cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
markgarza
Level 10
Report Inappropriate Content
Message 1 of 3

Trouble registering EPO server in different domain

Hi, I am trying to register an EPO server in domain B with the EPO server in domain A in order to transfer systems from Server A to Server B, as described in this KB: https://kc.mcafee.com/corporate/index?page=content&id=KB79283

At step 3e, I've had trouble getting the connection to successfully test. I've verified the password is correct, and I've registered both domain A and B LDAP servers to both servers. I've noticed a couple different errors throughout this process in the orion.log:

Login failed. The login is from an untrusted domain and cannot be used with Windows authentication.

This was happening in the beginning, which is when I registered the LDAP servers. I think that seemed to have fixed this error.

Now I'm seeing this: 

ERROR [http-nio-8444-exec-3] server.OrionLoginModule - Failed to login due to invalid password for user: system_EPOSVR
ERROR [http-nio-8444-exec-5] auth.OrionUser - OrionUser: invalid auth type:pwd

I just tried again and it doesn't seem the orion log is updating from this attempt, but the account did got locked out and eventually the test failed. 

Server A is 5.9.1 in mixed mode/not FIPS

Server B is 5.9.10 in FIPS 140-2 mode

2 Replies
Hem
Employee
Employee
Report Inappropriate Content
Message 2 of 3

Re: Trouble registering EPO server in different domain

Make sure that we have two way  transitive trust between domains.

cdinet
Employee
Employee
Report Inappropriate Content
Message 3 of 3

Re: Trouble registering EPO server in different domain

If there is no trust between the domains, you might need to use an sql authenticated account for the database of other domain server.  You also need to make sure there is dns resolution - in the nic properties on the epo server you are using to register the other, make sure to add the dns server for that domain there as well as append dns suffix of the other domain.

Was my reply helpful?
If this information was helpful in any way or answered your question, will you please select Accept as Solution in my reply and together we can help other members?

You Deserve an Award
Don't forget, when your helpful posts earn a kudos or get accepted as a solution you can unlock perks and badges. Those aren't the only badges, either. How many can you collect? Click here to learn more.

Community Help Hub

    New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.

  • Find Forum FAQs
  • Learn How to Earn Badges
  • Ask for Help
Go to Community Help

Join the Community

    Thousands of customers use our Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership:

  • Get helpful solutions from product experts.
  • Stay connected to product conversations that matter to you.
  • Participate in product groups led by employees.
Join the Community
Join the Community