Has anyone had issues with ESXi 6 update 2 and Active Directory authentication? It appears to join the domain just fine (the server object gets created in AD) but I can't log in. I can ping the domain and all the dcs. DNS is pointed at a DC.
: Failed to group memberships of SID=(My User SID HERE). [error code:40286]
20160324135215:INFO:lsass:LsaDmpLdapReconnectCallback():lsadm.c:3214: Clearing ldap DC connection list for domain 'Domain.com' due to a network error.
20160324135215:DEBUG:LwLdapDirectorySearchEx():lwldap.c:791: [LwLdapDirectorySearchEx() ../lwadvapi/threaded/lwldap.c:791] Ldap error code: 40286
20160324135215:DEBUG:LwLdapDirectoryExtendedDNSearch():lwldap.c:1962: [LwLdapDirectoryExtendedDNSearch() ../lwadvapi/threaded/lwldap.c:1962] Error code: 40286 (symbol: <null>)
20160324135215:DEBUG:lsass:LsaDmLdapDirectoryExtendedDNSearch():lsadm.c:3568: Error code: 40286 (symbol: LW_ERROR_LDAP_SERVER_DOWN)
20160324135215:DEBUG:lsass:ADLdap_GetAttributeValuesList():adldap.c:1366: Error code: 40286 (symbol: LW_ERROR_LDAP_SERVER_DOWN)
20160324135215:DEBUG:lsass:ADLdap_GetObjectGroupMembership():adldap.c:1688: Error code: 40286 (symbol: LW_ERROR_LDAP_SERVER_DOWN)
20160324135215:ERROR:lsass:ADLdap_GetObjectGroupMembership():adldap.c:1757: Failed to group memberships of SID=(My User SID HERE). [error code:40286]
20160324135215:DEBUG:lsass:AD_PacMembershipFilterWithLdap():online.c:1162: Error code: 40286 (symbol: LW_ERROR_LDAP_SERVER_DOWN)
20160324135215:DEBUG:lsass:AD_CacheGroupMembershipFromPac():online.c:1353: Error code: 40286 (symbol: LW_ERROR_LDAP_SERVER_DOWN)
20160324135215:DEBUG:lsass:AD_OnlineCheckUserPassword():online.c:1816: Error code: 40286 (symbol: LW_ERROR_LDAP_SERVER_DOWN)
20160324135215:DEBUG:lsass:AD_OnlineAuthenticateUserPam():online.c:1909: Error code: 40286 (symbol: LW_ERROR_LDAP_SERVER_DOWN)
20160324135215:DEBUG:lsass:LsaSrvAuthenticateUserPam():auth.c:120: Error code: 40286 (symbol: LW_ERROR_LDAP_SERVER_DOWN)
20160324135215:ERROR:lsass:LsaSrvAuthenticateUserPam():auth.c:174: Failed to authenticate user (name = 'User@Domain.com') -> error = 40286, symbol = LW_ERROR_LDAP_SERVER_DOWN, client pid = 35954
20160324135215:VERBOSE:lsass-ipc:lwmsg_peer_task_handle_assoc_error():peer-task.c:895: (assoc:0x1f1013b0) Dropping: Connection closed by peer
20160324135215:DEBUG:LwKrb5SetThreadDefaultCachePath():lwkrb5.c:410: Switched gss krb5 credentials path from <null> to FILE:/etc/likewise/lib/krb5cc_lsass.Domain.com
20160324135215:VERBOSE:lsass:AD_CheckExpiredObject():online.c:2001: Using cache entry for sid S-1-5-21-3658379808-1708799015-1379952707-83163, updated 1044 seconds ago
20160324135215:DEBUG:LwKrb5SetThreadDefaultCachePath():lwkrb5.c:410: Switched gss krb5 credentials path from <null> to FILE:/etc/likewise/lib/krb5cc_lsass.Domain.com
20160324135215:VERBOSE:lsass:AD_CheckExpiredObject():online.c:2001: Using cache entry for sid S-1-5-21-3658379808-1708799015-1379952707-83163, updated 1044 seconds ago
20160324135217:VERBOSE:lsass:LsaSrvIpcCheckPermissions():ipc_state.c:79: Permission granted for (uid = 0, gid = 0, pid = 84440) to open LsaIpcServer
20160324135217:VERBOSE:lsass-ipc:lwmsg_peer_log_accept():peer-task.c:271: (session:af426f444a751a18-231291411ab31d27) Accepted association 0x1f0f7228
20160324135217:VERBOSE:lsass-ipc:lwmsg_peer_task_handle_assoc_error():peer-task.c:895: (assoc:0x1f0f7228) Dropping: Connection closed by peer
20160324135217:VERBOSE:lsass:LsaSrvIpcCheckPermissions():ipc_state.c:79: Permission granted for (uid = 0, gid = 0, pid = 84440) to open LsaIpcServer
20160324135217:VERBOSE:lsass-ipc:lwmsg_peer_log_accept():peer-task.c:271: (session:f3984d013795f5fb-7c033ed7f8e93f5a) Accepted association 0x1f0b9e18
20160324135217:VERBOSE:lsass-ipc:lwmsg_peer_task_handle_assoc_error():peer-task.c:895: (assoc:0x1f0b9e18) Dropping: Connection closed by peer
20160324135217:VERBOSE:lsass:LsaSrvIpcCheckPermissions():ipc_state.c:79: Permission granted for (uid = 0, gid = 0, pid = 84441) to open LsaIpcServer
20160324135217:VERBOSE:lsass-ipc:lwmsg_peer_log_accept():peer-task.c:271: (session:fec44f4ec5ad69a5-a9c45595908d5eae) Accepted association 0x1f1013b0
20160324135217:VERBOSE:lsass-ipc:lwmsg_peer_task_handle_assoc_error():peer-task.c:895: (assoc:0x1f1013b0) Dropping: Connection closed by peer
20160324135217:VERBOSE:lsass:LsaSrvIpcCheckPermissions():ipc_state.c:79: Permission granted for (uid = 0, gid = 0, pid = 84441) to open LsaIpcServer
20160324135217:VERBOSE:lsass-ipc:lwmsg_peer_log_accept():peer-task.c:271: (session:734c74cc6f62b2b3-7438b01d2ca183ef) Accepted association 0x1f0f7228
20160324135217:VERBOSE:lsass-ipc:lwmsg_peer_task_handle_assoc_error():peer-task.c:895: (assoc:0x1f0f7228) Dropping: Connection closed by peer
20160324135217:DEBUG:LwKrb5SetThreadDefaultCachePath():lwkrb5.c:410: Switched gss krb5 credentials path from <null> to FILE:/etc/likewise/lib/krb5cc_lsass.Domain.com
20160324135217:DEBUG:lsass:MemCacheFindUserByName():memcache.c:937: Error code: 40017 (symbol: LW_ERROR_NOT_HANDLED)
20160324135217:DEBUG:lsass:LsaSrvFindProviderByName():state.c:128: Error code: 40040 (symbol: LW_ERROR_INVALID_AUTH_PROVIDER)
20160324135217:DEBUG:lsass:LsaSrvProviderServicesDomain():provider.c:151: Error code: 40040 (symbol: LW_ERROR_INVALID_AUTH_PROVIDER)
20160324135217:DEBUG:LwLdapDirectorySearch():lwldap.c:716: [LwLdapDirectorySearch() ../lwadvapi/threaded/lwldap.c:716] Ldap error code: 40286
20160324135217:INFO:netlogon:LWNetSrvGetDCName():dcinfo.c:97: Looking for a DC in domain 'Domain.com', site '<null>' with flags 0
20160324135217:DEBUG:lsass:LsaLdapOpenDirectoryWithReaffinity():lsaldap.c:152: Using DC 'DC.Domain.com' for domain 'Domain.com' (affinitization attempt 0)
20160324135217:DEBUG:LwKrb5CheckInitiatorCreds():lwkrb5.c:1601: GSS API error calling gss_init_sec_context(): majorStatus = 0x00000001 (The routine must be called again to complete its function), minorStatus = 0x00000000 (Unknown error)