LDAP Active Directory msg=403 Permission check failed (user '' is disabled)

shy

Member
Aug 2, 2020
7
0
21
42
We are experiencing an issue on one of our PMG servers where a handful of users are unable to log in to the quarantine. Although we have over 10,000 users connected via LDAP, the problem seems to affect only a few of them. When these users attempt to log in, we see the following error in the log:

Code:
Use of uninitialized value $username in concatenation (.) or string at /usr/share/perl5/PMG/AccessControl.pm line 121.
pmgdaemon[1271]: authentication failure; rhost=::ffff:xx.xx.xx.xx user=xxxxxx-aaabbbcccc-eerrxxx-xx12@test.test.de@quarantine msg=403 Permission check failed (user '' is disabled)

Has anyone encountered this issue before? We have verified that the affected users are not disabled in Active Directory and they are able to log in to OWA using the same credentials.
 
I'm also experiencing this with a new AD realm:

Code:
Use of uninitialized value $username in concatenation (.) or string at /usr/share/perl5/PVE/API2/AccessControl.pm line 303.

authentication failure; rhost=::ffff:10.130.41.116 user= msg=user name '' is too short
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!