> Source: [sk167503](https://support.checkpoint.com/results/sk/sk167503)

# sk167503 - Capsule Docs unable to communicate with Domain Controller that blocks LDAP without SSL

| Property | Value |
|----------|-------|
| Solution ID | sk167503 |
| Date Created | 2020-06-18 |
| Last Modified | 2020-06-23 |
| Technical Level | Advanced |
| Products | Endpoint Security |
| Versions | Cloud, E89.X, E88.X, R82.20, R82.10, R82, R81.20 |

## Symptoms

- * Capsule Docs unable to communicate with Domain Controller that blocks LDAP without SSL.
* "A general error occurred please contact the system administrator" error message appears when trying to login to Capsule Docs from an Endpoint Security Client.
* This error appears after a connection attempt in *$UEPMDIR/logs/server_messages.log* :  
  \[XXXX-XX-XX XX:XX:XX,XXX\] ERROR Dispatcher-Thread-9 - Cannot connect to LDAP server on \[ldap://\<DC address\>:389\] due to security problems. Check credentials and user's permissions. (AbstractLdapContext)   
  \[XXXX-XX-XX XX:XX:XX,XXX\] WARN Dispatcher-Thread-9 - NamingException. Failed to the authenticate the user: XXX@XXX.com in the current domain controller: \<DC address\>. Continue to the next domain controller (ADUtils)   
  javax.naming.AuthenticationNotSupportedException: \[LDAP: error code 8 - 00002028: LdapErr: DSID-0C09026E, comment: The server requires binds to turn on integrity checking if SSL\\TLS are not already active on the connection, data 0, v3839 \]

## Cause

By default, Capsule Docs uses normal LDAP to communicate with the Domain Controller.  

When only LDAPS is accepted by the Domain Controller, LDAPS should be enabled for Capsule Docs.

<br />

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
