Re: TLS/SSL problems

Craig <craig5@pobox.com> writes:

> I am running openldap 2.2.13. I am having a problem getting TLS to
> work. I have done numerous searches, but most web pages seem to deal
> with LDAP/kerberos issues. We do not run kerberos. I am only trying to
> prevent passwords from being sent in the clear.
> I have followed the instructions on this page:
> http://www.ibm.com/developerworks/linux/library/l-openldap/
> I am able to run ldapsearch with simple auth:
>  > ldapsearch -x
> but, am not able to do any of the following:
>  > ldapsearch
>  > ldapsearch -X u:myuid
>  > ldapsearch -X dn:uid=myuid,ou=People,dc=example,dc=com

You are trying proxy authorization, this requires a SASL mechanism,
something like 
ldapsearch -X u:<uid> -Y digest-md5


