RE: OpenLDAP Proxy for Active Directory Authentication (slapd.d)

2014-11-13 Thread Šmucr Jan
: OpenLDAP Proxy for Active Directory Authentication (slapd.d) Dan White wrote: On 11/11/14 09:50 +, Šmucr Jan wrote: User wants to authenticate -- Client (Gerrit 2.9.1) connects to the local OpenLDAP server -- The OpenLDAP server searches its local database for a relevant entry

OpenLDAP Proxy for Active Directory Authentication (slapd.d)

2014-11-11 Thread Šmucr Jan
Hello. I need to integrate local OpenLDAP and remote Active directory DS wereas the result is expected to work like this: User wants to authenticate -- Client (Gerrit 2.9.1) connects to the local OpenLDAP server -- The OpenLDAP server searches its local database for a relevant entry *

Re: OpenLDAP Proxy for Active Directory Authentication (slapd.d)

2014-11-11 Thread Howard Chu
Dan White wrote: On 11/11/14 09:50 +, Šmucr Jan wrote: User wants to authenticate -- Client (Gerrit 2.9.1) connects to the local OpenLDAP server -- The OpenLDAP server searches its local database for a relevant entry * Entry found -- Inform the client * Entry not found --

Openldap proxy to Active Directory howto?

2013-08-28 Thread Mike W
I am attempting to configure an openldap to proxy with AD that needs to rebind? as a user I believe. I've been scanning yahoo/google trying to find some documentation of someone detailing that sort of procedure using the olc configs but no luck. Anyone know of such a thing that gives a bit

OpenLDAP Proxy for Active Directory Authentication

2013-06-12 Thread Jason Brandt
We run in a mixed environment, with both Active Directory and LDAP directory servers. Some users exist in both LDAP and AD, while some are just in AD. As such, we always have obstacles with password sync between directories. Is it possible, to set up an OpenLDAP proxy (if that's the correct

Re: OpenLDAP Proxy for Active Directory Authentication

2013-06-12 Thread Clément OUDOT
2013/6/12 Jason Brandt jbra...@fsmail.bradley.edu: We run in a mixed environment, with both Active Directory and LDAP directory servers. Some users exist in both LDAP and AD, while some are just in AD. As such, we always have obstacles with password sync between directories. Is it possible,

Re: OpenLDAP Proxy for Active Directory Authentication

2013-06-12 Thread Jason Brandt
That appears to be exactly what I was looking for. So, if I used something like: {SASL}user@domain in the userPassword attribute, it would use external auth, whereas if we populated the attribute with the SSHA password, it would still authenticate via LDAP, correct? Appreciate the help. On

Re: OpenLDAP Proxy for Active Directory Authentication

2013-06-12 Thread Clément OUDOT
2013/6/12 Jason Brandt jbra...@fsmail.bradley.edu: That appears to be exactly what I was looking for. So, if I used something like: {SASL}user@domain in the userPassword attribute, it would use external auth, whereas if we populated the attribute with the SSHA password, it would still

OpenLDAP proxy to Active Directory

2012-05-28 Thread Jonathan van der Wat
Greetings, I'm new to OpenLDAP and am trying to implement the following: User authentication (PAM + SSSD) on CentOS Linux servers via OpenLDAP proxy to Active Directory. I am able to perform the following search from the OpenLDAP proxy without any apparent issues: * [root@openldap

Re: OpenLDAP proxy to Active Directory

2012-05-28 Thread Michael Ströder
Jonathan van der Wat wrote: I'm new to OpenLDAP and am trying to implement the following: User authentication (PAM + SSSD) on CentOS Linux servers via OpenLDAP proxy to Active Directory. I am able to perform the following search from the OpenLDAP proxy without any apparent issues: * [root

Re: OpenLDAP proxy to Active Directory

2012-05-28 Thread Jonathan van der Wat
, � wrote: Jonathan van der Wat wrote: I'm new to OpenLDAP and am trying to implement the following: User authentication (PAM + SSSD) on CentOS Linux servers via OpenLDAP proxy to Active Directory. I am able to perform the following search from the OpenLDAP proxy without any apparent issues: * [root

Re: OpenLDAP proxy to Active Directory

2012-05-28 Thread Michael Ströder
Jonathan van der Wat wrote: line 150: warning, destination attributeType 'sAMAccountName' is not defined in schema May 28 06:35:30 localhost slapd-ldap[2804]: PROXIED attributeDescription SAMACCOUNTNAME inserted. May 28 06:35:30 localhost slapd-ldap[2804]: /etc/openldap/slapd.conf: line 159:

OpenLDAP Proxy to Active Directory

2011-09-28 Thread Allen, Dedrick
I am currently attempting to configure our OpenLDAP 2.4.26 (on SUSE Enterprise 10) server to act as an proxy to Active Directory as well as using a local database. The local database works fine but I cannot for the life of me get the ldap backend to authenticate/bind correctly to the AD ldap

Re: OpenLDAP Proxy to Active Directory

2011-09-28 Thread turbo
On Tue, 27 Sep 2011 09:00:25 -0400, Allen, Dedrick wrote: idassert-authzFrom dn.exact:cn=cn=myldapuser,dc=Company Service cn=cn= ... ?

RE: OpenLDAP Proxy to Active Directory

2011-09-28 Thread Allen, Dedrick
-Original Message- From: openldap-technical-boun...@openldap.org [mailto:openldap-technical-boun...@openldap.org] On Behalf Of tu...@bayour.com Sent: Wednesday, September 28, 2011 9:50 AM To: openldap-technical@openldap.org Subject: Re: OpenLDAP Proxy to Active Directory On Tue, 27 Sep

Re: OpenLDAP Proxy to Active Directory

2011-09-28 Thread Turbo Fredriksson
On Sep 28, 2011, at 5:13 PM, Allen, Dedrick wrote: it sends an empty bind dn no matter how I specify it How about testing an empty authzFrom, just for test/debug? idassert-authzFrom * That should match anything you're supplying. If that works, you can go back and figure out why it