Re: Simple Binds / Invalid credentials

* Grant Carmichael <germanshorthairpointer@gmail.com> [050920 19:54]:
> Hi everyone,
> I've been working on setting up an enterprise directory 
> using Heimdal Kerberos and OpenLDAP. The one part I'm stuck
> on is getting simple binds to successfully use SASL to 
> authenticate against Kerberos.  Below I've add some of my 

Simple Binds doesn't use SASL at all. You have to go an indirect

1.) set the UserPassword-Entry to {sasl}user@REALM (you have done that
2.) start the saslauthd-Daemon on the same computer your
directory-server runs on. Use as startup-Flag "-a kerberos5"
3.) Configure slapd to use the saslauthd-Daemon
 -> search for the sasl2-Library Path usually in /usr/lib/sasl2 or
 -> in this directory create a file slapd.conf with the following
pwcheck_method: saslauthd
mech_list: gssapi
4.) (Don't know, if its neccessary) Restart slapd

