Network Management
Cannot login to SolarWinds Platform Web Console using AD account
Getting Login failure. User name and/or password incorrect when you login to the web console. Failed to retrieve LdapIdentity for user DOMAIN\USERNAME
First published date
Last published date
Overview
Users which are a member of an AD group can't log in to the SolarWinds Platform Web Console.
Log file location to check:
OrionWeb.log (C:\ProgramData\SolarWinds\Log\Orion)
ERROR SolarWinds.Orion.Web.OrionMixedModeAuth - (null) Failed to retrieve LdapIdentity for user DOMAIN\USERNAME
ERROR SolarWinds.Orion.Web.AuthorizationManager - (null) User NT AUTHORITY\IUSR does not belong to a valid group.
ERROR SolarWinds.Orion.Web.AuthorizationManager - (null) User DOMAIN\USERNAME does not belong to a valid group.
For the SolarWinds Platform account failed login, check the OrionWeb.log (C:\ProgramData\SolarWinds\Logs\Orion). Warning messages look something like this:
WARN SolarWinds.Orion.Web.DAL.MembershipAccountDAL - (null) Unable to load settings for user "ORION_WEB_ACCOUNT"
Product section
Cause
- LDAP is turned on.
- You only have to configure advanced LDAP authentication if the SolarWinds Platform server is not A member of the domain of the individual/group users who can access the SolarWinds Platform Web Console. If the SolarWinds Platform server is a member of the same domain as with the users, there's no need to turn on LDAP.
- Group AccountSID is NULL.
Resolution
This usually happens when LDAP authentication is enabled, the SolarWinds Platform server is part of the domain.
- Log in to the SolarWinds Platform Web Console using a local SolarWinds Platform account.
- Click Settings > All Settings > under the User Accounts section click Advanced AD Settings.
- Switch Authenticate Active Directory Users via LDAP to OFF then click SAVE.
If users can't still access the SolarWinds Platform Web Conosle, delete then re-add the group account from Settings > All Settings > Manage accounts > Group Account tab.
Additional Trouble Shooting:
- Verify if the username used has special characters or Space.
- Advised to remove special character or space on the User name
- Test to login.