[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: SASL authentication : Inappropriate authentication error



Read the ldapsearch manpage. Don't use the "-I" option, you don't need it.

Benoit Callebaut wrote:
Thank you for the response.

I made the modifications but it doesn't change anything

for info , I use BekerleyDB 4.4, MIT-Kerberos 1.4.3,cyrus SASL 2.1.21 and openldap 2.3.20

Quanah Gibson-Mount wrote:


--On Monday, May 15, 2006 11:53 AM +0200 Benoit Callebaut <bc@cetic.be> wrote:


The behavior of  ldapsearch is not what I expected:
1 It asked be my "authorization name". Why ? I am already authenticated
by Kerberos (I have a ticket)
2 It doesn't map my name to a correct dn.

Here is the slapd.conf:
--- SNIP ---
# sasl-realm              TEST.CETIC.BE
sasl-host               pt-jv.cetic.be


--
 -- Howard Chu
 Chief Architect, Symas Corp.  http://www.symas.com
 Director, Highland Sun        http://highlandsun.com/hyc
 OpenLDAP Core Team            http://www.openldap.org/project/