String in Web.config to specify AD connection

Ask a Question related to ASP.NET Security, Design and Development.

  1. #1

    Default String in Web.config to specify AD connection

    I run a .NET based portal product. I am using windows authentication. This
    mode of authentication and the string specifying the connection to AD is
    specified in the application's web.config file. This portal has always worked
    fine, though recently, our infrastructure team changed our internal domain
    name. Now I can no longer authenticate any users no matter how I change the
    connect string in the web.config file.

    For the purposes of this discussion my former domain name is 'abc.com' and
    my new domain name is '123.abcdefghijklm.com'. The name of the server
    housing AD is now 'DC1.123.abcdefghijklm.com'. The netbios name had to be
    truncated to 15 characters to accommodate a couple NT4 servers and its new
    designation is '123.abcdefghijk'.

    The previous connect string in web.config which worked with the old domain
    name:
    <code><add key="ADdns" value="LDAP://DC1.abc.com/DC=abc, DC=com;
    WinNT://abc"/></code>

    I tried the following to accommodate the name change (domain and netBios):
    <code><add key="ADdns"
    value="LDAP://DC1.123.abcdefghijklm.com/DC=123.abcdefghijklm, DC=com;
    WinNT://123.abcdefghijk"/></code>

    It didn't work. The application generates an error specifying the domain
    cannot be contacted.

    Can anyone help me with this one?

    Frank00 Guest

  2. Similar Questions and Discussions

    1. Bind datagrid when connection string is in web.config?
      You'll have to do it in code, connecting to the datasource and binding to either a datareader or dataset/datatable. "Brian z3"...
    2. need help with connection string
      i keep reading that it is not secure to hard code the connection string to the server into my swf. so how can i get the string into my swf without...
    3. encrypt string in the Web.Config file
      hi I want to encrypt the Connection String that is located in the Web.Config file How Can I do it?
    4. encrypting SQL server connection string in web.config
      In my web.config I am storing a connection string to SQL server, along with password and user name. My goal is to somehow encrypt the string so it...
    5. Storing connection string in machine.config
      How to store connection strings in machine.config?What are the advantages of storing it in the machine.config file.Can u provide me with the...
  3. #2

    Default Re: String in Web.config to specify AD connection

    I'm not sure what either of these has to do with Windows authentication as
    it does not use LDAP or WinNT for authentication. Are you doing forms
    authentication against AD using LDAP?

    In any case, I'd suggest you discover the defaultNamingContext for your
    domain again by binding to RootDSE on your domain controller and reading the
    defaultNamingContext attribute. This will give you the new domain root.

    In general, you should never hard code that in an application but should
    always look it up dynamically from RootDSE.

    HTH,

    Joe K.

    "Frank00" <Frank00@discussions.microsoft.com> wrote in message
    news:19EBF957-08FE-4CE9-9E0B-24116FC02F7B@microsoft.com...
    >I run a .NET based portal product. I am using windows authentication.
    >This
    > mode of authentication and the string specifying the connection to AD is
    > specified in the application's web.config file. This portal has always
    > worked
    > fine, though recently, our infrastructure team changed our internal domain
    > name. Now I can no longer authenticate any users no matter how I change
    > the
    > connect string in the web.config file.
    >
    > For the purposes of this discussion my former domain name is 'abc.com' and
    > my new domain name is '123.abcdefghijklm.com'. The name of the server
    > housing AD is now 'DC1.123.abcdefghijklm.com'. The netbios name had to be
    > truncated to 15 characters to accommodate a couple NT4 servers and its new
    > designation is '123.abcdefghijk'.
    >
    > The previous connect string in web.config which worked with the old domain
    > name:
    > <code><add key="ADdns" value="LDAP://DC1.abc.com/DC=abc, DC=com;
    > WinNT://abc"/></code>
    >
    > I tried the following to accommodate the name change (domain and netBios):
    > <code><add key="ADdns"
    > value="LDAP://DC1.123.abcdefghijklm.com/DC=123.abcdefghijklm, DC=com;
    > WinNT://123.abcdefghijk"/></code>
    >
    > It didn't work. The application generates an error specifying the domain
    > cannot be contacted.
    >
    > Can anyone help me with this one?
    >

    Joe Kaplan \(MVP - ADSI\) Guest

Posting Permissions

  • You may not post new threads
  • You may post replies
  • You may not post attachments
  • You may not edit your posts

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139