<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: After upgrade to 6.5 update 1 broken AD authentication in vSphere Upgrade &amp; Install Discussions</title>
    <link>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409950#M15709</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Make sure you have configured nameservers in &lt;STRONG&gt;/etc/resolv.conf&lt;/STRONG&gt; of VCSA.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 15 Aug 2017 12:10:22 GMT</pubDate>
    <dc:creator>vijayrana968</dc:creator>
    <dc:date>2017-08-15T12:10:22Z</dc:date>
    <item>
      <title>After upgrade to 6.5 update 1 broken AD authentication</title>
      <link>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409949#M15708</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have upgrade VCSA to 6.5 Update 1 (from 6.5)&lt;/P&gt;&lt;P&gt;After this I can't login using AD credentials. administrator@vsphare.local is still working&lt;/P&gt;&lt;P&gt;Logs say:&lt;/P&gt;&lt;P&gt;Invalid credentials&lt;/P&gt;&lt;P&gt;exception 'com.vmware.identity.idm.IDMLoginException: Native platform error [code: 851968]&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Network packects at port 389 are going. And i can add permissions at objects: vcenter sees users from AD.&lt;/P&gt;&lt;P&gt;"Identify Source" for domain is configured with "use machine account".&lt;/P&gt;&lt;P&gt;When i try to using SPN, I need type SPN as STS/domain.local, but i have error: SPN can't be found&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now i have configured AD as LDAP service, but it is not good way.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does anyone know something about this problem ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Aug 2017 11:33:29 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409949#M15708</guid>
      <dc:creator>KuznetsovA</dc:creator>
      <dc:date>2017-08-15T11:33:29Z</dc:date>
    </item>
    <item>
      <title>Re: After upgrade to 6.5 update 1 broken AD authentication</title>
      <link>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409950#M15709</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Make sure you have configured nameservers in &lt;STRONG&gt;/etc/resolv.conf&lt;/STRONG&gt; of VCSA.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Aug 2017 12:10:22 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409950#M15709</guid>
      <dc:creator>vijayrana968</dc:creator>
      <dc:date>2017-08-15T12:10:22Z</dc:date>
    </item>
    <item>
      <title>Re: After upgrade to 6.5 update 1 broken AD authentication</title>
      <link>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409951#M15710</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Checked. It is ok.&lt;/P&gt;&lt;P&gt;and krb5.conf too.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Aug 2017 12:36:20 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409951#M15710</guid>
      <dc:creator>KuznetsovA</dc:creator>
      <dc:date>2017-08-15T12:36:20Z</dc:date>
    </item>
    <item>
      <title>Re: After upgrade to 6.5 update 1 broken AD authentication</title>
      <link>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409952#M15711</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;VCSA FQDN is resolving successfully ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Aug 2017 12:54:40 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409952#M15711</guid>
      <dc:creator>vijayrana968</dc:creator>
      <dc:date>2017-08-15T12:54:40Z</dc:date>
    </item>
    <item>
      <title>Re: After upgrade to 6.5 update 1 broken AD authentication</title>
      <link>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409953#M15712</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Check if it works for you &lt;A href="http://raoconnor.com/vsphere-6/creating-an-spn-for-use-with-vcsa-6/" title="http://raoconnor.com/vsphere-6/creating-an-spn-for-use-with-vcsa-6/"&gt;Creating an SPN for use with VCSA 6 – cloud, virtualization and sddc blog&lt;/A&gt; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Aug 2017 13:05:41 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409953#M15712</guid>
      <dc:creator>vijayrana968</dc:creator>
      <dc:date>2017-08-15T13:05:41Z</dc:date>
    </item>
    <item>
      <title>Re: After upgrade to 6.5 update 1 broken AD authentication</title>
      <link>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409954#M15713</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have created SPN. Checked that it exists.&lt;/P&gt;&lt;P&gt;But I can't use it.&lt;/P&gt;&lt;P&gt;I input SPN, username and password, but i received in gui: "No principal name found".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In logs: &lt;/P&gt;&lt;P&gt;vmware-sts-idmd.log: probeAdConnectivity failed for &lt;EM&gt;user@domain&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;ssoAdminServer.log: ERROR com.vmware.identity.admin.server.ims.impl.DomainManagementImpl] Invalid crendential? principalName: [&lt;EM&gt;user@domain&lt;/EM&gt;], details: [probeAdConnectivity failed for &lt;EM&gt;user@domain&lt;/EM&gt;]&lt;/P&gt;&lt;P&gt;The specified principal (&lt;EM&gt;user@domain&lt;/EM&gt;) is invalid.&lt;/P&gt;&lt;P&gt;com.vmware.vim.sso.admin.exception.InvalidPrincipalException: The &lt;SPAN style="text-decoration: underline;"&gt;specified principal&lt;/SPAN&gt; (&lt;EM&gt;user@domain&lt;/EM&gt;) is invalid.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But with the same user and password i can configure AD as LDAP.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any ideas ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Aug 2017 14:27:25 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409954#M15713</guid>
      <dc:creator>KuznetsovA</dc:creator>
      <dc:date>2017-08-15T14:27:25Z</dc:date>
    </item>
    <item>
      <title>Re: After upgrade to 6.5 update 1 broken AD authentication</title>
      <link>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409955#M15714</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can you check if the vCSA has joined the Domain from CLI. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: small; font-family: 'Courier New';"&gt;/opt/likewise/bin/domainjoin-cli query &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: small; font-family: 'Courier New';"&gt;and if it is already joined the domain, then try the below steps in order to correct the behavior &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-weight: bold; color: #333333; font-family: 'VM Regular';"&gt;In disjoint domain namespace the domain users might fail to authenticate after you update to vSphere 6.5 Update 1&lt;/SPAN&gt;&lt;/P&gt;&lt;P style="margin-bottom: 10px; color: #333333; font-family: 'VM Regular';"&gt;After you update a Platform Services Controller Appliance to vSphere 6.5 Update 1, in the disjoint domain namespace the users might fail&amp;nbsp; to authenticate.&lt;/P&gt;&lt;P style="margin-bottom: 10px; color: #333333; font-family: 'VM Regular';"&gt;1. Log in to the Platform Services Controller Appliance as root and activate the bash shell.&lt;BR /&gt;2. Leave the domain by running the &lt;CODE style="font-family: Menlo, Monaco, Consolas, 'Courier New', monospace; font-size: 12.6px; color: #c7254e; background-color: #f9f2f4; padding: 2px 4px;"&gt;/opt/likewise/bin/domainjoin-cli leave &lt;/CODE&gt;command.&lt;BR /&gt;3. Reboot the appliance.&lt;BR /&gt;4. Delete the computer account on the Active Directory.&lt;BR /&gt;5. Log in to the appliance again and enable the bash shell.&lt;BR /&gt;6. Join to the domain by running the following command &lt;CODE style="font-family: Menlo, Monaco, Consolas, 'Courier New', monospace; font-size: 12.6px; color: #c7254e; background-color: #f9f2f4; padding: 2px 4px;"&gt;/opt/likewise/bin/domainjoin-cli join &lt;EM&gt;domain-name&lt;/EM&gt; &lt;EM&gt;domain_admin_user&lt;/EM&gt;&lt;/CODE&gt;&lt;BR /&gt;for example: &lt;CODE style="font-family: Menlo, Monaco, Consolas, 'Courier New', monospace; font-size: 12.6px; color: #c7254e; background-color: #f9f2f4; padding: 2px 4px;"&gt;/opt/likewise/bin/domainjoin-cli join &lt;EM&gt;vmware.com administrator&lt;/EM&gt;&lt;/CODE&gt;&lt;BR /&gt;7. Reboot the appliance.&lt;/P&gt;&lt;P style="margin-bottom: 10px; color: #333333; font-family: 'VM Regular';"&gt;&lt;/P&gt;&lt;P style="margin-bottom: 10px; color: #333333; font-family: 'VM Regular';"&gt;Release notes link: &lt;A href="https://docs.vmware.com/en/VMware-vSphere/6.5/rn/vsphere-vcenter-server-651-release-notes.html" title="https://docs.vmware.com/en/VMware-vSphere/6.5/rn/vsphere-vcenter-server-651-release-notes.html"&gt;VMware vCenter Server 6.5 Update 1 Release Notes&lt;/A&gt; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Aug 2017 21:32:27 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409955#M15714</guid>
      <dc:creator>Camero</dc:creator>
      <dc:date>2017-08-15T21:32:27Z</dc:date>
    </item>
    <item>
      <title>Re: After upgrade to 6.5 update 1 broken AD authentication</title>
      <link>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409956#M15715</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank You.&lt;/P&gt;&lt;P&gt;After correct /etc/hostname by hand ("&lt;SPAN style="font-size: small; font-family: 'Courier New';"&gt;/opt/likewise/bin/domainjoin-cli sethostname" got error) and join by hand, I got oportunity to add Windows authentication mechanism.&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 16 Aug 2017 13:27:18 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409956#M15715</guid>
      <dc:creator>KuznetsovA</dc:creator>
      <dc:date>2017-08-16T13:27:18Z</dc:date>
    </item>
    <item>
      <title>Re: After upgrade to 6.5 update 1 broken AD authentication</title>
      <link>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409957#M15716</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It is the same for me.&lt;/P&gt;&lt;P&gt;After a reboot I noticed that the hostname has been set back to "&lt;SPAN style="font-family: courier new,courier;"&gt;localhost.localdom&lt;/SPAN&gt;".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I used the command&lt;/P&gt;&lt;PRE __default_attr="plain" __jive_macro_name="code" class="jive_macro_code _jivemacro_uid_15041814865898882 jive_text_macro" data-renderedposition="93.5_8_1232_16" jivemacro_uid="_15041814865898882" modifiedtitle="true"&gt;&lt;P&gt;&lt;CODE&gt;/opt/likewise/bin/domainjoin-cli join &lt;EM&gt;domain-name&lt;/EM&gt; &lt;EM&gt;domain_admin_user&lt;/EM&gt;&lt;/CODE&gt;&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;to change it back and &lt;STRONG&gt;didn't reboot&lt;/STRONG&gt; after that.&lt;/P&gt;&lt;P&gt;Immediately after changing the name the AD authentication worked again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This has to be a bug not yet resolved ... pretty bad that you have to search for hours for something that hasn't been a problem in the past.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 31 Aug 2017 12:11:27 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409957#M15716</guid>
      <dc:creator>NelsonCandela</dc:creator>
      <dc:date>2017-08-31T12:11:27Z</dc:date>
    </item>
    <item>
      <title>Re: After upgrade to 6.5 update 1 broken AD authentication</title>
      <link>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409958#M15717</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The reason could also be the domain functional level, see compatibility matrix below&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="pastedImage_0.png"&gt;&lt;img src="https://communities.vmware.com/t5/image/serverpage/image-id/1347iAF8B036A7C5861AA/image-size/large?v=v2&amp;amp;px=999" role="button" title="pastedImage_0.png" alt="pastedImage_0.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 10 Jun 2018 21:32:33 GMT</pubDate>
      <guid>https://communities.vmware.com/t5/vSphere-Upgrade-Install/After-upgrade-to-6-5-update-1-broken-AD-authentication/m-p/1409958#M15717</guid>
      <dc:creator>TomasLupek</dc:creator>
      <dc:date>2018-06-10T21:32:33Z</dc:date>
    </item>
  </channel>
</rss>

