We have been experiencing ADSSO and LDAP authentication issues. During the troubleshooting, we had modified our ADSSO config to use a single AD server, vs. the domain. This has correct our issue. We were told that we could be having some issues with our AD replication, and that the process that CCA uses is the CAM/CAS tries a listed AD server @ random and if it does not get an response, or a matching account, it stops, and returns the various errors we have been receiving, and proceeds no further. We then asked if this was the case why have a setting to use the domain, and were was the redundancy? We are waiting for an answer that describes this is detail either thru a doc or whitepaper. I pose the same question to all of you. I would love to hear your feedback.
Thank you David Maas Sr. Security Engineer Merkle, Inc. Enabling Knowledge to Improve Marketing Results
