Security

 View Only
  • 1.  Machine Auth Error: Invalid DN syntax

    Posted Jul 24, 2023 10:01 AM

    Hi all,

    I ran into a strange problem with a client that is authenticating by the machine account via an AD source.

    The error is:
    Session failed for Host=domain.com, Reason=[, (error=34) Invalid DN syntax ServerMsg=0000208F: LdapErr: DSID-0C090B04, comment: Error processing name, data 0, v4f7c]

    Other clients (same GPO etc.) are working fine. Its just one client with a strange behaviour. I haven't seen this error before and can't find anything regarding to this.
    There are no Username Stripping rules in the authentication service.

    has anyone seen this error before?

    Thanks in advance



    ------------------------------
    Frederik
    ------------------------------


  • 2.  RE: Machine Auth Error: Invalid DN syntax
    Best Answer

    Posted Jul 24, 2023 10:27 AM

    Hi Frederik

    Is this computer having problems placed in the same OU as machines working fine?

    The error message indicates that there is something wrong with the DN, and the DN is created from the hostname and the OU path.

    Does the hostname or the OU contains any characters outside the american alphabet, A-Z, a-z, 0-9?

    Another thought, have you moved the computer object from one OU to another and a computer certificate was issued before the move and now contains a DN from the old location?



    ------------------------------
    Best Regards
    Jonas Hammarbäck
    MVP 2023, ACCX #1335, ACX-Network Security, Aruba SME, ACMP, ACDP , ACEP, ACSA
    Aranya AB
    If you find my answer useful, consider giving kudos and/or mark as solution
    ------------------------------



  • 3.  RE: Machine Auth Error: Invalid DN syntax

    Posted Jul 24, 2023 11:18 AM

    Hi Jonas,

    thanks for your quick answer. I checked the OU names after the post and it looks like that this is the problem. There is a "\" in the OU name. I will test it tomorrow morning (CEST) and report the outcome!

    Thanks again for your quick help.



    ------------------------------
    Frederik
    ------------------------------



  • 4.  RE: Machine Auth Error: Invalid DN syntax

    Posted Jul 25, 2023 07:30 AM

    Hi Jonas / all,

    in the OU was a faulty character "," that causes that error!
    After removing the character the authentication works as it should be.

    Thanks again for your help.



    ------------------------------
    Frederik
    ------------------------------



  • 5.  RE: Machine Auth Error: Invalid DN syntax

    Posted Jul 25, 2023 07:32 AM

    Good to hear you could solve the issue!



    ------------------------------
    Best Regards
    Jonas Hammarbäck
    MVP 2023, ACCX #1335, ACX-Network Security, Aruba SME, ACMP, ACDP , ACEP, ACSA
    Aranya AB
    If you find my answer useful, consider giving kudos and/or mark as solution
    ------------------------------