Search code examples
visual-studio-2010active-directoryldapwindows-server-2003

AD with LDAP connection error


Im trying to use a .net application but the application cant find the server in my local network.

Im using LdapExploreTool 2 with the following settings: LdapExplorer

the base DN is "DC=exago,DC=local", the Ip address "192.168.1.250" and the server name "exago.local"

The connection is successful and this is the result: ldap
Inputing the values: ldap2
Examining the code, i get the exception when "Bind to the native AdsObject to force authentication":

"The specified domain either does not exist or could not be contacted."

  public bool IsAuthenticated(string domain, string ldapPath, string username, string pwd, string userToValidate)
    {
        string domainAndUsername = domain + @"\" + username;

        if (string.IsNullOrEmpty(ldapPath))
            SetLdapPath(domain);
        else
            _path = ldapPath;
        App.Services.Log.LogUtils.WriteLog(Log.LogLevel.INFO, "IsAuthenticated_DirectoryEntry:" + _path + "," + domainAndUsername + "," + pwd);
        DirectoryEntry entry = new DirectoryEntry(_path, domainAndUsername, pwd);

        //check if domain is valid
        int domainId = AppDomains.GetDomainIdByName(domain);
        if (domainId == int.MinValue)
        {
            return false;
        }

        AppDomains d = AppDomains.GetRecord(domainId);
        List<AppDomainQueries> lQueries = new List<AppDomainQueries>(AppDomainQueries.GetArray());
        lQueries = lQueries.FindAll(delegate(AppDomainQueries dq) { return dq.DomainId == domainId && dq.Status == 'A'; });

        string queryString = string.Empty;
        try
        {
            // Bind to the native AdsObject to force authentication.
            Object obj = entry.NativeObject;

            DirectorySearcher search = new DirectorySearcher(entry);

            string ldapAndQuerie = string.Empty;

            //base account search
            queryString = "(SAMAccountName=" + userToValidate + ")";


            if (username != userToValidate)
            {
                if (lQueries.Count == 1)
                    ldapAndQuerie = lQueries.FirstOrDefault().QueryString;

                if ((ldapAndQuerie != string.Empty) && (ldapAndQuerie != "*") && (ldapAndQuerie != "(objectClass = user)"))
                    queryString = "(&(SAMAccountName=" + userToValidate + ")" + ldapAndQuerie + ")";
            }

            search.Filter = queryString;

            App.Services.Log.LogUtils.WriteLog(Log.LogLevel.INFO, "LDAP=" + queryString);


            search.PropertiesToLoad.Add("cn");
            SearchResult result = search.FindOne();
            if (null == result)
            {
                return false;
            }
            // Update the new path to the user in the directory
            _path = result.Path;
            _filterAttribute = (String)result.Properties["cn"][0];
        }
        catch (Exception ex)
        {
            App.Services.Log.LogUtils.WriteLog(Log.LogLevel.ERROR, "App.Services.Core.LdapAuthentication.IsAuthenticated() Exception - (LDAP=" + queryString + ")" + ex.Message, ex);
            return false;
        }
        return true;
    }

How can i establish a connection?


Solution

  • The problem was the LDAP connection string, it seems that it missed the actual location(IP + port) in the network.

    LDAP://192.168.1.250:389/DC=exago,DC=local