The information in this article applies to:
SYMPTOMSAUO (Active User Object) may fail to bind to a Lightweight Directory Access Protocol (LDAP) server, generating error 80020009, when using Microsoft Windows NT LAN Manager security (NTLM). CAUSEThe default behavior of AUO is to only bind using clear text authentication (basic authentication). WORKAROUNDUse Secure Sockets Layer (SSL). RESOLUTIONTo resolve this problem, obtain the latest service pack for Site Server 3.0. For additional information, please see the following article in the
Microsoft Knowledge Base: Q219292 How to Obtain the Latest Site Server 3.0 Service Pack STATUSThis problem was first corrected in Site Server 3.0 Service Pack 3. MORE INFORMATION
Using clear text authentication is a security concern when AUO is on a server other than the LDAP service. With the fix, NTLM is tried first, then cleartext.
Microsoft Active Directory Service Interfaces (ADSI) version 2.5 is required for this fix to work. Additional query words:
Keywords : SS3SP3Fix |
Last Reviewed: October 26, 1999 © 2000 Microsoft Corporation. All rights reserved. Terms of Use. |