RE: [squid-users] RE: Question about ldapsearch argument!

From: Hamed Majnoonian <sharpknifeedge@dont-contact.us>
Date: Wed, 14 Jan 2004 21:36:38 +0330

Dear Henrik,

Here is your suggestion and the answer that machine has retruned.

############################################
Swordfish# ldapsearch -h 192.168.2.2 -vx -D
CN=administrator,CN=users,DC=hov,DC=butanegroup,DC=COM -W
ldap_init( 192.168.2.2, 0 )
Enter LDAP Password:
filter: (objectclass=*)
requesting: ALL
# extended LDIF
#
# LDAPv3
# base <> with scope sub
# filter: (objectclass=*)
# requesting: ALL
#

# search result
search: 2
result: 32 No such object
text: 0000208D: NameErr: DSID-03100193, problem 2001 (NO_OBJECT), data
0, bes
 t match of:
        ''

# numResponses: 1

###############################################

I also tried to add -b dc=hov,dc=butanegroup,dc=com to the end of my
argument but the number of replies increased to 1002 and still computer
names in my AD !!

Regards and thank you
Hamed
-----Original Message-----
From: Hamed Majnoonian [mailto:sharpknifeedge@samrand.com]
Sent: Wednesday, January 14, 2004 9:24 PM
To: 'Henrik Nordstrom'
Cc: squid-users@squid-cache.org
Subject: RE: [squid-users] RE: Question about ldapsearch argument!

Dear Henrik,

I have searched but I found "name: my user ID, for example" in the
output of LDAP. As much as I know I don't have any option about this in
squid_ldap_auth so how can I tell my squid_ldap_auth to search for a
special username? Could you provide any example?

Regards
Hamed

-----Original Message-----
From: Henrik Nordstrom [mailto:hno@squid-cache.org]
Sent: Wednesday, January 14, 2004 9:18 PM
To: Hamed Majnoonian
Cc: 'Henrik Nordstrom'; squid-users@squid-cache.org
Subject: [squid-users] RE: Question about ldapsearch argument!

On Wed, 14 Jan 2004, Hamed Majnoonian wrote:

> Yes it has retuned about 89 records that I found a lot of information
about
> my users in my AD. The only problem that I am trying so solve is the
> argument that I should tell my Squid_ldap_auth to search my AD to
> authenticate the user.

Look into the record of one user. There should be an attribute
containing
the login name. Then use this attribute name in your search filter.

> Also about the authentication of the last argument I used -W to have a
> login prompt when I was trying to tell ldapsearch to search my active
> directory.

You also need the -D argument in such case..

Regards
Henrik
Received on Wed Jan 14 2004 - 11:06:51 MST

This archive was generated by hypermail pre-2.1.9 : Sun Feb 01 2004 - 12:00:06 MST