Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.user > #241221

Re: OpenLdap

From Nicholas Geovanis <nickgeovanis@gmail.com>
Newsgroups linux.debian.user
Subject Re: OpenLdap
Date 2021-10-12 01:10 +0200
Message-ID <D7cAF-8os-5@gated-at.bofh.it> (permalink)
References <D72L1-2ec-27@gated-at.bofh.it>
Organization linux.* mail to news gateway

Show all headers | View raw


[Multipart message — attachments visible in raw view] - view raw

On Mon, Oct 11, 2021, 7:31 AM Gokan Atmaca <linux.gokan@gmail.com> wrote:

> Hello
>
> I am using openldap. I configured a different server as ldap client.
> When I say "id user", the information comes. I have two organized
> units. "people" and "groups". my test environment.  But I can't login.
> What could be causing the problem?
>

The immediate reason for the failure should be found in the sshd logs in
/var. But the trick with LDAP for login authentication is this:

(1) Make sure the services file is stepping thru the authentication
databases in the order you believe is correct.
(2) make sure name resolution is doing what you think it's doing.
(3) Make sure that clock time is synchronized across all servers involved
in that login and authentication.


Example:
> $ id gokhan (ldap_user)
> uid=10000(gokhan) gid=2000(ob) groups=2000(ob)
>
> Thanks.
>
>
> --
> ⢀⣴⠾⠻⢶⣦⠀
> ⣾⠁⢠⠒⠀⣿⡁ Debian - The universal operating system
> ⢿⡄⠘⠷⠚⠋⠀ https://www.debian.org
> ⠈⠳⣄⠀⠀⠀⠀
>
>

Back to linux.debian.user | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread


Thread

OpenLdap Gokan Atmaca <linux.gokan@gmail.com> - 2021-10-11 14:40 +0200
  Re: OpenLdap Nicholas Geovanis <nickgeovanis@gmail.com> - 2021-10-12 01:10 +0200
  Re: OpenLdap Nicholas Geovanis <nickgeovanis@gmail.com> - 2021-10-12 01:10 +0200
    Re: OpenLdap Henning Follmann <hfollmann@itcfollmann.com> - 2021-10-12 16:10 +0200
      Re: OpenLdap Gokan Atmaca <linux.gokan@gmail.com> - 2021-10-12 18:40 +0200

csiph-web