[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: Invalid credentials



On Sun, Feb 21, 2016 at 01:38:29PM -0500, Dave Beach wrote:
Stop slapd before running slapindex.

Sigh. Early morning. Ok, done.

:)

Now, re-running the ldapsearch command-line:

ldapsearch  -D cn=admin,dc=drbhome,dc=ca -W -b  "dc=drbhome,dc=ca" -s sub
"(&(objectClass=sambaDomain)(sambaDomainName=DRBHOME))" sambaDomainName

Same result as before:

# extended LDIF
#
# LDAPv3
# base <dc=drbhome,dc=ca> with scope subtree
# filter: (&(objectClass=sambaDomain)(sambaDomainName=DRBHOME))
# requesting: sambaDomainName
#

# search result
search: 2
result: 32 No such object

# numResponses: 1

OK, some sanity checks:

ensure the parent entry exists and has expected contents:

ldapsearch -D cn=admin,dc=drbhome,dc=ca -W -s base -b 'dc=drbhome,dc=ca' '*' +

("'*' +" is asking for all attributes including operational ones; then the output will be closer to what you see from slapcat)

ensure the samba domain entry exists and has expected contents:

ldapsearch -D cn=admin,dc=drbhome,dc=ca -W -s base -b 'sambaDomainName=DRBHOME,dc=drbhome,dc=ca' '*' +

try each part of the filter separately:

ldapsearch -D cn=admin,dc=drbhome,dc=ca -W -s sub -b 'dc=drbhome,dc=ca' '(objectClass=sambaDomain)'

ldapsearch -D cn=admin,dc=drbhome,dc=ca -W -s sub -b 'dc=drbhome,dc=ca' '(sambaDomainName=DRBHOME)'