<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98080#M61220</link>
    <description>&lt;P&gt;Thank  you.&lt;/P&gt;</description>
    <pubDate>Thu, 10 Dec 2015 00:15:40 GMT</pubDate>
    <dc:creator>WELI</dc:creator>
    <dc:date>2015-12-10T00:15:40Z</dc:date>
    <item>
      <title>Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98070#M61210</link>
      <description>&lt;PRE&gt;07 Dec 2015 11:33:12  INFO UserGroupSync [UnixUserSyncThread] - initializing sink: org.apache.ranger.unixusersync.process.PolicyMgrUserGroupBuilder
07 Dec 2015 11:33:13  INFO LdapUserGroupBuilder [UnixUserSyncThread] - LdapUserGroupBuilder created
07 Dec 2015 11:33:13  INFO UserGroupSync [UnixUserSyncThread] - initializing source: org.apache.ranger.ldapusersync.process.LdapUserGroupBuilder
07 Dec 2015 11:33:13  INFO UserGroupSync [UnixUserSyncThread] - Begin: initial load of user/group from source==&amp;gt;sink
07 Dec 2015 11:33:13  INFO LdapUserGroupBuilder [UnixUserSyncThread] - LDAPUserGroupBuilder updateSink started
07 Dec 2015 11:33:13  INFO LdapUserGroupBuilder [UnixUserSyncThread] - LdapUserGroupBuilder initialization started
07 Dec 2015 11:33:13 ERROR UserGroupSync [UnixUserSyncThread] - Failed to initialize UserGroup source/sink. Will retry after 30000 milliseconds. Error details:
javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF, comment: AcceptSecurityContext error, data 52e, v2580^@]
  at com.sun.jndi.ldap.LdapCtx.mapErrorCode(LdapCtx.java:3135)
  at com.sun.jndi.ldap.LdapCtx.processReturnCode(LdapCtx.java:3081)
  at com.sun.jndi.ldap.LdapCtx.processReturnCode(LdapCtx.java:2883)
  at com.sun.jndi.ldap.LdapCtx.connect(LdapCtx.java:2797)
  at com.sun.jndi.ldap.LdapCtx.&amp;lt;init&amp;gt;(LdapCtx.java:319)
  at com.sun.jndi.ldap.LdapCtxFactory.getUsingURL(LdapCtxFactory.java:192)
  at com.sun.jndi.ldap.LdapCtxFactory.getUsingURLs(LdapCtxFactory.java:210)
  at com.sun.jndi.ldap.LdapCtxFactory.getLdapCtxInstance(LdapCtxFactory.java:153)
  at com.sun.jndi.ldap.LdapCtxFactory.getInitialContext(LdapCtxFactory.java:83)
  at javax.naming.spi.NamingManager.getInitialContext(NamingManager.java:684)
  at javax.naming.InitialContext.getDefaultInitCtx(InitialContext.java:313)
  at javax.naming.InitialContext.init(InitialContext.java:244)
  at javax.naming.ldap.InitialLdapContext.&amp;lt;init&amp;gt;(InitialLdapContext.java:154)
  at org.apache.ranger.ldapusersync.process.LdapUserGroupBuilder.createLdapContext(LdapUserGroupBuilder.java:149)
  at org.apache.ranger.ldapusersync.process.LdapUserGroupBuilder.updateSink(LdapUserGroupBuilder.java:262)
  at org.apache.ranger.usergroupsync.UserGroupSync.run(UserGroupSync.java:58)
  at java.lang.Thread.run(Thread.java:745)&lt;/PRE&gt;</description>
      <pubDate>Tue, 08 Dec 2015 01:39:27 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98070#M61210</guid>
      <dc:creator>WELI</dc:creator>
      <dc:date>2015-12-08T01:39:27Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98071#M61211</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/692/weli.html" nodeid="692"&gt;@Mike Li&lt;/A&gt; please check the credentials and ldap configs&lt;/P&gt;&lt;P&gt;&lt;A href="http://www-01.ibm.com/support/docview.wss?uid=swg21290631" target="_blank"&gt;http://www-01.ibm.com/support/docview.wss?uid=swg21290631&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 08 Dec 2015 01:42:54 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98071#M61211</guid>
      <dc:creator>nsabharwal</dc:creator>
      <dc:date>2015-12-08T01:42:54Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98072#M61212</link>
      <description>&lt;P&gt;Mike,&lt;/P&gt;&lt;P&gt; This error usually occurs if the bind credentials (bind dn and/or bind password) are incorrect. Can you please verify those?&lt;/P&gt;</description>
      <pubDate>Tue, 08 Dec 2015 01:44:48 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98072#M61212</guid>
      <dc:creator>spolavarapu</dc:creator>
      <dc:date>2015-12-08T01:44:48Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98073#M61213</link>
      <description>&lt;P&gt;The cause of the LDAP 49 error can vary. You need to check the data code to determine what the actual cause is. Here is a table of the various 49 errors/data codes and what they mean:&lt;/P&gt;&lt;P&gt;49 - LDAP_INVALID_CREDENTIALS - Indicates that during a bind operation one of the following occurred: The client passed either an incorrect DN or password, or the password is incorrect because it has expired, intruder detection has locked the account, or another similar reason. See the data code for more information.&lt;/P&gt;&lt;P&gt;49 / 52e - AD_INVALID CREDENTIALS - Indicates an Active Directory (AD) &lt;EM&gt;AcceptSecurityContext&lt;/EM&gt;error, which is returned when the username is valid but the combination of password and user credential is invalid. This is the AD equivalent of LDAP error code 49.&lt;/P&gt;&lt;P&gt;49 / 525 - USER NOT FOUND - Indicates an Active Directory (AD) &lt;EM&gt;AcceptSecurityContext&lt;/EM&gt;data error that is returned when the username is invalid.&lt;/P&gt;&lt;P&gt;49 / 530 - NOT_PERMITTED_TO_LOGON_AT_THIS_TIME - Indicates an Active Directory (AD) &lt;EM&gt;AcceptSecurityContext&lt;/EM&gt;data error that is logon failure caused because the user is not permitted to log on at this time. Returns only when presented with a valid username and valid password credential.&lt;/P&gt;&lt;P&gt;49 / 531 - RESTRICTED_TO_SPECIFIC_MACHINES - Indicates an Active Directory (AD) &lt;EM&gt;AcceptSecurityContext&lt;/EM&gt;data error that is logon failure caused because the user is not permitted to log on from this computer. Returns only when presented with a valid username and valid password credential.&lt;/P&gt;&lt;P&gt;49 / 532 - PASSWORD_EXPIRED - Indicates an Active Directory (AD) &lt;EM&gt;AcceptSecurityContext&lt;/EM&gt;data error that is a logon failure. The specified account password has expired. Returns only when presented with valid username and password credential.&lt;/P&gt;&lt;P&gt;49 / 533 - ACCOUNT_DISABLED - Indicates an Active Directory (AD) &lt;EM&gt;AcceptSecurityContext&lt;/EM&gt;data error that is a logon failure. The account is currently disabled. Returns only when presented with valid username and password credential.&lt;/P&gt;&lt;P&gt;49 / 568 - ERROR_TOO_MANY_CONTEXT_IDS - Indicates that during a log-on attempt, the user's security context accumulated too many security IDs. This is an issue with the specific LDAP user object/account which should be investigated by the LDAP administrator.&lt;/P&gt;&lt;P&gt;49 / 701 - ACCOUNT_EXPIRED - Indicates an Active Directory (AD) &lt;EM&gt;AcceptSecurityContext&lt;/EM&gt;data error that is a logon failure. The user's account has expired. Returns only when presented with valid username and password credential.&lt;/P&gt;&lt;P&gt;49 / 773 - USER MUST RESET PASSWORD - Indicates an Active Directory (AD) &lt;EM&gt;AcceptSecurityContext&lt;/EM&gt;data error. The user's password must be changed before logging on the first time. Returns only when presented with valid user-name and password credential.&lt;/P&gt;</description>
      <pubDate>Tue, 08 Dec 2015 02:11:50 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98073#M61213</guid>
      <dc:creator>emaxwell</dc:creator>
      <dc:date>2015-12-08T02:11:50Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98074#M61214</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/692/weli.html" nodeid="692"&gt;@Mike Li&lt;/A&gt; &lt;/P&gt;&lt;P&gt;&lt;A target="_blank" href="https://confluence.atlassian.com/display/CONFKB/User+directory+sync+fails+with+LDAP+Error+Code+49"&gt;https://confluence.atlassian.com/display/CONFKB/User+directory+sync+fails+with+LDAP+Error+Code+49&lt;/A&gt;&lt;/P&gt;&lt;P&gt;52e = invalid credentials&lt;/P&gt;&lt;P&gt;LDAP: error code 49-80090308:LdapErr: DSID-0C0903CF, comment:AcceptSecurityContext error, data 52e,&lt;/P&gt;</description>
      <pubDate>Tue, 08 Dec 2015 02:50:32 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98074#M61214</guid>
      <dc:creator>nsabharwal</dc:creator>
      <dc:date>2015-12-08T02:50:32Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98075#M61215</link>
      <description>&lt;P&gt;Thanks all for providing possible reasons and solutions. I verified the user and password, they are correct. The only thing I can think of now is that whether from SysAdmin/Unix side, they need doing something, like to grant these users/goups to access the boxes??&lt;/P&gt;</description>
      <pubDate>Tue, 08 Dec 2015 03:03:58 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98075#M61215</guid>
      <dc:creator>WELI</dc:creator>
      <dc:date>2015-12-08T03:03:58Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98076#M61216</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/692/weli.html" nodeid="692"&gt;@Mike Li&lt;/A&gt; &lt;/P&gt;&lt;P&gt;Yes..thats true. Look into sssd or nslcd.&lt;/P&gt;&lt;P&gt;Are you able to access LDAP broweser using LDAP credentials? &lt;/P&gt;</description>
      <pubDate>Tue, 08 Dec 2015 03:09:37 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98076#M61216</guid>
      <dc:creator>nsabharwal</dc:creator>
      <dc:date>2015-12-08T03:09:37Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98077#M61217</link>
      <description>&lt;P&gt;But I am sure my user and credentials are right, since I can use the credential in LDAP browser.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Dec 2015 04:41:26 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98077#M61217</guid>
      <dc:creator>WELI</dc:creator>
      <dc:date>2015-12-09T04:41:26Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98078#M61218</link>
      <description>&lt;P&gt;Yes. I can use LDAP browser\Editor using the same credential. &lt;/P&gt;</description>
      <pubDate>Wed, 09 Dec 2015 04:42:32 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98078#M61218</guid>
      <dc:creator>WELI</dc:creator>
      <dc:date>2015-12-09T04:42:32Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98079#M61219</link>
      <description>&lt;P&gt;Neeraj, &lt;/P&gt;&lt;P&gt;You are right the password got messed up. After correcting it, it starts to sync users/groups with AD. &lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;</description>
      <pubDate>Thu, 10 Dec 2015 00:14:56 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98079#M61219</guid>
      <dc:creator>WELI</dc:creator>
      <dc:date>2015-12-10T00:14:56Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98080#M61220</link>
      <description>&lt;P&gt;Thank  you.&lt;/P&gt;</description>
      <pubDate>Thu, 10 Dec 2015 00:15:40 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98080#M61220</guid>
      <dc:creator>WELI</dc:creator>
      <dc:date>2015-12-10T00:15:40Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98081#M61221</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/692/weli.html" nodeid="692"&gt;@Mike Li&lt;/A&gt; Did it help to resolve the issue? Thanks for confirming and updating the thread.&lt;/P&gt;</description>
      <pubDate>Thu, 10 Dec 2015 00:16:15 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98081#M61221</guid>
      <dc:creator>nsabharwal</dc:creator>
      <dc:date>2015-12-10T00:16:15Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger user sync error:  javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C0903CF</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98082#M61222</link>
      <description>&lt;P&gt;Thank you &lt;A rel="user" href="https://community.cloudera.com/users/98/emaxwell.html" nodeid="98"&gt;@emaxwell&lt;/A&gt; it worked for me.&lt;/P&gt;</description>
      <pubDate>Sun, 18 Mar 2018 01:11:51 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Ranger-user-sync-error-javax-naming-AuthenticationException/m-p/98082#M61222</guid>
      <dc:creator>shashankkumar_m</dc:creator>
      <dc:date>2018-03-18T01:11:51Z</dc:date>
    </item>
  </channel>
</rss>

