Product(s): | ProjectWise User Synchronization | ||
Version(s): | Connect | ||
Area: | User Synchronization Service | ||
Original Author: | Dana Guthrie, Bentley Technical Support Group |
When users go into ProjectWise administrator, and try to add a group or user to be synchronized, they get these errors when choosing the domain.
Unable to enumerate users. Error 31 when adding a synchronized group
Unable to enumerate users. Error 1359 when adding a synchronized user
Due to the nature of the technology that underlies the User Sync Service (LDAP) the process is sensitive to any updates that Microsoft pushes that affect the underlying encryption protocols.
Steps to reproduce:
This issue appeared after the following windows updates where applied to a domain controller.
July 9, 2019—KB4507460
July 16, 2019—KB4507459
The following Windows update appears to fix the issue that the above KBs broke
September 9, 2019 KB4512574 (Servicing Stack Update) *cumulative Patch
If the September 9 patch does not resolve the issue then you will need to run the following commands to reset the network tunnel from the User Sync server to the domain controller.
The solution involves running a pair of commands from an elevated command prompt on your server that runs the user Projectwise User Sync Service. The first command provides a list of domain controllers for your domain. You will use the information from this command to determine which domain controller you want to use in the next command. The second command resets the Secure Channel between the Server and a domain controller that you choose from your domain.
nltest /server:UserSyncServer /sc_reset:MYDOMAIN\DC1
A couple of things to note:
First there is no reboot or interruption when you run the nltest commands from the integration server.
Second, if you are on a delayed update cycle, the issue may reoccur after an update catches you up to the specified KB4512574. If that occurs, simply re-run the nltest commands after the patch is verified as applied to the Domain Controller you wish to point to.
If the above does not solve the problem for you please log a service request.
Workaround
Add the User manually from ProjectWise Admin: