:date>
    <item>
      <title>LDAP Server as FQDN in LDAP Server Profile</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ldap-server-as-fqdn-in-ldap-server-profile/m-p/120672#M45959</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When FQDN (port 636) is used in the Address field, user cannot connect. Gets error: LDAP auth server is down!&lt;/P&gt;&lt;P&gt;What settings need to be applied so that LDAP server profile can use FQDN besides IP address?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;IMG src="https://live.paloaltonetworks.com/legacyfs/online/5874_LDAP%20Config%20v418+.png" border="0" alt="LDAP Config v418+.png" /&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Oct 2016 04:42:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ldap-server-as-fqdn-in-ldap-server-profile/m-p/120672#M45959</guid>
      <dc:creator>Farzana</dc:creator>
      <dc:date>2016-10-24T04:42:12Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP Server as FQDN in LDAP Server Profile</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ldap-server-as-fqdn-in-ldap-server-profile/m-p/120711#M45962</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Have you confirmed that DNS resolution is working fine ?&lt;/P&gt;
&lt;P&gt;You may want to check for&amp;nbsp;&lt;SPAN&gt;DNS resolution errors in the logs.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Cheers,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-Kim.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Oct 2016 07:23:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ldap-server-as-fqdn-in-ldap-server-profile/m-p/120711#M45962</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2016-10-24T07:23:29Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP Server as FQDN in LDAP Server Profile</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ldap-server-as-fqdn-in-ldap-server-profile/m-p/121015#M46009</link>
      <description>&lt;P&gt;Hello Kim,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you for providing your time on this query.&lt;/P&gt;&lt;P&gt;Using internal name servers...not public DNS. Tried both LDAP (389) and LDAPS (636) but when FQDN is used in the LDAP server profile getting error: LDAP auth server down!!!&amp;nbsp;&lt;/P&gt;&lt;P&gt;Works fine when IP address is used. Any bug that you are aware of?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;&lt;P&gt;Farzana&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Oct 2016 03:37:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ldap-server-as-fqdn-in-ldap-server-profile/m-p/121015#M46009</guid>
      <dc:creator>Farzana</dc:creator>
      <dc:date>2016-10-25T03:37:32Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP Server as FQDN in LDAP Server Profile</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ldap-server-as-fqdn-in-ldap-server-profile/m-p/121407#M46036</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Even using an internal&amp;nbsp;DNS server your firewall will have to be able to resolve it correctly.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Every time you perform LDAP server communication (for example manual or automatic user group refresh, authentication LDAP query or similar LDAP actions) our system will perform DNS lookup and resolve IP address for configured FQDN for LDAP server in LDAP server profile.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;From the CLI try 'ping host &amp;lt;FQDN hostname&amp;gt;' to confirm if your firewall resolves it correctly.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;-Kim.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 26 Oct 2016 08:05:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ldap-server-as-fqdn-in-ldap-server-profile/m-p/121407#M46036</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2016-10-26T08:05:11Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP Server as FQDN in LDAP Server Profile</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ldap-server-as-fqdn-in-ldap-server-profile/m-p/123050#M46193</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Just wanted to close the loop by mentioning that issue is resolved by restarting the authd process.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 01 Nov 2016 22:43:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ldap-server-as-fqdn-in-ldap-server-profile/m-p/123050#M46193</guid>
      <dc:creator>Farzana</dc:creator>
      <dc:date>2016-11-01T22:43:17Z</dc:date>
    </item>
  </channel>
</rss>

