[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: SASL authentication problem



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Wesley Hobbie wrote:
| I am running Mandrake 10.0 Official PowerPack and installed the OpenLDAP
| RPM.  I then migrated the /etc/passwd file to a LDIF file and "ldapadd"ed
| the entries to the LDAP server, however, when I try to ldapsearch for
them I
| get a "ldap_sasl_interactive_bind_s: No such object" error message.

Well, I'm guessing you mean "ldap_sasl_interactive_bind_s: No such
attribute (16)". Unless you have configured SASL, you should not use it.
So, pass "-x" to all ldap clients to disable SASL for now.


| I found | that if I type ldapsearch -ZZZ -b dc=example,dc=com | objectclass=posixaccount, it returns the entries.

No, -ZZZ (well, forcing TLS is -ZZ, I don't know what your 3rd Z is for)
would not fix this issue. Maybe you had -x as well?

|  So, my conclusion is that
| it is a security/authentication problem, but I am not sure where, or
how to
| fix it.  Can anyone tell me what the problem is and how I should fix it?
| Also, if any additional information is needed to assist in helping me
solve
| the problem, let me know.
|


BTW, if you haven't, please see these:

http://www.mandrakesecure.net/en/docs/ldap-auth2.php
http://www.mandrakesecure.net/en/docs/samba-pdc.php
http://www.mandrakesecure.net/en/docs/samba-ldap-advanced.php

Some things have changed slightly since then, so don't use the sample
configs without looking at the configs that ship with the packages on
Mandrake 10.0

Regards,
Buchan

- --
Buchan Milne                      Senior Support Technician
Obsidian Systems                  http://www.obsidian.co.za
B.Eng                                RHCE (803004789010797)
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFAxhDerJK6UGDSBKcRAqf8AJ9tc8LMYnxkGVUQEQtGbwiWV9/8nQCgsOZe
vsXfn3ql1FntJcEgn5hLEIA=
=NneH
-----END PGP SIGNATURE-----