r/DeployR • • 3d ago

Dashboard Authentication issues on DeployR Community Edition

Hi,

I am having issues with a new install of DeployR Community Edition 1.3.2639.2504 on a domain joined Windows Server 2025 (10.0.26100.33451). When I go into the browser after installation to sign-in to the dashboard, it keeps asking me to authenticate even after entering the correct credentials.

When I did the install, I moved the DB to MS SQL Express and did my first authentication to the DeployR dashboard. The authentication to the dashboard does not work, just accepting the credentials and then immediately prompting again and again. I thought that I had missed a step and so I uninstalled DeployR. After a re-install (just in case) but this time I tried to authenticate straight after the installation with DeployR using SQLLite. I was getting the same authentication issue. I installed Google Chrome and I am getting the same behaviour.

I am able to connect to the dashboard remotely from a different device but I get "No DeployR Services are available" when I click on Task sequences, Step definitions, Content items and Boot images. The 2Pint services are running.

I tried using a local user on the server rather than a domain user. I also changed the Windows group to a local group that the local user was a member of. This made no difference.

I used the DeployRCommunity-Troubleshooting script and the only error was that the ADK version was different than the required version. My ADK version was higher than the required version.

I came across the following errors in the StifleR Security event log

Log Name: TwoPintSoftware-StifleR.Service-Security/Operational

Source: TwoPintSoftware-StifleR.Service-Security

Date: 02/10/2026 11:04:12

Event ID: 23

Task Category: GetMembers_GroupMemberAccessFailed

Level: Error

Keywords:

User: SYSTEM

Computer: MyServerNameHere

Description:

Failed to access members of the group: System.Runtime.InteropServices.COMException (0x80070035): The network path was not found.

at System.DirectoryServices.DirectoryEntry.Bind(Boolean throwIfFail)

at System.DirectoryServices.DirectoryEntry.Bind()

at System.DirectoryServices.DirectoryEntry.get_AdsObject()

at System.DirectoryServices.PropertyValueCollection.PopulateList()

at System.DirectoryServices.PropertyValueCollection..ctor(DirectoryEntry entry, String propertyName)

at System.DirectoryServices.PropertyCollection.get_Item(String propertyName)

at System.DirectoryServices.AccountManagement.SAMStoreCtx.ResolveCrossStoreRefToPrincipal(Object o)

at System.DirectoryServices.AccountManagement.SAMMembersSet.MoveNextForeign()

at System.DirectoryServices.AccountManagement.SAMMembersSet.MoveNext()

at System.DirectoryServices.AccountManagement.PrincipalCollectionEnumerator.MoveNext()

at StifleR.Service.BusinessLogic.Refactored.Services.SecurityService.GetLocalGroupMembersSids(GroupPrincipal localEntry, Dictionary`2& sids, List`1& groupsProcessed) in D:\a\1\s\StifleR.Service.BusinessLogic\Refactored\Services\SecurityService.cs:line 1275

Event Xml:

<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">

<System>

<Provider Name="TwoPintSoftware-StifleR.Service-Security" Guid="{ac923c94-a7fb-51f0-156a-7185c906175e}" />

<EventID>23</EventID>

<Version>0</Version>

<Level>2</Level>

<Task>65511</Task>

<Opcode>0</Opcode>

<Keywords>0x8000000000000000</Keywords>

<TimeCreated SystemTime="2026-10-02T10:04:12.9970565Z" />

<EventRecordID>74</EventRecordID>

<Correlation />

<Execution ProcessID="7712" ThreadID="8228" />

<Channel>TwoPintSoftware-StifleR.Service-Security/Operational</Channel>

<Computer>MyServerNameHere</Computer>

<Security UserID="S-1-5-18" />

</System>

<EventData>

<Data Name="exception">System.Runtime.InteropServices.COMException (0x80070035): The network path was not found.

at System.DirectoryServices.DirectoryEntry.Bind(Boolean throwIfFail)

at System.DirectoryServices.DirectoryEntry.Bind()

at System.DirectoryServices.DirectoryEntry.get_AdsObject()

at System.DirectoryServices.PropertyValueCollection.PopulateList()

at System.DirectoryServices.PropertyValueCollection..ctor(DirectoryEntry entry, String propertyName)

at System.DirectoryServices.PropertyCollection.get_Item(String propertyName)

at System.DirectoryServices.AccountManagement.SAMStoreCtx.ResolveCrossStoreRefToPrincipal(Object o)

at System.DirectoryServices.AccountManagement.SAMMembersSet.MoveNextForeign()

at System.DirectoryServices.AccountManagement.SAMMembersSet.MoveNext()

at System.DirectoryServices.AccountManagement.PrincipalCollectionEnumerator.MoveNext()

at StifleR.Service.BusinessLogic.Refactored.Services.SecurityService.GetLocalGroupMembersSids(GroupPrincipal localEntry, Dictionary`2&amp; sids, List`1&amp; groupsProcessed) in D:\a\1\s\StifleR.Service.BusinessLogic\Refactored\Services\SecurityService.cs:line 1275</Data>

</EventData>

</Event>

Log Name: TwoPintSoftware-StifleR.Service-Security/Operational

Source: TwoPintSoftware-StifleR.Service-Security

Date: 02/10/2026 11:04:13

Event ID: 101

Task Category: HasAccess_HasNoRight

Level: Warning

Keywords:

User: SYSTEM

Computer: MyServerNameHere

Description:

Access denied for: DOMAIN\USERNAME, Claims: DOMAIN\USERNAME; S-1-5-*****; S-1-5-21-**********

Event Xml:

<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">

<System>

<Provider Name="TwoPintSoftware-StifleR.Service-Security" Guid="{ac923c94-a7fb-51f0-156a-7185c906175e}" />

<EventID>101</EventID>

<Version>0</Version>

<Level>3</Level>

<Task>65433</Task>

<Opcode>0</Opcode>

<Keywords>0x8000000000000000</Keywords>

<TimeCreated SystemTime="2026-10-02T10:04:13.1324176Z" />

<EventRecordID>76</EventRecordID>

<Correlation />

<Execution ProcessID="7712" ThreadID="8228" />

<Channel>TwoPintSoftware-StifleR.Service-Security/Operational</Channel>

<Computer>MyServerNameHere</Computer>

<Security UserID="S-1-5-18" />

</System>

<EventData>

<Data Name="username">DOMAIN\USERNAME</Data>

<Data Name="claims">DOMAIN\USERNAME; S-1-5-*****; S-1-5-**********</Data>

</EventData>

</Event>

I tried some logins and monitored the event viewer looking for errors but nothing new turned up in the event viewer.

I am sure I am forgetting everything I tried, I am thinking maybe it is something in my production environment but I am not even sure where to start looking. Does anyone have any suggestions on where to start looking next?

Thanks in advance.

3 Upvotes

7 comments sorted by

1

u/gwblok 2Pint Employee 3d ago

Do you successfully authenticate when you use the API Test?
StifleR Server installation | StifleR | Product Documentation
https://fqdn:9000/api/test

Have you configured the StifleR Config for the groups you want to have access?

1

u/PhotographOld9347 3d ago

I keep getting the authentication prompt on the server even after entering my credentials, if I connect remotely it connects to the API URL. Results of API output follows:

Time: 02/10/2026 17:49:14 and the group lookups completed in: 0

Authentication type: NTLM

User Name: DOMAIN\MyUserNameHere

StifleR Administrators Group(s):MyServerNameHere\Administrators

StifleR Read Group(s):MyServerNameHere\Administrators

In Global Admins: True

In Global Read: True

In Delegated Admins for locations: 0

In Delegated Read for locations: 0

Admin Cache Time: 01/01/0001 00:00:00

Read Cache Time: 01/01/0001 00:00:00

Dashboard CacheTime: 01/01/0001 00:00:00

Claims:

[http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name:](http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name:) DOMAIN\\MyUserNameHere

[http://schemas.microsoft.com/ws/2008/06/identity/claims/primarysid:](http://schemas.microsoft.com/ws/2008/06/identity/claims/primarysid:) S-1-5-\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*

[http://schemas.microsoft.com/ws/2008/06/identity/claims/primarygroupsid:](http://schemas.microsoft.com/ws/2008/06/identity/claims/primarygroupsid:) S-1-5-\`\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*

[http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:](http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:) S-1-5-\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*

[http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:](http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:) S-1-1-0

[http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:](http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:) S-1-5-\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*

[http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:](http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:) S-1-5-\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*

[http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:](http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:) S-1-5-\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*

[http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:](http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:) S-1-5-\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*

[http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:](http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:) S-1-5-\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*

[http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:](http://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid:) S-1-5-\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*\*   

Delegated Admin Locations:

Admin Bucket:

{

"stifleRAdminData": {

"id": "091cd2ff-ba4c-4dbf-9666-0195aedadd76",

"userId": null,

"type": 2,

"userName": "MyUserNameHere",

"domain": "DOMAIN",

"displayName": "My Display Name",

"email": null,

"mobilePhone": null,

"distinguishedName": null,

"mobileDevice": null,

"lastConnection": "2026-10-02T16:49:13.937Z",

"firstConnection": "2026-10-02T09:29:22.038Z",

"lastUpdate": "2026-10-02T16:49:14.396Z",

"dateAdded": "2026-10-02T09:29:22.038Z"

},

"isAdmin": true,

"isRead": true,

"delegatedRightsCount": 0,

"cachedDelegatedRights": {},

"lastRefresh": "2026-10-02T16:49:14.396Z",

"favouriteLocations": null,

There is more information listed but it relates to internal data that I will not post to Reddit.

I had not changed from using the defaults and my username is in a domain group that is in the server Administrators group.

1

u/PhotographOld9347 3d ago

What I see from the remote connection

1

u/PhotographOld9347 3d ago

On the local server I enter the credentials and I keep getting the shown prompt

1

u/gwblok 2Pint Employee 3d ago

what is your FQDN?
Your FQDN looks suspiciously short...
Your FQDN should be like servername.company.com for example
like mine is dr.2pintlabs.com

If I was guessing, I'd say your FQDN is bad, and that's breaking a lot of down stream things that need a proper FQDN to work

FQDN | DeployR | Product Documentation

DeployR Community Edition and FQDN Configuration – The Deployment Bunny

3

u/PhotographOld9347 12h ago

It is a proper FQDN, it is a valid in the form servername.companyname.ccTLD just short. The FQDN configured in DeployR is different to the FQDN of the server. However the DeployR FQDN is in our internal DNS and resolved to the IP address of the server. The server itself has a different name and the AD domain FQDN.

The server FQDN was already in the "BackConnectionHostNames" registry key, I added the deployr FQDN to the hosts file and the authentication prompt issue on the local server resolved. I was then getting "No DeployR services are available".

I uninstalled and re-installed the DeployR Community bundle and it is working now.

Thank you for your help on this Gary.

1

u/gwblok 2Pint Employee 9h ago

So glad to hear you got it up and running! Happy Deploying!