Hi Guys,

I'm pointing our CAS to a new test server, running OpenLDAP 2.4. When I enter an incorrect password, I get the message "CAS is Unavailable". If I point it back to the old server, it's fine.

I have CAS audit enabled, and with the old ldap I get...
WHAT: error.authentication.credentials.bad

With the new one I get...
WHAT: [LDAP: error code 49 - Invalid Credentials]; nested exception is javax.naming.AuthenticationException: [LDAP: error code 49 - Invalid Credentials]

I haven't looked at the LDAP authentication code yet, but by the looks of it, it's expecting a very specific string response for a failed authentication? So, it seems like maybe that's changed slightly between OpenLDAP releases?

Anyhow, I'm betting someone's fixed this in newer versions of the BindLdapAuthenticationHandler? If so, are they compatible with CAS 3.4.10?

Thanks.

--
Trenton D. Adams
Senior Systems Analyst/Web Software Developer
Navy Penguins at your service!
Athabasca University
(780) 675-6195
:wq!

--
   This communication is intended for the use of the recipient to whom it
   is addressed, and may contain confidential, personal, and or privileged
   information. Please contact us immediately if you are not the intended
   recipient of this communication, and do not copy, distribute, or take
   action relying on it. Any communications received in error, or
   subsequent reply, should be deleted or destroyed.
---

--
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to