Action
• Verify that the full DN of the user object exists in the directory.
This information appears after the first
CN=
in the DN.
• Verify that the remainder of the DN was added as a user context.
User contexts are not case-sensitive, and any other characters, including spaces, are part of the user
context.
iLO directory user account does not log out after directory timeout expires
Symptom
A directory user is not logged out after being idle for the amount of time configured for the directory login
timeout.
Cause
The iLO
Idle Connection Timeout
value is set to
Infinite
. With this configuration, the Remote Console
periodically pings the iLO firmware to verify that the connection exists. When the Remote Console pings
iLO, the iLO firmware queries the directory for user permissions. This periodic query keeps the directory
connection active, and prevents a user from being logged out based on the directory timeout settings.
Action
Change the
Idle Connection Timeout
setting.
Failure generating Kerberos keytab file for iLO Zero Sign In configuration
Symptom
When you try to generate a keytab file with
ktpass
, the process fails.
Cause
The
ktpass
command was formatted incorrectly.
Action
Try again, and ensure that the principal name in the
ktpass
command is formatted correctly.
Error when running
Setspn
for iLO Kerberos configuration
Symptom
An error occurred when running the
Setspn
command.
Action
1.
Use MMC with the
ADSIEdit
snap-in, and find the computer object for iLO.
2.
Set the
DNSHostName
property to the iLO DNS name.
For example:
cn=iloname,ou=us,ou=clients,dc=example,dc=net
376
iLO directory user account does not log out after directory timeout
expires