Directory Utility - Error connecting to Active Directory for user accounts

One of my Apple Servers are not connecting to our Active Directory for user accounts. It was before and no idea why it is not connecting now.

I have a screen shot attached showing an error if I open the Directory Utility and try to view users within the directory.

Any help would be greatly appreciated.

Posted on Jun 13, 2019 8:14 AM

Reply

Similar questions

2 replies

Jun 13, 2019 11:59 AM in response to avanspro

This error is what you usually see when connectivity to the AD domain is lost and can't be re-established. Reasons for this are typically DNS related. I would start there first. Hopefully the AD domain is not based around .local for the TLD? If it is then that's probably where the root of the problem probably lies. Using .local is not recommended however it can work depending on whether the domain has two or more names. For example: dc1.myaddomain.biz.local is OK whereas dc1.biz.local is not. Until that is addressed then losing 'sight' of AD will happen intermittently along the lines you're seeing. That includes 'it' working fine for a period of time and then, all of a sudden, 'it' not. Obviously changing the domain is not a 'trivial' thing to attempt when AD is concerned, so this may be something you have to learn to live with? Large AD infrastructures with many OUs and thousands of Users/Groups can also cause this 'loss of sight'. There may be other reasons such as an intermittent problem with the physical structure of your network; failing or faulty ethernet cable and/or switch or port on a switch. Even a power spike or dip can potentially cause the problem. In rare cases an over-enthusiastic network administrator can inadvertently cause the problem.


Disconnecting from AD and then re-connecting again usually 'cures' the problem.


HTH?

Jun 28, 2019 11:47 AM in response to Antonio Rocco

Hi Antonio,


Thanks for the advice.

This is not a .local address.

It is: "computername.hq.company-name.ca"


I did disconnect from the active directory server and tried to bind again. I am getting this error now:


Unable to add server. Authentication server could not be contacted. (5200)


DNS lookups are working. We are on the same network. I can ping the Active directory server.




Thoughts?


This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

Directory Utility - Error connecting to Active Directory for user accounts

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.