Re: active directory authentication

2010-01-12 Thread Gino LV. Ledesma
On Tue, Jan 12, 2010 at 4:56 PM, Ohad Levy wrote: > It looks to  me that you are using the wrong port for tls..389 is > cleartext, 636 is secure ( if i remember correctly ) > > Cheers, > Ohad His config options had ldap_tls: 1, which invokes STARTTLS (if supported). - gino __

Re: active directory authentication

2010-01-12 Thread Ohad Levy
It looks to me that you are using the wrong port for tls..389 is cleartext, 636 is secure ( if i remember correctly ) Cheers, Ohad On 1/13/10, Gehrig Adrian wrote: > Hi > > Before I make an appointment at my psycho analyst I ask you for help... > > I am trying to get the ldap authentication aga

Re: active directory authentication

2010-01-12 Thread Gino LV. Ledesma
Based on your config and error message, cobbler (specifically python-ldap) isn't able to establish a secure, TLS connection against your AD server. My guess is you're using a certificate that's not trusted (e.g. self-signed certificate). One quick fix is to adjust your OpenLDAP config file (e.g. /

active directory authentication

2010-01-12 Thread Gehrig Adrian
Hi Before I make an appointment at my psycho analyst I ask you for help... I am trying to get the ldap authentication against a Windows 2003 domain working. Using ldapsearch is working as espected. The following command was executed: ldapsearch -LLL -x -b 'ou=Users,OU=Bern,OU=Switzerland,OU=1