LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Debian
User Name
Password
Debian This forum is for the discussion of Debian Linux.

Notices


Reply
  Search this Thread
Old 04-22-2010, 03:39 AM   #1
abd_bela
Member
 
Registered: Dec 2002
Location: algeria
Distribution: redhat 7.3, debian lenny
Posts: 627

Rep: Reputation: 31
ldap help


Hi,
I installed sldap 2.4.18 on server debian squeeze (here 172.19.6.150)
when Iuse the command
ldapsearch -xLLL -b "dc=example,dc=com" uid=john sn givenName cn
dn: uid=john,ou=people,dc=example,dc=com
sn: Doe
givenName: John
cn: John Doe

I get correct answer

I tried to do it from a remote machine where ( ubuntu 9.10 ) (IP 172.19.6.50)
I installed package for authentication in this client machine

libnss-ldap
ldap-auth-config
I ran pam-auth-update

everything seemed correct like it is decalred in the document

http://doc.ubuntu.com/ubuntu/serverg...ap-server.html

I used ubuntu doc, because I have install 2.4.18 ( not present yet on squeeze),
on some machine it running correctly, on other not!!!??


I got the error : ( it is running on another machine : 172.19.6.50 )

ldapsearch -xLLL -b -H ldap://172.19.6.150 "dc=example,dc=com" uid=john sn givenName cn

ldap_sasl_bind(SIMPLE): Can't contact LDAP server (-1)

in the same way , the authentication is not done ( john is created in ldap server)

su - john
identifier unknown : john


I can do same from another machine running debian lenny. very strange I install same packages, that what I believe

any idea
thanks a lot
 
Old 04-22-2010, 05:37 AM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
well from that it initially looks like you aren't able to reach 172.19.6.150 on port 389 at the network level, as this address does not figure in the first example. where are you going at a TCP level in that first example? Also what does your server side logs say about this? AFAIR, the "can't contact" doesn't exclusively mean a tcp issue - although I think the other alternative root causes relate more to SSL which you are not using there.
 
Old 04-24-2010, 02:42 AM   #3
abd_bela
Member
 
Registered: Dec 2002
Location: algeria
Distribution: redhat 7.3, debian lenny
Posts: 627

Original Poster
Rep: Reputation: 31
Thanks chris
the difference between the 2 examples, is in the first I check the command on the local machine wich is the server (172.19.6.150) in the 2nd i did it from a remote client (172.19.6.50 ). Since I received the answer in the first case this means the server is running correctly, may be the error is in the client itself, ldap client ???

thanks again
best regards
bela
 
Old 04-25-2010, 09:08 AM   #4
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
I wouldn't expect it to be the client, more likely the network or firewall rules on the server. try doing a telnet to port 389 on that IP from the client to reduce things to a simpler level.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
how to setup open ldap server and solaris 10 as ldap client maheshlad Linux - Software 1 10-10-2009 12:55 AM
Ubuntu Hardy (php-ldap):Can't contact LDAP server eantoranz Programming 7 12-02-2008 06:40 PM
SMBLDAP-TOOLS SAMBA LDAP . Problem when filling ldap. jcdole Linux - Server 0 06-07-2008 11:41 AM
authenticating through one ldap server that uses other ldap servers & active director dreamm Linux - Server 1 02-21-2007 08:22 AM
LXer: LDAP Series Part IV - Installing OpenLDAP on Debian Plus Some LDAP Commentary LXer Syndicated Linux News 0 10-31-2006 06:54 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Debian

All times are GMT -5. The time now is 02:48 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration