public inbox for gentoo-server@lists.gentoo.org
 help / color / mirror / Atom feed
* [gentoo-server] LDAP password-hash and kerberos
@ 2005-09-09 16:07 Robert Larson
  2005-09-12 17:46 ` Robert Larson
  0 siblings, 1 reply; 3+ messages in thread
From: Robert Larson @ 2005-09-09 16:07 UTC (permalink / raw
  To: gentoo-server

Hello,

I have been experiencing problems with the recent openldap upgrade from 2.1 
branch to 2.2.  I followed the directions in the ebuild as directed, and I 
seem to be hung up on one (maybe 2) problem.  The new version of openldap 
doesn't seem to know what to do with this directive:
password-hash {CLEARTEXT}

I changed the directive to {SSHA}, then re-followed the steps in the ebuild 
for rebuilding the database.  Everything seems to work fine for openldap now, 
but I _was_ using it as the backend for kerberos authentication, and kerberos 
doesn't like it at all:
kadmin -l
kadmin> list *
kadmin: opening database: ldap_sasl_bind_s: Can't contact LDAP server
kadmin: kadm5_get_principals: Wrong database version

Everything worked fine up to the upgrade, and I am unsure at this point on a 
direction to troubleshoot this issue further.  After looking into the 
openldap documentation it would seem that the CLEARTEXT option should still 
exist.  But, honestly, I am not sure that this is even the source of the 
problem.

Any ideas?

Thanks in advance!

Robert
-- 
gentoo-server@gentoo.org mailing list



^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2005-09-12 19:42 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2005-09-09 16:07 [gentoo-server] LDAP password-hash and kerberos Robert Larson
2005-09-12 17:46 ` Robert Larson
2005-09-12 19:38   ` Andreas Herrmann

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox