Re: SASL authentication : Inappropriate authentication error

Read the ldapsearch manpage. Don't use the "-I" option, you don't need it.

Benoit Callebaut wrote:
Thank you for the response.

I made the modifications but it doesn't change anything

for info , I use BekerleyDB 4.4, MIT-Kerberos 1.4.3,cyrus SASL 2.1.21 and openldap 2.3.20

Quanah Gibson-Mount wrote:

--On Monday, May 15, 2006 11:53 AM +0200 Benoit Callebaut <bc@cetic.be> wrote:

The behavior of  ldapsearch is not what I expected:
1 It asked be my "authorization name". Why ? I am already authenticated
by Kerberos (I have a ticket)
2 It doesn't map my name to a correct dn.

Here is the slapd.conf:
--- SNIP ---
# sasl-realm              TEST.CETIC.BE
sasl-host               pt-jv.cetic.be

