When switching to a GC, which is not preferred, our experience is that it never tries to bind to a user, and anonymous binding is disabled:
21:43:09.134 [http-nio-8080-exec-6] DEBUG o.a.g.a.l.AuthenticationProviderService - Anonymous bind is not currently allowed by the LDAP authentication provider. 21:43:09.137 [http-nio-8080-exec-6] DEBUG o.a.g.r.auth.AuthenticationService - Anonymous authentication attempt from 10.1.18.39 failed. 21:52:47.368 [http-nio-8080-exec-1] DEBUG o.a.g.a.ldap.LDAPConnectionService - Connection to LDAP server without encryption. 21:52:47.415 [http-nio-8080-exec-1] DEBUG o.a.g.auth.ldap.ObjectQueryService - Searching "DC=AD,DC=DOMAIN,DC=org" for objects matching "(&(objectClass=*)(cn=username))". 21:52:47.449 [http-nio-8080-exec-1] DEBUG o.a.g.a.l.AuthenticationProviderService - Unable to determine DN for user "username". 21:52:47.449 [http-nio-8080-exec-1] WARN o.a.g.r.auth.AuthenticationService - Authentication attempt from 10.1.18.39 for user "username" failed. -- Sent from: http://apache-guacamole-general-user-mailing-list.2363388.n4.nabble.com/ --------------------------------------------------------------------- To unsubscribe, e-mail: [email protected] For additional commands, e-mail: [email protected]
