Doug,

Before I tried restarting sipx services I did a tcpdump and then
wireshark told me that there was a TLS negotiation error, likely
because I haven't imported the cert for our AD yet, (and now that I
know that sipx doesn't look at openldap configs ).

The steps that led me to not be able to login with superadmin were:

1. Started to set up ldap to look at a ldap server that is not AD and
connected anonnymously.
2. Did not map any field attributes
3. Clicked cancel
4. Tried again to use AD with tcpdump running
5. It failed no error on web UI
5. Changed ldap.conf and restarted sipx
6. Now once I log in I get:

https://129.82.174.175:8443/sipxconfig/j_acegi_security_check
HTTP ERROR: 500

Manager user name  cannot be empty or null.
RequestURI=/sipxconfig/j_acegi_security_check

Powered by Jetty://


For your questions:

> What's the full log entry

There is not anything relevant other than what I sent you.

>What is your build number?

4.3.0-019022 2010-09-10T15:08:29 build23

>Are you still just configuring the connection params?
Yes

>What error shows on the web ui ?
None returns to the configuring connection no error



On Tue, Sep 14, 2010 at 11:49 AM, Douglas Hubler <dhub...@ezuce.com> wrote:
> Getting logged out of ui is not supposed to happen. Mircea, what do u think 
> is happening here?
> Sipxconfig doesn't read openldap config files
> Do you have answers to my orig questions?
>
> On Sep 14, 2010 1:22 PM, "Kyle Haefner" 
> <kyle.haef...@colostate.edu<mailto:kyle.haef...@colostate.edu>> wrote:
>
> Doug,
>
> I was able to connect to an openLDAP server anonymously, but Active
> directory requires TLS.  I restarted sipxecs thinking it would need to
> re-read /etc/openldap/ldap.conf
> and now I can't log-in as superadmin.
>
> How do I bring it back to default local authentication?
>
> Kyle
>
> On Tue, Sep 14, 2010 at 10:15 AM, Douglas Hubler 
> <dhub...@ezuce.com<mailto:dhub...@ezuce.com>> wrote:
>> thanks for taking ini...
>
>>> When I try and set up our Active directory for authentication, I get
>>> the following in the log:...
>
>> What's the full log entry
>>
>
>> sipxconfig.log:"2010-09-14T15:36:44.200000Z":550:JAVA:WARNING:sipxdev.otc.colostate.edu:P1-16:0000...
>
>> probably benign, but should be fixed
>>
>>>
>
>>> I'm running :
>>> sipXconfig (4.3.0-019022 2010-09-10T15:08:29 build23)
>>>
>>> Any ideas, further l...
>
>> Are you still just configuring the connection params?
>> What is your build number?
>> What error sh...
>
>>> P.S.
>>>
>>> I set /etc/openldap/ldap.conf to:
>>> TLS_REQCERT     never
>>
>
>> Ldap over TLS should now work but if you wanted to try w/o TLS first,
>> that might be a good idea....
>
>> _______________________________________________
>> sipx-users mailing list
>> sipx-us...@list.sipfou...
>
_______________________________________________
sipx-users mailing list
sipx-users@list.sipfoundry.org
List Archive: http://list.sipfoundry.org/archive/sipx-users/

Reply via email to