Re: "Invalid Credentials" with Heimdal and Cyrus SASL

At 12:45 PM 2/28/2003, Ben Poliakoff wrote:
>I get the same results (Invalid credentials) if I specify a dn with
>which to bind.  

I'm sorry but... if you are doing SASL/GSSAPI, why are you
specifying a DN in which to bind to?  Generally, one should
not specify either a bind name (nor a SASL authorization
identity) when attempt a SASL bind.

And before you attempt an ldapsearch(1), I suggest you make
sure that ldapwhoami(1) is returning what you expect to be
the LDAP authorization DN.