After turning up TRACE on org.ldaptive.control I only saw one extra log pertaining to decoding control:
2014-07-24 08:43:28,559 DEBUG [org.ldaptive.auth.PooledSearchDnResolver] - <resolved dn=YYY for user=XXX> 2014-07-24 08:43:28,560 DEBUG [org.ldaptive.auth.Authenticator] - <authenticate dn=YYY with request=[org.ldaptive.auth.AuthenticationRequest@1857016013::user=XXX, retAttrs=[uid, uid]]> 2014-07-24 08:43:28,561 DEBUG [org.ldaptive.auth.PooledBindAuthenticationHandler] - <authenticate criteria=[org.ldaptive.auth.AuthenticationCriteria@1488288640::dn=YYY, authenticationRequest=[org.ldaptive.auth.AuthenticationRequest@1857016013:: user=XXX, retAttrs=[uid, uid]]]> 2014-07-24 08:43:28,564 DEBUG [org.ldaptive.BindOperation] - <execute request=[org.ldaptive.BindRequest@1769958195::bindDn=YYY, saslConfig=null, controls=[[org.ldaptive.control.PasswordPolicyControl@-350057371::criticali ty=false, timeBeforeExpiration=0, graceAuthNsRemaining=0, error=null]]] with connection=[org.ldaptive.DefaultConnectionFactory$DefaultConnection@1666623 515::config=[org.ldaptive.ConnectionConfig@1511332517::ldapUrl=ldap://ldap- dev.nau.edu, connectTimeout=3000, responseTimeout=-1, sslConfig=null, useSSL=false, useStartTLS=false, connectionInitializer=null], providerConnectionFactory=[org.ldaptive.provider.jndi.JndiConnectionFactory @743905121::connectionCount=1, environment={java.naming.factory.initial=com.sun.jndi.ldap.LdapCtxFactory, com.sun.jndi.ldap.connect.timeout=3000, java.naming.ldap.version=3}, providerConfig=[org.ldaptive.provider.jndi.JndiProviderConfig@163575813::op erationExceptionResultCodes=[PROTOCOL_ERROR, SERVER_DOWN], properties={}, connectionStrategy=DEFAULT, environment=null, tracePackets=null, removeDnUrls=true, searchIgnoreResultCodes=[TIME_LIMIT_EXCEEDED, SIZE_LIMIT_EXCEEDED, PARTIAL_RESULTS], sslSocketFactory=null, hostnameVerifier=null, controlProcessor=org.ldaptive.provider.ControlProcessor@1a341543]], providerConnection=org.ldaptive.provider.jndi.JndiConnection@515fef25]> 2014-07-24 08:43:28,579 TRACE [org.ldaptive.control.PasswordPolicyControl] - <decoding control: MAA=> 2014-07-24 08:43:28,595 DEBUG [org.ldaptive.BindOperation] - <execute response=[org.ldaptive.Response@805314806::result=null, resultCode=SUCCESS, message=null, matchedDn=null, responseControls=[[org.ldaptive.control.PasswordPolicyControl@-350057371::c riticality=false, timeBeforeExpiration=0, graceAuthNsRemaining=0, error=null]], referralURLs=null, messageId=-1] for request=[org.ldaptive.BindRequest@1769958195::bindDn=YYY, saslConfig=null, controls=[[org.ldaptive.control.PasswordPolicyControl@-350057371::criticali ty=false, timeBeforeExpiration=0, graceAuthNsRemaining=0, error=null]]] with connection=[org.ldaptive.DefaultConnectionFactory$DefaultConnection@1666623 515::config=[org.ldaptive.ConnectionConfig@1511332517::ldapUrl=ldap://ldap- dev.nau.edu, connectTimeout=3000, responseTimeout=-1, sslConfig=null, useSSL=false, useStartTLS=false, connectionInitializer=null], providerConnectionFactory=[org.ldaptive.provider.jndi.JndiConnectionFactory @743905121::connectionCount=1, environment={java.naming.factory.initial=com.sun.jndi.ldap.LdapCtxFactory, com.sun.jndi.ldap.connect.timeout=3000, java.naming.ldap.version=3}, providerConfig=[org.ldaptive.provider.jndi.JndiProviderConfig@163575813::op erationExceptionResultCodes=[PROTOCOL_ERROR, SERVER_DOWN], properties={}, connectionStrategy=DEFAULT, environment=null, tracePackets=null, removeDnUrls=true, searchIgnoreResultCodes=[TIME_LIMIT_EXCEEDED, SIZE_LIMIT_EXCEEDED, PARTIAL_RESULTS], sslSocketFactory=null, hostnameVerifier=null, controlProcessor=org.ldaptive.provider.ControlProcessor@1a341543]], providerConnection=org.ldaptive.provider.jndi.JndiConnection@515fef25]> ― Raymond Walker Software Systems Engineer StSp. ITS - Northern Arizona University On 7/21/14, 6:50 PM, "Daniel Fisher" <[email protected]> wrote: >On Mon, Jul 21, 2014 at 6:31 PM, Raymond Drew Walker <[email protected]> >wrote: >> So, as for the flow processing, after upping all ldaptive logs to DEBUG, >> here¹s what I get: >> > >Can you set the log level to TRACE for the org.ldaptive.control package? > >> >>controls=[[org.ldaptive.control.PasswordPolicyControl@-350057371::critica >>li >> ty=false, timeBeforeExpiration=0, graceAuthNsRemaining=0, error=null]]] > >The response control is there, but it doesn't look like it was parsed >correctly. >Hopefully the trace logs will help. > >--Daniel Fisher > >-- >You are currently subscribed to [email protected] as: >[email protected] >To unsubscribe, change settings or access archives, see >http://www.ja-sig.org/wiki/display/JSG/cas-user > -- You are currently subscribed to [email protected] as: [email protected] To unsubscribe, change settings or access archives, see http://www.ja-sig.org/wiki/display/JSG/cas-user
