gMsa returns error after verifying config is correct

Morning Team,

We are attempting to set up a gMsa in the lower environment and we keep getting the error below.

Everything checks out with the gMsa in the windows environment and we have followed the steps listed in the documentation but it still returns the error.

Has anyone successfully set up one of these through ISC before?

Any pointers you have to get me over this hump. I have tried everything.

Thanks

Error Received:

Detected password less authentication, but failed to retrieve passwords with error: Exception occurred while executing the RPCRequest: Errors returned from IQService. Client authentication failed with error - The user name or password is incorrect

have you opted SASL? and also ensure that the IQService is configured to use the gMSA account

Hi Hussainssha,

Thanks for chiming in. Yes we are using SASL and the IQService is configured to use the gMSA account.

Hello,

I hope you have executed the below steps.

Also, please check whether you are using same user (which you are using as gSMA Service Account) is used in IQ Service As well? Refer the below note

Hi Rohit,

Thanks for chiming in. Yes sir I have the IQservice SVC Account User listed here.

Ok, If you are using the gSMA User in IQService Username as well (In IQ Service Page of AD), then, create a new user and register that in IQService. Refer the below screenshot as highlighted.

Hi Rohit - did this as well - still returns the same error even after following the directions below. https://www.idampundit.com/2024/07/how-to-configure-gmsa-in-ad-connector-for-isc/

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.