Re: [squid-users] LDAP helper/ NDS

From: Tim Bernhardson <TBERNHAR@dont-contact.us>
Date: Fri, 27 Jun 2003 07:37:47 -0700

Michel:

If you search the archives this has been covered a couple of times in the last 6 months (try google with the search terms - squid novell ldap ssl)

What is happening is that by default Novell requires an SSL Connection to LDAP, however (unless it has been changed in the latest LDAP Helper) Squid uses an newer version of SSL than Novell supports.

The fix is either to have your Novell Admin enable Non SSL Connections, or use stunnel to establish an SSL connection to your Novell Server and connect to that with the Squid LDAP Helper.

Tim Bernhardson
Senior Technical Engineer
Certified Citrix Metaframe Administrator
Certified CyberGuard Administrator
Certified AIX 4.3 System Administrator
Sun-Maid Growers of California
7273 Murray Drive, Ste 18
Stockton, CA 95210

tbernhar at sunmaid dot com

>>> "michel lodap" <michel_lodap@hotmail.com> 06/27/03 04:03AM >>>
Hi all,
I am having trouble configuring squid_ldap_auth.
When I run squid_ldap_auth with the following configuration:

~#./squid ldap auth -b o=itcarlow -u cn -D cn=admin,ou=staff,o=itcarlow -w
admin -h ipaddress
and when I enter the username and passord bebe bebe
the result is ERR

when I add this time -p 636 -Z to specify a secure connection I am getting
nothing even though netstat tells me that a secure LDAP connection is
established

when i try this time the above configuration with a filter this is what i am
getting
squid ldap auth: WARNING, could not bind to bindn 'Strong(er) authentication
required'
squid ldap auth: WARNING, could not bind to bindn 'Strong(er) authentication
required'
ERR
Then again netstat still tells me that a ldaps connection is established.
Can somebody help me?
Many thanks in advance.
Michel

_________________________________________________________________
Découvrez les nouvelles émoticônes animées de http://g.msn.fr/FR1001/866
MSN Messenger nouvelle formule
Received on Fri Jun 27 2003 - 08:37:57 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 17:17:39 MST