[Date Prev][Date Next] [Chronological] [Thread] [Top]

TLS fails to bind (Please help)



I've been trying to get this working for days now. I've searched high and low and read a lot of manuals. I have LDAP working on port 389 and can use ldapsearch w/o trouble as long as I start slapd on port 389 only . Now I want TLS to work, but I when I start slapd, I see that it fails to bind on port 636. netstat -l shows that slapd is listening on that port and also on port 389. I also noticed that slapd calls ldap_sasl_bind although I compiled openldap w/o sasl support, twice. Is that my problem, I need SASL? None of the documentation said it was required. Anyway here is some of the output when starting slapd with these options:
-d -1 -h 'ldap:// ldaps:// ldapi://%2fvar%2frun%2fopenldap%2fslapd.sock


If anyone has any ideas, I'd love to hear them.

* Starting ldap-server...
@(#) $OpenLDAP: slapd 2.1.30 (Nov 6 2004 14:50:21) $
lorenzo@Sage2:/var/tmp/portage/openldap-2.1.30-r2/work/openldap-2.1.30/ servers/slapd
daemon_init: ldap:// ldaps:// ldapi://%2fvar%2frun%2fopenldap%2fslapd.sock
daemon_init: listen on ldap://
daemon_init: listen on ldaps://
daemon_init: listen on ldapi://%2fvar%2frun%2fopenldap%2fslapd.sock
daemon_init: 3 listeners to open...
ldap_url_parse_ext(ldap://)
daemon: initialized ldap://
ldap_url_parse_ext(ldaps://)
daemon: initialized ldaps://
ldap_url_parse_ext(ldapi://%2fvar%2frun%2fopenldap%2fslapd.sock)
daemon: initialized ldapi://%2fvar%2frun%2fopenldap%2fslapd.sock
daemon_init: 3 listeners opened
ldap_create
ldap_url_parse_ext(ldaps://sage2.internal.thethurmans.com/)
ldap_simple_bind
ldap_sasl_bind
ldap_send_initial_request
ldap_new_connection
ldap_int_open_connection
ldap_connect_to_host: TCP sage2.internal.thethurmans.com:636
ldap_new_socket: 9
ldap_prepare_socket: 9
ldap_connect_to_host: Trying 192.168.2.16:636
ldap_connect_timeout: fd: 9 tm: 30 async: 0
ldap_ndelay_on: 9
ldap_is_sock_ready: 9
ldap_is_socket_ready: error on socket 9: errno: 111 (Connection refused)
ldap_close_socket: 9
ldap_unbind
slapd init: initiated server.
bdb_initialize: initialize BDB backend
bdb_initialize: Sleepycat Software: Berkeley DB 4.1.25: (December 19, 2002)