Video Screencast Help
Search Video Help Close Back
to help
New in the Rewards Catalog: Vouchers for "Symantec Technical Specialist" and "Symantec Certified Specialist" exams.

LDAP OU Synchronization

Updated: 21 May 2010 | 2 comments
BW_Dreamer's picture
0 0 Votes
Login to vote
This issue has been solved. See solution.

I am setting up the new Endpoint Protection for my company. I want to be able to import the OU's where my servers and workstations are located. The problem I am having is that we have multiple AD Domains. I have gone into Admin section and opened  up the Server Properties window. I can set up the LDAP Directory Server for the domain where my service account is located. I cannot set up one for any of my other domains. I have even tried adding this service account to the domain admins group which should give it access to all of the domains. I even tried using my Domain Admin account which will let me log onto any server in the enterprise. Do I have to set up an account for each domain?

Comments

jrudbecka's picture
22
May
2009
0 Votes 0
Login to vote

If you what to import your

If you what to import your AD, you will need a users which have read access. Try use a simple user and password.

But if you add all your domains under the admin section,edit your server, under directory servers, your should be able to load your OU into clients.

Are you using the active directory or the ldap selection?

I have no problems when I use the first.

sandip_sali's picture
22
May
2009
2 Votes +2
Login to vote

Hi,        Please check the

Hi,

       Please check the following steps and let us know whether it helped.

- Whatever SEPM -> Clients > Import Organizational Unit or Container > If you select the 1st domain set up in the manager -> No error comes up. Importation works OK.

- Whatever SEPM -> Clients > Import Organizational Unit or Container > If you select the 2nd domain set up in the manager -> Console Error: Failed to connect to Directory Server. Verify that the server name and port are correct. [0xe0210000]

imagebrowser image

Each Symantec Endpoint Protection Manager makes use of one ODBC driver.
When you add one Domain Controller (DC1) in the SEPM, this ODBC is used by that DC1.
When you add another Domain Controller (DC2) in the SEPM, the ODBC is already in use by the DC1, therefore you get the error message about the failure of the Directory Server connection.

imagebrowser image

Add the 2nd Domain Controller (and the 3rd, 4th, ...) as Replication Server:

Admin > Servers > Local Site > server1 > Edit Properties > Directory Servers (tab) > Select DC1 > Edit DC1 > Replication Servers (tab) > Type the IP address of the 2nd Domain Controller

You can add more Domain Controllers as Replication Servers.

Thanks & Regards Sandip C Sali