Installation Manual
2. Set the DNSHostName property to the iLO DNS name. For example:
cn=iloname,ou=us,ou=clients,dc=example,dc=net
iLO Zero Sign In fails after domain controller OS reinstall
Symptom
The iLO web interface Zero Sign In option does not work after the domain controller OS is
reinstalled.
Cause
The key version number sequence is reset when the domain controller OS is reinstalled.
Action
Generate and install a new Kerberos keytab file.
More information
Generating a keytab file for iLO in a Windows environment
Failed iLO login with Active Directory credentials
Symptom
User authentication fails when iLO is configured to use Active Directory.
Cause
There is a certificate problem:
• An SSL certificate is not installed on the Active Directory server.
• An old SSL certificate on the Active Directory server points to a previously trusted CA with
the same name as the CA in the current certificate. This situation might happen if a certificate
service is added and removed, and then added again.
You can verify this cause by checking the SSL Connection test results on the Directory Tests
page.
Action
1. Open the MMC.
2. Add the certificates snap-in.
3. When prompted, select Computer Account for the type of certificates you want to view.
4. To return to the certificates snap-in, click OK.
5. Select the Personal→Certificates folder.
6. Right-click the folder and select Request New Certificate.
7. Verify that the Type is domain controller, and click Next until a certificate is issued.
Directory Server DNS Name test reports a failure
Symptom
The Directory Server DNS Name test reports the status Failed.
Cause
iLO cannot obtain an IP address for the directory server.
334 Troubleshooting