The DCs that BCAAA queries with NetSessionEnum are controlled by settings in sso.ini.
Port 389 is LDAP. BCAAA cannot query active login sessions from the DCs using LDAP. RPCs cannot be sent over LDAP.
BCAAA has no control over the “logon server” that is chosen by the Windows server on which it is running. Windows chooses that server, and the choice is influenced by the “AD sites” functionality.
In order to resolve this issue, edit the sso.ini file to add the DC you want to query, but this will only control the IP of a user/group query. There may be other Windows calls to list all users/groups from the domain and that is not controlled by sso.ini.
Hints on thing you can change in sso.ini:
; Query all domain contollers
; Query all domain controllers on the subnet 12.34.56.x ; 18.104.22.168/24
; Query the domain controller "dc-test"
; Query the domain controller at the ip address 22.214.171.124 ; 126.96.36.199
Imported Document ID: 000016047
Subscribing will provide email updates when this Article is updated. Login is required.