[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: Active Directory port ? to be contacted by slurpd



Harry Sufehmi <milis-2@harrysufehmi.com> writes:

> Quick question (hopefully) - what's the port that should be connected
> by slurp on an Active Directory server, to replicate the changes from
> OpenLDAP to Active Directory ?
>
> I've tried 389 and 636, and both failed with the same error message
> (attached, output from slurpd -d 65535 -o -r )
>
> Here's the replica setting in slapd.conf:
> -----------------
> replica         uri=ldaps://10.11.20.13:389
>                  binddn="cn=administrator,cn=users,dc=bcc,dc=test"
>                  bindmethod=sasl saslmech=GSSAPI credentials=mypassword
> replogfile      /usr/local/openldap/var/replog-bcc-test
> -----------------
[...]
> TLS trace: SSL_connect:SSLv2/v3 write client hello A
> tls_read: want=7, got=0
>
> TLS: can't connect.
> ldap_err2string
> Error: LDAP SASL for 10.11.20.13:389 failed: Can't contact LDAP server
> ldap_unbind
> Quit

Check your TLS configuration. Better try without TLS first and have it
configured after you have a working environment.

-Dieter

-- 
Dieter Klünter | Systemberatung
http://www.dkluenter.de
GPG Key ID:01443B53