-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

> -----Original Message-----
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED] On
> Behalf Of Vitor Paiva da Silva
> Sent: Saturday, 19 March 2005 2:58 AM
> To: [email protected]
> Subject: Authenticate users from freeradius to a Windows 2000 AD
>

> rlm_ldap: ldap_search() failed: Operations error
>
> rlm_ldap: search failed
>
> rlm_ldap: ldap_release_conn: Release Id: 0
>
>   modcall[authorize]: module "ldap" returns fail for request 0
>
> modcall: group authorize returns fail for request 0
>

This typically happens when AD referrals fail. In your LDAP
configuration you need to turn off dereferencing and referrals.
This is usually done by adding the following lines to
/etc/openldap/ldap.conf on the FreeRadius box (which is the AD LDAP
client in this case):

deref never
referrals no

Regards
-----BEGIN PGP SIGNATURE-----
Note: This signature can be verified at https://www.hushtools.com/verify
Version: Hush 2.4

wkYEARECAAYFAkI+LlYACgkQmw4BJyaatJ3fagCfbSRQwv8i98MUNtwdF7xpGuoXezUA
oKwTzeO131L0BZJ/9sf4oig7rVJ4
=oh86
-----END PGP SIGNATURE-----



- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to