WMI Error on MX85 for Active Directory Sync

JJape
New here

WMI Error on MX85 for Active Directory Sync

We are on Windows Server 2022 and are trying to get the Active Directory sync to work between our DC and MX85. We have checked over and over that we have met all the pre-requisites for having the Active Directory sync setup but we are still getting WMI errors in the Meraki console. 

 

I have noticed that the service account that we made for this tries to login using WORKGROUP\Username instead of DOMAIN\Username. I'm not sure if this is the reason why we keep getting the WMI error but for the life of me I can't figure out where to go next. Meraki support hasn't been helpful and keep pointing us to the "Configuring Active Directory" article. 

 

Any ideas on what we can try/check??? 

1 Reply 1
AlexL1
Meraki Employee
Meraki Employee

Hi JJape,

Welcome to Meraki Community 🙂

 

Please, provide more detail information:

  1. Can you send a screenshot of the WMI error message on the Dashboard?
  2. What's the EventID # in Event Viewer on the AD Server?
  3. Is the AD Server located locally on the network or via VPN Tunnel?
  4. Have you taken any packet capture on the relevant interface on the MX, and filtering it for port <3268>?

 

Point 1 - Check the requirementshttps://documentation.meraki.com/MX/Content_Filtering_and_Threat_Protection/Configuring_Active_Direc...

Point 2 Make sure that the domain admin account is a member of the Domain Admins group in Active Directory

Point 3Certificate Requirements for TLS

Point 4 - If the Server IP address is located over a VPN Tunnel, communication with the server will originate from the highest numbered VLAN included in the VPN.

 

WMI Error message - have your performed the following tests:

TEST 1 - "Domain Admin" field - only <username> - https://documentation.meraki.com/General_Administration/Tools_and_Troubleshooting/Active_Directory_I...

TEST 2 - "Domain Admin" field - <domain\username> - https://community.meraki.com/t5/Security-SD-WAN/Configuring-Active-Directory-Authentication/m-p/2035...

 

If you have any questions, please don't hesitate to contact us.

If you found this post helpful, please give it kudos.
If my answer solved your problem, click "accept as solution" so that others can benefit from it.
Get notified when there are additional replies to this discussion.