Use this forum to post questions relating to WinGate, feature requests, technical or configuration problems
Post a reply

Active Directory Synchronization problem

Oct 28 04 11:25 pm

I installed Wingate 6.0.3 at a Windows 2000 server.
I use the active directory user database that it's in another Windows 2000 server.
In the active dirtectory there are several groups that contains users and another groups but when I open these groups at Wingate, in some groups don't appear the contained groups, at another groups don't appear the users but de groups yes. Somebody can tell me what's the problem?

Thanks

Oct 29 04 8:09 am

Hi there

Have you enabled the WinGate engine service on the WinGate server to logon using an account with (domain adminstrator or equivilaent) privilages on the domain controller. (We rexcommend you setup an account especially for this).

This needs to be done so that WinGate has accounts access and is able to receive all users and groups listed.

Try this and let us know.

Regards
Erwin

Oct 29 04 8:32 pm

Hi Erwin,

First I use the administrator account for de Wingate service, later I have create a new user account called "wingate", this user is member of "domain's administrators" group and I gave to this account privilages for init session like service in order to use the account for start the wingate service and I have the same problem.
I start the gatekeeper with "wingate" account and sinchronize the database. Wingate shows all the users and groups, but when i try to see then content of any created group, wingate shows the users but don't shows the groups contained.

Can I try something else?

Thanks

erwin wrote:Hi there

Have you enabled the WinGate engine service on the WinGate server to logon using an account with (domain adminstrator or equivilaent) privilages on the domain controller. (We rexcommend you setup an account especially for this).

This needs to be done so that WinGate has accounts access and is able to receive all users and groups listed.

Try this and let us know.

Regards
Erwin

Nov 01 04 3:51 pm

Hi there

Sorry for sounding vague but just to be clear:

You have set the Qbik WinGate engine service to Logon with an appropriate account in the Active Directory.
This is an account for the for the Qbik WinGate engine service.

You configure the logon details by selecting the Qbik WinGate engine service in the Computer Management\Services.mmc on the WinGate server and selecting the Logon tab...
then choose logon as...
and locate the account for the WinGateEngine you made on the Domain Controller.

You shouldnt need to use this account to login to GateKeeper and administer WinGate. Try logging on with a domain administrator user account. I have tested this here to see that group membership is being displayed correctly when logging into GateKeeper like this.

Another suggestion is to make sure there is no group policy in the AD that is affecting the account that the Qbik WinGate engine service uses to logon to the AD with.

Regards
Erwin
Post a reply