Kerberos authentication

2010-10-10 Thread Igor Galić
nd of feedback from people who similarily are stuck between a rock and a hard place, and even more so from those who have a sensible solution :) So long, i -- Igor Galić Tel: +43 (0) 664 886 22 883 Mail: i.ga...@brainsware.org URL: http://brainsware.org/ -

Re: JNDI: LDAPv3 with StartTLS

2010-08-19 Thread Igor Galić
- "Rainer Jung" wrote: > On 19.08.2010 18:55, Igor Galić wrote: > >> Use it as you like. As Rainer has hinted, the apache wiki would be > a > >> good place for documentation :) > > > > Excellent. Thank you very much, will do that. > >

Re: JNDI: LDAPv3 with StartTLS

2010-08-19 Thread Igor Galić
> Use it as you like. As Rainer has hinted, the apache wiki would be a > good place for documentation :) Excellent. Thank you very much, will do that. i - To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org For additiona

Re: JNDI: LDAPv3 with StartTLS

2010-08-18 Thread Igor Galić
y much like to document this. I am thus asking you for permission to use, host, reference or whatever is your liking, the code you have provided. > Bye > Felix So long, i -- Igor Galić Tel: +43 (0) 664 886 22 883 Mail: i.ga...@brainsware.org URL: http://brainsware.org/

Re: JNDI: LDAPv3 with StartTLS

2010-08-17 Thread Igor Galić
188.40.115.116 -> 188.40.115.121 TCP 42460 > ldap [ACK] Seq=906 Ack=1984 Win=11648 Len=0 TSV=1189193657 TSER=97746352 > > I haven't managed to get the TlsTest.java to compile. > Why? Because I fail at Java. Anyway, sorry for the late reply but hell was breaking out

Re: JNDI: LDAPv3 with StartTLS

2010-08-17 Thread Igor Galić
usted certs. You can do this by > specifying the java env variable > -Djavax.net.ssl.trustStore=PATH_TO_MY/truststore.jks. If you want to > learn > more about the tls steps, you can specify -Djavax.net.debug=ssl. I haven't managed to get the TlsTest.java to compile. >

Re: JNDI: LDAPv3 with StartTLS

2010-08-16 Thread Igor Galić
- "Felix Schumacher" wrote: > On Sun, 15 Aug 2010 21:33:09 +0000 (UTC), Igor Galić > wrote: > > - "Felix Schumacher" wrote: > > > >> Ok, my patch will not work, since new InitialDirContext(env) will > not > >> create a L

Re: JNDI: LDAPv3 with StartTLS

2010-08-15 Thread Igor Galić
0 188.40.115.121:389 0.0.0.0:* LISTEN 29310/slapd r...@iris ~ # Nope. Zimbra is really great. But when it comes to certain configuration decisions, it's a bit stubborn. Anyway. I'll try to look into this tomorrow again with a fresh mind. > >

Re: JNDI: LDAPv3 with StartTLS

2010-08-15 Thread Igor Galić
I forgot to actually attach the pcap now, didn't i? So long, i -- Igor Galić Tel: +43 (0) 664 886 22 883 Mail: i.ga...@brainsware.org URL: http://brainsware.org/ tomcat.jndi.ldap.cap Description: application/cap ---

Re: JNDI: LDAPv3 with StartTLS

2010-08-15 Thread Igor Galić
o easy ;) Also, from what I gather, it doesn't actually work in the Zimbra ways to have both, StartTLS and SSL at the same time. I'd have to investigate > Bye > Felix i -- Igor Galić Tel: +43 (0) 664 886 22 883 Mail: i.ga...@brainsware.org URL: http://brainsware.org/

Re: JNDI: LDAPv3 with StartTLS

2010-08-15 Thread Igor Galić
You'll have to > add an > MBeans descriptor as well. How to do all that is documented: > > (Realm) > http://tomcat.apache.org/tomcat-6.0-doc/realm-howto.html#Overview > (MBeans) > http://tomcat.apache.org/tomcat-6.0-doc/mbeans-descriptor-howto.html > > That way you'

Re: JNDI: LDAPv3 with StartTLS

2010-08-15 Thread Igor Galić
5.116 -> 188.40.115.121 TCP 40203 > ldap [FIN, ACK] Seq=54 Ack=39 Win=5888 Len=0 TSV=1143986317 TSER=52538738 0.004000 188.40.115.121 -> 188.40.115.116 TCP ldap > 40203 [FIN, ACK] Seq=39 Ack=55 Win=5888 Len=0 TSV=52538738 TSER=1143986317 0.004000 188.40.115.116 -> 188.40.115.121 T

Re: JNDI: LDAPv3 with StartTLS

2010-08-15 Thread Igor Galić
e a file called setenv.sh in $CATALINA_HOME/bin and set > it). Thanks, that fixes the Sun SDK issue. > Other than that, I'm just guessing at this point. > > . . . . just my two cents. > > /mde/ > > > - Original Message > From: Igor Galić > To: To

Re: JNDI: LDAPv3 with StartTLS

2010-08-15 Thread Igor Galić
Is there a way to do this from within JNDI Realm? My guesswork was at the end when protocol="TLS" or "StartTLS" or authentication="simple" SASL, etc.. didn't do it. > Bye > Felix > > > > > I'm out ideas now. and welcome any advise you

Re: JNDI: LDAPv3 with StartTLS

2010-08-15 Thread Igor Galić
ebian's work or Sun/Oracle's.. So long, -- Igor Galić Tel: +43 (0) 664 886 22 883 Mail: i.ga...@brainsware.org URL: http://brainsware.org/ - To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org For additional

Re: JNDI: LDAPv3 with StartTLS

2010-08-15 Thread Igor Galić
in how far this works out Bye, i > Regards, > > Rainer > > - > To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org > For additional commands, e-mail: users-h...@tomcat.apache.org -- Igor Galić Tel:

Re: JNDI: LDAPv3 with StartTLS

2010-08-15 Thread Igor Galić
tandardServer.java:710) > > at org.apache.catalina.startup.Catalina.start(Catalina.java:581) > > at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method) > > at > sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:57) > > at > sun.reflect.Deleg

JNDI: LDAPv3 with StartTLS

2010-08-15 Thread Igor Galić
na.startup.Bootstrap.main(Bootstrap.java:414) I've traced the operation with wireshark only to find it's not even trying to do any kind of SASL negotiation. That seems weird, since: http://www.java2s.com/Open-Source/Java-Document/6.0-JDK-Modules-com.sun/jndi/com/sun/jndi/ldap/LdapClient.j