Re: [Dovecot] Does dovecot work with OpenLDAP? (was Re: Please help: LDAP configuration _almost_ works.)

2008-04-18 Thread Jack McKinney
the query and the result both show up in the LDAP logs, it couldn't be a firewall issue. -- Jack McKinney GPG 1024D/99C6A174 [EMAIL PROTECTED] YM:lfaatsnat2006 AIM:jackmclorentz Beware geeks bearing diffs signature.asc Description: This is a digitally signed message part

Re: [Dovecot] Does dovecot work with OpenLDAP? (was Re: Please help: LDAP configuration _almost_ works.)

2008-04-17 Thread Jack McKinney
on this, however. I seem to remember the first connection timing out on one run... On Wed, 2008-04-16 at 23:20 +0100, Gavin Henry wrote: quote who=Jack McKinney No, it isn't. I have verified the connection with openssl s_client. Besides, the server is receiving the username [EMAIL PROTECTED], so

Re: [Dovecot] more than one ldap database.

2008-04-17 Thread Jack McKinney
=dominio2,dc=it is the second one. Can I put these two search bases in dovecot-ldap.conf? -- Jack McKinney GPG 1024D/99C6A174 [EMAIL PROTECTED] YM:lfaatsnat2006 AIM:jackmclorentz Beware geeks bearing diffs signature.asc Description: This is a digitally signed message part

Re: [Dovecot] Please help: LDAP configuration _almost_ works.

2008-04-16 Thread Jack McKinney
, this is the whole point of using auth_bind: instead of dovecot retrieving the password from LDAP and checking it against the user-supplied one, dovecot should _send_ the password to LDAP in the form of a bind and have LDAP accept or reject it. -- Jack McKinney GPG 1024D/99C6A174 [EMAIL PROTECTED

[Dovecot] Does dovecot work with OpenLDAP? (was Re: Please help: LDAP configuration _almost_ works.)

2008-04-16 Thread Jack McKinney
, It sounds like you are trying to do EXACTLY what I am trying to do: 1. My users login with their email address. 2a. My users are all over the tree in the sense that you cannot determine the DN from the email alone. E.g., I am [EMAIL PROTECTED], but my DN is cn=Jack McKinney, ou=users, dc=lorentz

Re: [Dovecot] Does dovecot work with OpenLDAP? (was Re: Please help: LDAP configuration _almost_ works.)

2008-04-16 Thread Jack McKinney
logs with auth debug on? -- Jack McKinney GPG 1024D/99C6A174 [EMAIL PROTECTED] YM:lfaatsnat2006 AIM:jackmclorentz Beware geeks bearing diffs signature.asc Description: This is a digitally signed message part

Re: [Dovecot] Does dovecot work with OpenLDAP? (was Re: Please help: LDAP configuration _almost_ works.)

2008-04-16 Thread Jack McKinney
: quote who=Jack McKinney Apr 3 08:13:21 fourier dovecot: auth(default): new auth connection: pid=15774 Apr 3 08:13:30 fourier dovecot: auth(default): client in: AUTH^I1^IPLAIN^Iservice=IMAP^Isecured^Ilip=x.x.x.x^Irip=y.y.y.y^Iresp=hidden Apr 3 08:13:30 fourier dovecot: auth(default

Re: [Dovecot] Please help: LDAP configuration _almost_ works.

2008-04-15 Thread Jack McKinney
On Tue, 2008-04-15 at 14:35 +0200, Steffen Kaiser wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Fri, 11 Apr 2008, Jack McKinney wrote: dn: dovecot needs a dn with which to search the database to find the user's DN based on their email. This is done with an anonymous

Re: [Dovecot] Please help: LDAP configuration _almost_ works.

2008-04-15 Thread Jack McKinney
the credential I provide to successfully query LDAP for the user based on the (mail=%u) criteria. However, it does not see the reply. The fact that it does perform the query successfully implies to me that it does not use an anonymous connection. Very puzzling. -- Jack McKinney GPG 1024D

Re: [Dovecot] Please help: LDAP configuration _almost_ works.

2008-04-11 Thread Jack McKinney
, dovecot will bind using the varmail DN and then search onelevel of ou=users, dc=lorentz, dc=com for an inetOrgPerson entry whose mail field is [EMAIL PROTECTED] As demonstrated by the ldapsearch in my earlier email, this will return the entry for cn=Jack McKinney, ou=users, dc=lorentz, dc=com

[Dovecot] Please help: LDAP configuration _almost_ works.

2008-04-08 Thread Jack McKinney
=inetOrgPerson)([EMAIL PROTECTED]))' Enter LDAP Password: # extended LDIF # # LDAPv3 # base ou=users, dc=lorentz, dc=com with scope oneLevel # filter: ((objectClass=inetOrgPerson)([EMAIL PROTECTED])) # requesting: ALL # # Jack McKinney, users, lorentz.com dn: cn=Jack McKinney,ou=users,dc=lorentz,dc

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-04 Thread Jack McKinney
, but Dovecot is not receiving... On Fri, 2008-04-04 at 09:54 +0300, Timo Sirainen wrote: On Apr 4, 2008, at 12:50 AM, Jack McKinney wrote: Hmmm... what versions of OpenLDAP and Dovecot are you using? A lot of people have them working with different LDAP versions. I've Debian unstable's

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-04 Thread Jack McKinney
Me, too. I am sure that it is my configuration, but I cannot see what... On Fri, 2008-04-04 at 17:20 +0300, Timo Sirainen wrote: -- Jack McKinney GPG 1024D/99C6A174 [EMAIL PROTECTED] YM:lfaatsnat2006 AIM:jackmclorentz There is no parameter that makes it impossible for you to perform

[Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Jack McKinney
address/login name. I am trying to use auth_bind: when I login with [EMAIL PROTECTED], dovecot should search for [EMAIL PROTECTED] in the onelevel below ou=users,dc=lorentz,dc=com and find me as cn=Jack McKinney,ou=users,dc=lorentz,dc=com. I have created an entry in LDAP (varmail

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Jack McKinney
Red Hat Linux release 7.2 (Enigma) OpenLDAP 2.3.38 Dovecot 1.0.12 On Thu, 2008-04-03 at 23:43 +0300, Timo Sirainen wrote: On Thu, 2008-04-03 at 09:46 -0500, Jack McKinney wrote: I have _almost_ got Dovecot working! One little snag... What version? -- Jack McKinney GPG 1024D/99C6A174

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Jack McKinney
-04-03 at 23:59 +0300, Timo Sirainen wrote: On Thu, 2008-04-03 at 09:46 -0500, Jack McKinney wrote: ldap([EMAIL PROTECTED],y.y.y.y): bind search: base=ou=users, dc=lorentz,dc=com filter=((objectClass=inetOrgPerson)([EMAIL PROTECTED])) Here should be a line saying result: returned fields

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Jack McKinney
. For example on my system: auth(default): ldap(foo,127.0.0.1): bind search: base=... auth(default): ldap(foo,127.0.0.1): result: uid(user)=foo If Dovecot receives a reply to the bind search, it logs the result line, which your logs show is missing. On Apr 4, 2008, at 12:06 AM, Jack McKinney

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Jack McKinney
search, it logs the result line, which your logs show is missing. On Apr 4, 2008, at 12:06 AM, Jack McKinney wrote: I am not sure that I understand you, here. Are you saying that I am missing something from my configuration after the filter= line like a pass_attrs listing fields