HI List,

I've been trying to setup squid authentication via LDAP.
I configured and installed openLDAP (successfully I think),
and created the necessary dc,ou,cn,uid, etc....
And i'm using davedap for the LDAP front-end and 
everything looks fine so far.

However, when I run squid_auth_ldap on the command line, I am
unable to get authenticated successfully.

This question must have been asked and answered before, but I really
have searched the net (google, etc), but have not found anything helpful.
;-)

Allow me to paste my config:

Output of "slapcat":

dn: dc=bandwidth,dc=com
objectClass: dcObject
objectClass: organization
o: Example Company
dc: bandwidth
structuralObjectClass: organization
entryUUID: bc99396e-7ed9-1027-8f2e-c75a5a34628d
creatorsName: cn=Manager,dc=bandwidth,dc=com
createTimestamp: 20030919104240Z
entryCSN: 2003091910:42:40Z#0x0001#0#0000
modifiersName: cn=Manager,dc=bandwidth,dc=com
modifyTimestamp: 20030919104240Z

dn: cn=Manager,dc=bandwidth,dc=com
objectClass: organizationalRole
cn: Manager
description: Directory Manager
structuralObjectClass: organizationalRole
entryUUID: 97f79e58-7f6e-1027-916a-c20771ecd4f9
creatorsName: cn=Manager,dc=bandwidth,dc=com
createTimestamp: 20030920042813Z
entryCSN: 2003092004:28:13Z#0x0001#0#0000
modifiersName: cn=Manager,dc=bandwidth,dc=com
modifyTimestamp: 20030920042813Z

dn: ou=myorg,dc=bandwidth,dc=com
ou: myorg
objectClass: top
objectClass: organizationalUnit
structuralObjectClass: organizationalUnit
entryUUID: 32a9d0d8-7f88-1027-966a-87761c8c2907
creatorsName: cn=Manager,dc=bandwidth,dc=com
createTimestamp: 20030920073130Z
entryCSN: 2003092007:31:30Z#0x0001#0#0000
modifiersName: cn=Manager,dc=bandwidth,dc=com
modifyTimestamp: 20030920073130Z

dn: uid=rohan,ou=myorg,dc=bandwidth,dc=com
uid: rohan
cn: rohan
sn: rohan
userPassword:: e2NyeXB0fVF4VTQvTmZUdDhuTkk=
loginShell: /bin/bash
uidNumber: 123
gidNumber: 1000
homeDirectory: /home/rohan
objectClass: top
objectClass: person
objectClass: PosixAccount
objectClass: inetOrgPerson
structuralObjectClass: inetOrgPerson
entryUUID: 581e839a-7f88-1027-966b-87761c8c2907
creatorsName: cn=Manager,dc=bandwidth,dc=com
createTimestamp: 20030920073233Z
entryCSN: 2003092007:32:33Z#0x0001#0#0000
modifiersName: cn=Manager,dc=bandwidth,dc=com
modifyTimestamp: 20030920073233Z


Now I try to authenticate against user rohan:

[EMAIL PROTECTED] squid_auth_ldap]$ ./squid_auth_ldap -S 127.0.0.1 -s
ou=myorg,dc=bandwidth,dc=com -U uid -e 3
squid_auth_ldap[20396]: - trying to connect to: 127.0.0.1:389
squid_auth_ldap[20396]: - connected to ldapServer 127.0.0.1:389
squid_auth_ldap[20396]: - ready
rohan rohan
squid_auth_ldap[20396]: - got User: rohan
squid_auth_ldap[20396]: - got Password: thbdpoNXsrhyE
squid_auth_ldap[20396]: - searchstr:
(&(|(objectClass=inetOrgPerson)(objectClass=alias)) (| (uid=rohan)))
squid_auth_ldap[20396]: - start searching for uid: rohan
squid_auth_ldap[20396]: - search done
squid_auth_ldap[20396]: - found a entry
squid_auth_ldap[20396]: - DN found: uid=rohan,ou=myorg,dc=bandwidth,dc=com
squid_auth_ldap[20396]: - password check for
uid=rohan,ou=myorg,dc=bandwidth,dc=com
squid_auth_ldap[20396]: - password not OK!
ERR
squid_auth_ldap[20396]: - usr rohan ->
uid=rohan,ou=myorg,dc=bandwidth,dc=com -> Not Authenticated!

Has someone faced this problem before. Then u're inputs would be
most valuable to me.
I have a feeling, it has something to do with the storage format of
the password (ie. crypt, clear, md5)
Or something to do with objectClass of LDAP.

Thankz a lot!

--
arc_of_descent

-- 
+++ GMX - die erste Adresse f�r Mail, Message, More! +++

Getestet von Stiftung Warentest: GMX FreeMail (GUT), GMX ProMail (GUT)
(Heft 9/03 - 23 e-mail-Tarife: 6 gut, 12 befriedigend, 5 ausreichend)

Jetzt selbst kostenlos testen: http://www.gmx.net



-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
linux-india-help mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/linux-india-help

Reply via email to