Specifications

29
The time settings between the Active Directory server and the Barracuda SSL VPN appliance
are synchronized. Kerberos authentication, used by Windows, allows only a few minutes of
clock skew between Windows server and client. Ensure that both the domain controller and
the appliance are synchronized to the same date and time to within one minute.
Confirm that the Windows server is configured for Active Directory authentication. If using
Windows NT4.0 server, then the server only supports NT Domain authentication.
If OUs have not been loaded successfully:
Any organizational units held within a tree structure need to be added with the entire parental
structure.
In the above diagram to include‘Tester’ into the filters list the syntax should be
‘OU=Tester,OU=Engineer,OU=Staff’. The syntax begins with the lowest branch
first.
If any OUs are stored underneath the default Windows OU such as Users the ‘OU=User’
root should not be included in the filter syntax.
Check syntax of each filter. Every Organizational Unit must begin with ‘OU=’. If a hierarchy
structure is being included, be sure to separate each element with a comma. Also avoid using
unnecessary spacing.
Clear the organizational unit filter to ensure that the entire Active Directory tree is searched.