DSCC - Configuring "Pass Through Authentication" To Use SSL Fails With " Bind through PTA failed (81)." (Doc ID 1609445.1)

Last updated on DECEMBER 04, 2016

Applies to:

Oracle Directory Server Enterprise Edition - Version 6.0 to 11.1.1.7.0 [Release 6.0 to 11gR1]
Information in this document applies to any platform.

Symptoms

Configuring the "Pass Through Authentication" plugin to use SSL fails with

[19/Dec/2013:14:43:27 +0000] - ERROR<53761> - Plugins - conn=-1 op=-1 msgId=-1 - Connection  Bind through PTA failed (81).
[19/Dec/2013:14:43:27 +0000] - ERROR<53761> - Plugins - conn=-1 op=-1 msgId=-1 - Connection  Bind through PTA failed (81). Retrying...


Changes

 1. Configure the Pass Through Authentication to use SSL, e.g.

$ dsconf set-plugin-prop -p 1389 -w /tmp/passwd  "Pass Through Authentication" argument:ldaps://dscc.example.com:3999/cn=dscc
The plugin "Pass Through Authentication" is a system plugin.
Forcing this operation may cause the server to malfunction.
Do you want to continue [y/n] ?  y
Directory Server must be restarted for changes to take effect.

 

2. Confirm SSL is enabled.


$ dsconf get-plugin-prop -p 1389 -w /tmp/passwd "Pass Through Authentication"
argument          :  ldaps://dscc.example.com:3999/cn=dscc
depends-on-named  :
depends-on-type   :
desc              :  pass through authentication plugin
enabled           :  on
feature           :  passthruauth
init-func         :  passthruauth_init
lib-path          :  /refresh/installs/odsee/11.1.1.7.0/zip/dsee7/lib/passthru-plugin.so
type              :  preoperation
vendor            :  Oracle Corporation
version           :  11.1.1.7.0

 

3. Restart the Directory Server
$ dsadm stop .
Directory Server instance '/refresh/installs/odsee/11.1.1.7.0/instances/ex/ds1' stopped
$ dsadm start .
Directory Server instance '/refresh/installs/odsee/11.1.1.7.0/instances/ex/ds1' started: pid=8956

 

4. After enabling LDAPS the following issues are seen in the DSCC and the error log,

ds1.example.com:1389 - Directory Server Not Accessible
 You must grant access to this server in order to view and edit its configuration.

 

[19/Dec/2013:14:43:27 +0000] - ERROR<53761> - Plugins - conn=-1 op=-1 msgId=-1 - Connection  Bind through PTA failed (81).
[19/Dec/2013:14:43:27 +0000] - ERROR<53761> - Plugins - conn=-1 op=-1 msgId=-1 - Connection  Bind through PTA failed (81). Retrying...



Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms