Read the ldapsearch manpage. Don't use the "-I" option, you don't need it.
Benoit Callebaut wrote:
Thank you for the response.
I made the modifications but it doesn't change anything
for info , I use BekerleyDB 4.4, MIT-Kerberos 1.4.3,cyrus SASL 2.1.21
and openldap 2.3.20
Quanah Gibson-Mount wrote:
--On Monday, May 15, 2006 11:53 AM +0200 Benoit Callebaut
<[EMAIL PROTECTED]> wrote:
The behavior of ldapsearch is not what I expected:
1 It asked be my "authorization name". Why ? I am already authenticated
by Kerberos (I have a ticket)
2 It doesn't map my name to a correct dn.
Here is the slapd.conf:
--- SNIP ---
# sasl-realm TEST.CETIC.BE
sasl-host pt-jv.cetic.be
--
-- Howard Chu
Chief Architect, Symas Corp. http://www.symas.com
Director, Highland Sun http://highlandsun.com/hyc
OpenLDAP Core Team http://www.openldap.org/project/