<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00006yROpdCAGOkta Classic EngineIntegrationsAnswered2024-10-29T19:34:19.000Z2021-05-19T18:17:13.000Z2024-10-29T19:34:16.000Z

DanielT.69415 (Customer) asked a question.

Please review your configuration and retry validation.

I'm trying to validate a user but I received the following error

 

Note: this for LDAP integration

 

User not found while executing query: (&(objectclass=organizationalperson)(mail=alex.smit@okta.com))

 

Please review your configuration and retry validation.

 

Here is the current config

 

Select LDAP Version

LDAP Version

AD LDS

Select an LDAP version to pre-populate the fields below.

 

Configure LDAP

Objects

Unique Identifier Attribute

distinguishedname

The attribute on all Objects that contains a unique, immutable ID

 

DN Attribute

distinguishedname

The attribute on all Objects that contains a Distinguished Name

 

User

User Search Base

The container to perform User searches in

 

Object Class

organizationalperson

The ObjectClass of a User

 

Auxiliary Object Class

Auxiliary ObjectClasses of a User

 

User Object Filter

(objectclass=organizationalperson)

LDAP search filter to use when searching user objects

 

Account Disabled Attribute

msds-useraccountdisabled

The writeable attribute on a User used to indicate their account is disabled

 

Account Disabled Value

TRUE

The value that indicates an account is disabled, e.g. "TRUE"

 

Account Enabled Value

FALSE

The value that indicates an account is enabled, e.g. "FALSE"

 

Password Attribute

unicodepwd

The attribute on a User used to indicate password

 

Password Expiration Attribute

The attribute on a User used to indicate if password is expired

 

Extra User Attributes

Extra User Attribute 1

Extra User Attribute 2

Extra User Attribute 3

Extra User Attribute 4

Group

Group Search Base

The container to perform Group searches in

 

Group Object Class

group

The ObjectClass of a Group

 

Group Object Filter

(objectclass=group)

LDAP search filter to use when searching group objects

 

Member Attribute

member

Defines which users are members of the group

 

User Attribute

Leave this field blank unless your groupObject is posixGroup. Read more here

 

Role

Object Class

The ObjectClass of a Role

 

Membership Attribute

The attribute on a User that indicates membership in a Role

 

Validate Configuration

Before you complete setup, select the username format you would like users to use when logging into the Okta service. Then validate your configuration by entering a username and confirming that the user's properties and group memberships are properly fetched from your LDAP instance.

 

Okta username format

 

Email address

Select the username you would like users to enter to log into the Okta service. This must be in an email format.

 

Example username

alex.smit@okta.com

Enter the Okta username of a user in your LDAP directory. Use the username format you have chosen above (e.g. if your username format is "UID + Configuration Suffix" enter UID@suffix.com).


This question is closed.
Loading
Please review your configuration and retry validation.