Re: PAM LDAP queries attempt to bind with empty binddn

2010-02-10 Thread Predrag Gavrilovic
I believe you shold set "rootbinddn" and "rootpw" in pam_ldap.conf. That's what's used when lookup is done by process with effective user id is 0. On Wed, Feb 10, 2010 at 5:07 PM, John A. Sullivan III wrote: > Hello, all.  We have just started to explore Debian Lenny as a platform > and have bee

Re: Re: ldap and tls

2009-04-01 Thread Predrag Gavrilovic
, 2009 at 10:38 PM, Maria McKinley wrote: > Predrag Gavrilovic wrote: > > Thanks for the troubleshooting hints, comments in line. > > Predrag Gavrilovic wrote: > >> Are you sure that problem is not related to something simple as file >> permissions on private key for serve

Re: ldap and tls

2009-03-28 Thread Predrag Gavrilovic
Are you sure that problem is not related to something simple as file permissions on private key for server certificate? Because that is only an last time when I had problems with openldap and certificates. gnutls doesn't support TLS_CACERTDIR option, that is setting TLSCACertificatePath in slapd.co

newpki-client unable to logon in lenny

2008-06-02 Thread Predrag Gavrilovic
Does anyone use newpki on debian testing? It works OK in etch, but when I try to use newpki-client (on lenny) against newpki-server (on etch), I am unable to log in using previously generated pkcs12. Same pkcs12 works ( even now, and has been working all the time) ok on newpki-client running on etc

Re: BUG: Epiphany and Evolution start in offline mode when I am online wireless

2008-05-31 Thread Predrag Gavrilovic
As for epiphany, you should turn off (using gconf-editor) apps/epiphany/general/managed_network. I'm not sure, but I beleive it was allready mentioned on the list( I saw it somewhere). It was annoying for me to. I do not use Evolution much, but I can see apps/evolution/shell/start_offline in gcon

Re: LDAP admin password configuring libnss-ldap and libpam-ldap

2008-04-21 Thread Predrag Gavrilovic
It is needed for actions where local user is root, so local root could, if necessary change users passwords in LDAP. If that is not desirable, you do not have to use it. You can put same name/password that you have put for ordinary lookups. On Mon, Apr 21, 2008 at 9:30 PM, Juan Asensio Sánchez <[

Re: /proc/net info ?

2007-09-30 Thread Predrag Gavrilovic
According to http://lartc.org/ chapter 13 you can find more info in Documentation/filesystems/proc.txt of linux kernel documentation, and they also mention http://ipsysctl-tutorial.frozentux.net/ 2007/9/28, chloe K <[EMAIL PROTECTED]>: > Hi all > > How can I find out all info about /proc/net ?

Re: Problems regarding LDAP authentication & nss ...

2007-07-18 Thread Predrag Gavrilovic
I believe that with bind_policy soft in libnss-ldap.conf and ldap [UNAVAIL=return] entries in nsswitch.conf you can save few seconds during boot, and safely ignore those messages. 2007/7/17, Jaime Ventura <[EMAIL PROTECTED]>: Just a few topis I forgot to tell. Im using debian etch. Ive alrea

Re: I would like know if someone use or have used NFS v4 ? It's stable, usable ?

2007-06-24 Thread Predrag Gavrilovic
We are using it since month ago. No problems.(Not too much time, though). But I believe it's worth trying, because I don't know any other simple and secure way to share files under Linux. 2007/6/18, KLEIN Stéphane <[EMAIL PROTECTED]>: Hi, I would like know if someone use or have used NFS v4 ?

Re: heimdal kerberos on debian?

2007-05-24 Thread Predrag Gavrilovic
Project pages are at: http://www.pdc.kth.se/heimdal/ and manual at: http://www.h5l.se/manual/heimdal-0-7-branch/info/heimdal.html and you can install it too. Heimdal communicates with LDAP trough unix sockets and I believe that there is still a problem that heimdal expects it to be in /var/run/l

Fwd: IBM x346

2007-04-12 Thread Predrag Gavrilovic
ServeRaid card is optional, without it you can only use Adaptec HostRaid "hardware" Raid which is configured trough SCSI bios. Debian supports SCSI controller, but I am pretty sure (not 100%) that it doesn't support its raid features. I was disappointed in it's "hardware" Raid which needs appropri

Re: Etch: how to make own xen domU kernel ?

2007-04-06 Thread Predrag Gavrilovic
rtunity to manually configure xen kernel for debian. 2007/4/7, Andrew Malcolmson <[EMAIL PROTECTED]>: Thanks for the resonse, Predrag On Wed, Apr 04, 2007 at 10:01:01AM +0200, Predrag Gavrilovic wrote: > To be more precise, > link http://bugs.debian.org/cgi-bin/bugreport.cgi?bu

Fwd: Etch: XEN domU networking

2007-04-06 Thread Predrag Gavrilovic
Are you referring to setting an IP address in DomU's configuration file? If it is so, you don't have to. Although it was present in some HOWTOs, and i believe xen-tools create such configuration files, it is not necessary. You can leave DomU's network configuration to just vif=['bridge=xenbr0'] ,

Re: Etch: how to make own xen domU kernel ?

2007-04-04 Thread Predrag Gavrilovic
, which is to manualy configure and build xen kernel. I believe it wold be possible to apply additional non-xen paches this way (--added-patches) 2007/4/4, Andrew Malcolmson <[EMAIL PROTECTED]>: On Tue, Apr 03, 2007 at 11:08:38PM +0200, Predrag Gavrilovic wrote: > Same thing is on my to-do l

Re: Etch: how to make own xen domU kernel ?

2007-04-03 Thread Predrag Gavrilovic
Same thing is on my to-do list. I've managed to find this link: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=382699 There's also a workaround that should make it possible to patch debian kernel for xen using linux-patch-debian-2.6.18, official debian package, and then use make-kpkg to build xe

Re: exim4 smtp auth

2007-02-07 Thread Predrag Gavrilovic
You can not force client to authenticate, but you can force accepting mail from client to fail if client is not authenticated. You should check acl_smtp_mail or acl_smtp_rcpt and reject mail if client is not authenticated (but accept mail from foreign servers that are trying to send mail to your u

Re: Xen, cannot create partition from and for domU

2007-01-29 Thread Predrag Gavrilovic
I am not sure how did you manage to get that far with installation of domU (maybe SUSE domU is installed that way - booting installation CD in unprivileged domain), but you shouldn't do that. There is much more easier way to install domU in Debian - use xen-tools package. It will install unprivil

Re: exim4: avoiding "retry time not reached for any host"

2006-10-04 Thread Predrag Gavrilovic
+0200, Predrag Gavrilovic wrote: > I don't understand you. > > bug 32877 is about not being able to merge old and new configuration > files, and I don't think it would be smart thing to do across major > version upgrades. I'm using testing, so that exim config files are of

Re: New to Debian Installation

2006-10-04 Thread Predrag Gavrilovic
If I understand you corectly, you have installed debian using only first CD and now you would like to use software from other CDs. If that is the case, as a root type: apt-cdrom add, and then follow intructions. That will make packages from other CDs available for installation. After that you c

Re: exim4: avoiding "retry time not reached for any host"

2006-10-02 Thread Predrag Gavrilovic
On 2006-10-02 14:56:52 +0200, Predrag Gavrilovic wrote: > You should put them in /etc/exim4/exim4.conf.template, under the > section that begins with "begin retry". But this file gets overwritten after an exim upgrade. So, until bug 32877 (conffile merging) is fixed, this so

Re: exim4: avoiding "retry time not reached for any host"

2006-10-02 Thread Predrag Gavrilovic
te "real" exim4 configuration file /var/lib/exim4/config.autogenerated. And then restart exim. 2006/10/2, Vincent Lefevre <[EMAIL PROTECTED]>: On 2006-10-01 23:42:47 +0200, Predrag Gavrilovic wrote: > Part of the Exim configuration file are Retry rules wich govern how > o

Re: exim4: avoiding "retry time not reached for any host"

2006-10-01 Thread Predrag Gavrilovic
Part of the Exim configuration file are Retry rules wich govern how often Exim (guess what) retries failed deliveries. You shoul'd adjust that to your needs http://exim.org/exim-html-4.62/doc/html/spec_html/ch32.html 2006/9/28, Vincent Lefevre <[EMAIL PROTECTED]>: Hi, In /etc/default/exim4, I'

Re: ALERT! /dev/sda1 does not exist. Dropping to a shell...

2006-05-04 Thread Predrag Gavrilovic
This may be relevant to Debian too. I had (maybe still have) same problem with Debian etch instalation on IBM xSeries 346. I beleive this is a problem with initramfs-tools (there is a bug reported) and this should be fixed in next initarmfstools version in testing. After installation from daily bu

non debian source (openldap)

2006-01-25 Thread Predrag Gavrilovic
I am trying to install openldap-2.3.17(stable) because I need some features (smbk5passwd) which are not present in debian stable or testing packages. It builds fine on sarge, but I am concerned about future upgrades and debian packages that depend on ldap libraries What would be the best way to de

Re: cyrillic xkb

2005-09-27 Thread Predrag Gavrilovic
You have to set three things right: 1)keyboard layout 2)correct font 3) Locale settings, and I think that one is missing in your case Try setting [EMAIL PROTECTED] locale or sr_YU.UTF-8 locale. I beleive it will not stop you typing hungarian texts in X. You should also try to use unicode fonts, and