Hi,

I'm not sure it's a right alias, however it's related to the GSSAPI.

I have a snv_129 kerberos+ldap client machine. Kerberos is already
configured. KDC is running on Linux.

Original nss_ldap library is replaced with nss-ldap from
http://freeipa.org/downloads/solaris/nss_ldap/10/RHATnss-ldap-253-12.i386.pkg

LDAP client is already configured with NS_LDAP_AUTH= none
What I would like to do is to change authenticationMethod to sasl/GSSAPI.

# ldapclient mod -a authenticationMethod=sasl/GSSAPI
Error resetting system.
Recovering old system settings.

# tail /var/ldap/cachemgr.log
Wed Feb 24 13:53:23.9601        Error: Unable to read
'/var/ldap/ldap_client_file': Configuration Error: Authentication
method sasl/GSSAPI requires credential level self
Wed Feb 24 13:53:23.9608        detachfromtty(): child failed (rc = 255).
Wed Feb 24 13:53:24.0026        Starting ldap_cachemgr, logfile
/var/ldap/cachemgr.log
Wed Feb 24 13:53:24.0043        Error: Unable to read
'/var/ldap/ldap_client_file': Configuration Error: Authentication
method sasl/GSSAPI requires credential level self
Wed Feb 24 13:53:24.0050        detachfromtty(): child failed (rc = 255).
Wed Feb 24 13:53:24.0428        Starting ldap_cachemgr, logfile
/var/ldap/cachemgr.log
Wed Feb 24 13:53:24.0445        Error: Unable to read
'/var/ldap/ldap_client_file': Configuration Error: Authentication
method sasl/GSSAPI requires credential level self
Wed Feb 24 13:53:24.0451        detachfromtty(): child failed (rc = 255).
Wed Feb 24 13:53:24.7556        Starting ldap_cachemgr, logfile
/var/ldap/cachemgr.log
Wed Feb 24 13:53:24.7698        sig_ok_to_exit(): parent exiting...


-- 
Piotr Jasiukajtis | estibi | SCA OS0072
http://estseg.blogspot.com

Reply via email to