Log Server cannot connect to the directory service

If either of the errors below occurs, Log Server is unable to access the directory service, which is necessary for updating user-to-group mappings for reports. These errors appear in the Windows Event Viewer.

  • EVENT ID:4096 - Unable to initialize the Directory Service. Websense Server may be down or unreachable.
  • EVENT ID:4096 - Could not connect to the directory service. The groups for this user will not be resolved at this time. Please verify that this process can access the directory service.

The most common cause is that Log Server and User Service are on different sides of a firewall that is limiting access. To resolve this problem, configure the firewall to permit access over port 55815.

The default ports used for directory service communication are:

139 NetBIOS communication: Active Directory
389 LDAP communication: Active Directory, Novell eDirectory, Oracle (formerly Sun Java) Directory Server
636 SSL port: Novell eDirectory, Oracle (formerly Sun Java) Directory Server
3268 Active Directory
3269 SSL port: Active Directory