OID 11g DIP AD to OID Sync Profile Creation Fails with: <Error> <oracle.dip> <BEA-000000> <Connection To LDAP Server Failed>. DIP Log Error: javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903A9 (Doc ID 1573120.1)

Last updated on MARCH 08, 2017

Applies to:

Oracle Internet Directory - Version 11.1.1 and later
Information in this document applies to any platform.

Symptoms

Oracle Internet Directory (OID) 11g, i.e., 11.1.1.6.0, configuring Directory Integration Platform (DIP) import sync from Active Directory (AD).

Able to successfully connect to AD from command line ldapbind.

Enterprise Manager (EM) Fusion Middleware (FMW) Control Console > DIP synch profile creation fails due an ldap connection error:

<Error> <oracle.dip> <BEA-000000> <Connection to LDAP server failed>


The corresponding DIP log (e.g., $FMW_HOME/user_projects/domains/IDMDomain1/servers/wls_ods1/logs/wls_ods1-diagnostic.log) shows:

...<snip>...
APP: DIP#11.1.1.2.0] Error connecting to the directory server.[[
javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903A9, comment: AcceptSecurityContext error, data 52e, v1db1]
at com.sun.jndi.ldap.LdapCtx.mapErrorCode(LdapCtx.java:3067)
at com.sun.jndi.ldap.LdapCtx.processReturnCode(LdapCtx.java:3013)
at com.sun.jndi.ldap.LdapCtx.processReturnCode(LdapCtx.java:2815)
at com.sun.jndi.ldap.LdapCtx.connect(LdapCtx.java:2729)
at com.sun.jndi.ldap.LdapCtx.<init>(LdapCtx.java:296)
...<snip>...

  

 

Changes

 

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms