Latest IIS Cumulative Patch Breaks LDAP?

From: Dave Stubbs (dstubbs@8INCHFLOPPY.COM)
Date: 09/20/01


Message-ID:  <7D57B2E31009844BA89668BE695146A501126F@enterprise.spacedock.8inchfloppy.com>
Date:         Thu, 20 Sep 2001 09:32:43 -0400
From: Dave Stubbs <dstubbs@8INCHFLOPPY.COM>
Subject:      Latest IIS Cumulative Patch Breaks LDAP?
To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM

Hello,

Just wondering if anyone else has seen this out there. I've had this
happen on two machines so far, and am about to try the third (but I'm
going to sysdiff it first to see what's happening).

When I install the latest cumulative IIS5 patch (q301625) on Win2000
Active Directory Domain Controller with Exchange 2000 installed, it
appears that the patch either breaks or disables LDAP on the server. I
can no longer run Exchange System Manager or Active Directory Users and
Computers from any other machine except the server itself. I tried
using Outlook Express to query the LDAP service and it complains about
the service being unavailable. If I telnet to the server on port 389 it
opens the port and then IMMEDIATELY closes the session. As an added
bonus, the server will no longer NAT-route LDAP traffic to other
networks either.

Yes, I know that running an Windows2000 server as an AD controller with
RRAS NAT routing and Exchange2000 and Exchange2000Conferencing is a bit
complex, but it all worked fine before and now LDAP doesn't work after
applying the patch! I'm sure glad I've tried this in a test environment
before trying to roll it out at work! Kinda need the LDAP, y'know?

======================================
Delivery co-sponsored by Trend Micro, Inc.
======================================
BEST-OF-BREED ANTIVIRUS SOLUTION FOR MICROSOFT EXCHANGE 2000
Earn 5% rebate on licenses purchased for Trend Micro ScanMail for
Microsoft Exchange 2000 between October 1 and November 16. ScanMail
ensures 100% scanning of inbound and outbound traffic and provides
remote software management. For program details or to download your
30-day FREE evaluation copy:
http://www.antivirus.com/banners/tracking.asp?siS&BI;$5&UL;=http://www.ant
ivirus.com/smex2000_rebate



Relevant Pages

  • Re: Does samba 3.0.14Aa on OS 5.0.6 work with ldapsam backend on another LDAP server?
    ... used 3.0.9 on SCO 5.0.6 for quite some time after suffering problems I ... a RedHat4 box running samba 3.0.10 and OpenLDAP 2.2.13. ... and no LDAP server (although there were the ... share on the SCO server without any smbpasswd on that server! ...
    (comp.unix.sco.misc)
  • RE: LDAP & Find People not working
    ... need to refer to the KB article below to know how to use LDAP: ... | Yes, the scanner is on the local area network, so as you indicated below, ... | So I wonder why the scanner does not see the LDAP server. ...
    (microsoft.public.windows.server.sbs)
  • slapd - slow starting
    ... contact LDAP server ... then slapd started fine but I without ldap in nsswitch.conf I cant ... # The user ID attribute (defaults to uid) ... # SSL enabled. ...
    (freebsd-stable)
  • Re: Configuring LDAP on Entourage 2004 OS X
    ... On the SBS server box, open Server Management console, navigate to ... by companies that are independent of Microsoft. ... Configuring LDAP on Entourage 2004 OS X ...
    (microsoft.public.windows.server.sbs)
  • Re: Antw: Re: LDAP Authentication Problem
    ... TLSv1 und wird auf einen SSL Client Hello Request mit TLSv1 nicht ... antworten anstatt ein SSLv3 Server Hello. ... the LDAP PAM module and the shadow package. ...
    (de.comp.sys.novell)