[LDAP-interop] "Critical extension is unavailable"

J Joensuu j_joensuu at yahoo.com
Tue Jul 25 02:33:25 EDT 2006


Hi all,

I'm totally new to this LDAP stuff so my apologies if
these questions seem ridiculous. I have a problem to
troubleshoot where an application tries to query MS AD
for usernames and gets the error "Critical extension
is unavailable".

The error only seems to occur when the username 'seems
not to be' found in AD. I say 'seems not to be'
because the queried records do exist in the AD server
queried by the application.

However, there are multiple AD servers in use, and
this leads to my first question:

1. Is it possible to set one AD server to refer or
link to another, so that if an application queries one
server, the queried server forwards the query to
another server? 

The second question is about trying to replicate the
error by simulating the query sent by the application:

2. Is there a tool that can be used for sending "free
form" queries to MS AD?

Third question - a brief answer or URL with an
explanation would just be fine:

3. What is the "extension" referred to by the error
message?

thanks in advance...

JJ

__________________________________________________
Do You Yahoo!?
Tired of spam?  Yahoo! Mail has the best spam protection around 
http://mail.yahoo.com 


More information about the LDAP-interop mailing list