>How about this as a way forward (nice clich�, eh? :) Have you logged LDAP connections >on the dc? Yes, I can login ok. I can query and get groups, etc. Just no go with ssl.
>As for the referral, I can't understand why it would try to refer elsewhere exactly. >That's a mystery at the moment, but I think a better look at what gets logged during >the attempt might be helpful here. I will make the registry change. >When you say a special user, was it just a regular domain user then? Is this 2003 or >2000 you're dealing with? I created a users with domain guest rights and lookup rights to the OU only. I also tried this with the admin acct but no go. Any ideas? Jenn List info : http://www.activedir.org/mail_list.htm List FAQ : http://www.activedir.org/list_faq.htm List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/
