So I'm having an issue with authentication for admins at offices other than my own. Here are the details -
- Two sites - San Francisco & Boise, ID
- Two local AD servers - SFO-AD1 & BOI-AD1
- One admin group - Admins
- One domain - domain.com
Members of the Admins group in Boise can access the JSS web portal, but when they try to log in the page "refreshes" with no error message. This is for multiple users with multiple platforms and various browsers. This should rule out end user issues.
So I move on to LDAP / authentication issues. Initially, I associated the JSS with only the SFO-AD1 server, figuring the Admins group would be available over LDAP. I'm guessing that it was not, so I added in the BOI-AD1 server. This resolved nothing. So then I authenticated to the domain, still no change. Here's the weird part - testing their user names in the LDAP Servers section of the JSS loads their information normally. The Search Base for BOI-AD1 appears to be pointed at the correct OU where the accounts reside.
The issue is getting a little embarrassing at this point, if anyone could point me in the right direction I'd sincerely appreciate it.
EDIT - I'm on v9.93.
