[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: LDAP and SSL



On Mon, 29 Nov 2004 13:54:29 -0500, Ron Peterson <rpeterso@mtholyoke.edu> wrote:
> > Does the same query return anything via ldap://?
> 
> Continuing in the spirit of overstating the obvious ... your admin DN
> appears to have a typo...

LOL, I agree that I cannot type worth a flip  =)  However:

ldapsearch -x -b 'dc=insecurity,dc=org' -D
"cn=admin,dc=insecurity,dc=org" '(objectclass=*)' -H
ldap://192.168.2.2 -W
Enter LDAP Password:  xxxxxxx [enter]

# extended LDIF
#
# LDAPv3
# base <dc=insecurity,dc=org> with scope sub
# filter: (objectclass=*)
# requesting: ALL
#

# insecurity.org
dn: dc=insecurity,dc=org
objectClass: top
objectClass: dcObject
objectClass: organization
o: CCSH
dc: insecurity

# admin, insecurity.org
dn: cn=admin,dc=insecurity,dc=org
objectClass: simpleSecurityObject
objectClass: organizationalRole
cn: admin
description: LDAP administrator
userPassword:: .... deleted =

# search result
search: 2
result: 0 Success

# numResponses: 3
# numEntries: 2


This, however:
ldapsearch -x -b 'dc=insecurity,dc=org' -D
"cn=admin,dc=insecurity,dc=org" '(objectclass=*)' -H
ldaps://192.168.2.2 -W
Enter LDAP Password:  xxxxxxx [enter]

Simply hangs.  The syslog output -

Nov 29 14:11:54 debian slapd[1291]: daemon: activity on 1 descriptors 
Nov 29 14:11:54 debian slapd[1291]: daemon: new connection on 13 
Nov 29 14:11:54 debian slapd[1291]: conn=1 fd=13 ACCEPT from
IP=192.168.2.2:32807 (IP=0.0.0.0:636)
Nov 29 14:11:54 debian slapd[1291]: daemon: added 13r 
Nov 29 14:11:54 debian slapd[1291]: daemon: activity on:
Nov 29 14:11:54 debian slapd[1291]:  
Nov 29 14:11:54 debian slapd[1291]: daemon: select: listen=6
active_threads=0 tvp=NULL
Nov 29 14:11:54 debian slapd[1291]: daemon: select: listen=7
active_threads=0 tvp=NULL
Nov 29 14:11:54 debian slapd[1291]: daemon: select: listen=8
active_threads=0 tvp=NULL
Nov 29 14:11:54 debian slapd[1291]: daemon: activity on 1 descriptors 
Nov 29 14:11:54 debian slapd[1291]: daemon: activity on:
Nov 29 14:11:54 debian slapd[1291]:  13r
Nov 29 14:11:54 debian slapd[1291]:  
Nov 29 14:11:54 debian slapd[1291]: daemon: read activity on 13 
Nov 29 14:11:54 debian slapd[1291]: connection_get(13) 
Nov 29 14:11:54 debian slapd[1291]: connection_get(13): got connid=1 
Nov 29 14:11:54 debian slapd[1291]: connection_read(13): checking for
input on id=1

-- 
WC -Sx- Jones
http://insecurity.org/