Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-04 Thread Timo Sirainen
On Apr 4, 2008, at 12:50 AM, Jack McKinney wrote: Hmmm... what versions of OpenLDAP and Dovecot are you using? A lot of people have them working with different LDAP versions. I've Debian unstable's OpenLDAP 2.1.30.dfsg-13.5. I note that you got a result of uid(user)=foo, from

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-04 Thread Jack McKinney
Is wireshark something like tcpdump? My LDAP server and my Dovecot server are on the same machine, and the LDAP server claims to send the response. Since the same query from a CLI tool (ldapsearch) creates the same LDAP log entries, I suspect that OpenLDAP is indeed sending, but

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-04 Thread Timo Sirainen
On Fri, 2008-04-04 at 08:48 -0500, Jack McKinney wrote: Is wireshark something like tcpdump? Yes, except it parses the replies so it can show the LDAP request/reply values. My LDAP server and my Dovecot server are on the same machine, and the LDAP server claims to send the

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-04 Thread Jack McKinney
Me, too. I am sure that it is my configuration, but I cannot see what... On Fri, 2008-04-04 at 17:20 +0300, Timo Sirainen wrote: -- Jack McKinney GPG 1024D/99C6A174 [EMAIL PROTECTED] YM:lfaatsnat2006 AIM:jackmclorentz There is no parameter that makes it impossible for you to perform

[Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Jack McKinney
I have _almost_ got Dovecot working! One little snag... My users login using their email address as username. Each domain has their own LDAP subtree. Each user has an entry in the ou=users subtree of the domain subtree, and has a mail: field (inetOrgPerson) listing their email

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Jack McKinney
Red Hat Linux release 7.2 (Enigma) OpenLDAP 2.3.38 Dovecot 1.0.12 On Thu, 2008-04-03 at 23:43 +0300, Timo Sirainen wrote: On Thu, 2008-04-03 at 09:46 -0500, Jack McKinney wrote: I have _almost_ got Dovecot working! One little snag... What version? -- Jack McKinney GPG 1024D/99C6A174

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Timo Sirainen
On Thu, 2008-04-03 at 09:46 -0500, Jack McKinney wrote: ldap([EMAIL PROTECTED],y.y.y.y): bind search: base=ou=users, dc=lorentz,dc=com filter=((objectClass=inetOrgPerson)([EMAIL PROTECTED])) Here should be a line saying result: returned fields. Since there isn't, Dovecot never appears to

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Timo Sirainen
On Thu, 2008-04-03 at 09:46 -0500, Jack McKinney wrote: I have _almost_ got Dovecot working! One little snag... What version? signature.asc Description: This is a digitally signed message part

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Jack McKinney
I am not sure that I understand you, here. Are you saying that I am missing something from my configuration after the filter= line like a pass_attrs listing fields to return? I do not have one, as there are no fields that I need returned. The only thing that dovecot needs is the DN of

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Jack McKinney
I added the i_info line below and copied over the new dovecot-auth. It is hanging at the same place; the LDAP: Received reply line is not in the log. Again, exactly 180 seconds after the last log entry, the connection drops. However, that line _does_ appear in the log back at startup...

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Timo Sirainen
No, I mean this appears to be a bug somewhere since a LDAP request is sent, but it's never received by Dovecot. So either Dovecot does something wrong, OpenLDAP library does something wrong or your network blocks the reply for some reason. For example on my system: auth(default):

Re: [Dovecot] LDAP auth_bind hangs and times out

2008-04-03 Thread Jack McKinney
Hmmm... what versions of OpenLDAP and Dovecot are you using? I note that you got a result of uid(user)=foo, from which I guess that you had pass_attrs set to user=uid or some such. I tried adding a pass_attrs of user=mail, in case the problem is that without requested fields, the