HP MFP Sending Software 4.0 to 4.20 manual Troubleshooting authentication

Page 67

Troubleshooting authentication

If Find Settings does not return any information, or if a user-credential error occurs during Find Settings or Test, one of the following three criteria for a successful LDAP query probably has not been met:

HP DSS must be configured with the correct search root. The search root is a string that represents the location in the Active Directory database where the search begins. This is sometimes called the “search base.” The “base DN” (distinguished name) is the search root that describes the root of the Active Directory database. The base DN can be used as the search root when the LDAP client is configured to search the entire directory.

The account used in HP DSS must have read access to the data in Active Directory. The client account that is used to configure the LDAP lookup for authentication and addressing must have read access in the LDAP directory container that is indicated by the search root. In addition, if information about users and recipients is located in any part of the subtree indicated by the search root, the client account that is used must also have access to the subtree.

HP DSS must be configured to search the correct LDAP attributes. The LDAP client must be configured to search an existing LDAP attribute for information. LDAP attribute names vary somewhat between implementations.

Determining the LDAP server hostname or TCP/IP address

NOTE This method applies to the Windows environment only.

All domain controllers in a given domain contain a copy of the Active Directory database. Typically, all domain controllers run the LDAP service and are listening for LDAP queries on port 389. In some multi-domain environments, however, HP DSS should use the domain’s Global Catalog Server. The Global Catalog Server contains information about other domains in the domain forest and listens for LDAP queries on port 3268.

To determine which domain controller a specific Windows 2000 or XP client used to log onto the domain, look at the system variable “LOGONSERVER” by typing the following command at the command prompt:

C:\echo %LOGONSERVER%

NOTE All of the commands that are listed in this section should be performed from the server or workstation on which HP DSS is installed.

The LOGONSERVER environment variable contains the hostname of the domain controller. To obtain the TCP/IP address for any hostname, use the “nslookup” command. For example, to find the TCP/IP address for a server that has the hostname DC1, type the following command at the command prompt:

C:\nslookup DC1

In some cases, nslookup might not work, but the “ping” command also returns the TCP/IP address for a specific hostname.

One way to determine whether or not a specific domain controller is listening for LDAP queries is to telnet to the TCP/IP address of the domain controller and specify either port 389 or port 3268. To do this, type the following command at the command prompt : “telnet <TCP/IP address of the domain controller> <Port (389 or 3268)>”. For example:

Software features

ENWW

Using authentication 59

Image 67
Contents HP Digital Sending Software Page HP Digital Sending Software Copyright and License Table of contents Software features Console with ADSIEDIT.MSC Determining access rights Administration tool LDP.EXEDetermining the search root 105 Troubleshooting toolsInstallation and removal AppendixHP Digital Sending Software IntroductionPurpose and scope Software description Technology overview Embedded e-mail Dsmp Function Detail Compatibility Software capabilitiesFunctions available through HP DSS 1Functions available through HP DSSFax Function Detail AuthenticationHP MFP Digital Sending Software Configuration Utility Control-panel featuresRemote Configuration Utility Mail capabilities AuthenticationSecure e-mail Send-to-folder capabilities Fax capabilitiesSend-to-workflow capabilities 2HP DSS network requirements HP DSS componentsComponent Windows interface LicensingSeats Part Number Node Locking Hewlett-Packard limited warranty statementLicenses from prior versions License grant HP software license termsOwnership Part KEY Code Software description Software features Source Description Using Internet supportFinding documentation and other supporting information 1Sources of information2Support tools Understanding support toolsTool Purpose Using the e-mail feature Using the e-mail feature Email tab Configuring the e-mail featureExchange Mail servers that function as Smtp gatewaysLotus Domino Notes Verifying the Smtp gatewaySendmail QmailSecondary e-mail Using the secondary e-mail featureConfiguring secondary e-mail Using HP DSS to send secure e-mail5The Secondary Email tab To configure secondary e-mailLAN fax Using the fax featureInternet fax Windows 2000/XP faxLANFax LAN Fax notification TimeoutConfiguring the fax feature Configuring LAN fax notificationFax tab To configure LAN fax8Configuring Internet fax Software features To configure Internet faxTo configure Windows 2000/XP fax To configure Analog embedded fax Using the send-to-folder featureUsing HP DSS to send a document to a folder Send-to-folder FeatureChanging the settings Configuring the send-to-folder feature11 The Folders tab To configure the send-to-folder feature Configuring the send-to-workflow feature Using the send-to-workflow feature12 The Workflows tab Configuring a workflow menu Configuring a workflow groupTo create a workflow form for a folder destination Configuring a workflow form15 Add Prompts dialog box Software features Format Attributes 3Response format optionsSend to workflow Folder destination Creating a workflow form for an FTP site Creating a workflow form for a printer Software features Bind method Description Can be used by Using authentication4Authentication bind methods Ldap bind methodsWindows Active Directory authentication method Methods of authenticationDetermining the Ldap server bind method for Windows Windows AuthenticationNovell authentication methods Novell NDS configuration Ldap authenticationNovell Bindery configuration Ldap authentication 23The Authentication tab Configuring AuthenticationTo configure the Ldap server Ldap ConfigurationDetermining the Ldap server hostname or TCP/IP address Troubleshooting authentication\ telnet 15.63.55.144 Determining the search rootDetermining access rights Determining the correct Ldap attributes To determine Ldap attributes using LDP.EXEOnly one name appears in the Address Book Other authentication configuration issuesFirst name, last name out of order Ldap performance with dynamic Ldap addressingClearing addresses Using address booksEffect of authentication on address book availability Adding addressesPersonal distribution list Types of address booksPrivate PersonalPublic distribution list Using the Address Book ManagerGuest Global Replicated LDAP/ABMImporting addresses into the ABM Configuring address booksEffect at the control panel Configuring Ldap directory replication6Address book synchronization Method DescriptionTo set up automatic replication of the Ldap address book Configuring personal address booksConfiguring DSS address books Configuring individual devicesTo add a new device Icon Description Configuring a deviceMFP list 7MFP list iconsSoftware features Send to Email tab 27Send to Email tab in the Configure MFPs windowTo enable send to e-mail directly from the MFP To enable send to e-mail by using HP DSS28Advanced E-mail Settings dialog box Advanced e-mail settingsSend to Fax tab Configuring the HP DSS send-to-fax feature Option Action Configuring the MFP analog send-to-fax feature8MFP modem settings Addressing tabSoftware features Select Active Directory Defaults Advanced addressing settings Software features Log tab Document Size Document Type Preferences tabProperties tab 34Properties tab in the Configure Mfps windowSoftware features Troubleshooting tools To view the activity log Using the Activity Log in the Configuration Utility1Device log events Using the log for an individual deviceEvent Description Action to take Running 2Critical error messages Understanding critical error notificationsError Message Suggested Actions Troubleshooting tools Installation and removal Network operating systems Requirements for installing HP DSSSystem requirements Supported platformsClient operating systems for the Address Book Manager only MFP firmware requirementsNovell NetWare support Ports HP DSS CD contentsUpgrading from previous versions of HP DSS Uninstalling HP DSS Installation and removal Appendix 1Effects of the file settings Workflow image file settingsImage processing 2Document type settings Mail file settingsDocument type Description Accpcc Supported third-party fax programsTopcall Appendix Gateways FaxMessages Page Hewlett-Packard Development Company, L.P