Solaris 8 ldapclient using tls:simple authentication to Solaris9 Directory Server

From: Anderson, Peter (panderson_at_doitt.nyc.gov)
Date: 06/29/03

  • Next message: Broun, Bevan: "SUMMARY: LVD/HVD/SE prob - connecting a compaq MSL5026 to a E420R"
    Date: Sun, 29 Jun 2003 11:06:06 -0400
    To: <sunmanagers@sunmanagers.org>
    
    

            I am running into a problem configuring a Solaris 8 server to be an ldapclient of a Solaris 9 server running iPlanet DS 5.1 with the connection running over TLS. I have gotten the client to work using simple authentication but not TLS.
            
            I am pretty confident that the keys / certificates are installed properly on the server and I am able to successfully run an ldapsearch -Z using the client's certificate / key. The patch 108993-18 is installed on the client - are there other patches that I should check for (aside from the ones that are listed in that patch description) that are necessary to allow Solaris 8 clients to use tls:simple as the authentication method.
            
            running any ldaplist commands results in:
            ldaplist: Object not found (Session error no available conn.
            )
            
            ldapclient -l output:
            NS_LDAP_FILE_VERSION= 2.0
            NS_LDAP_BINDDN= cn=proxyagent,ou=profile,o=do
            NS_LDAP_BINDPASSWD= {NS1}ecc423aad085ce
            NS_LDAP_SERVERS= 10.238.0.2
            NS_LDAP_SEARCH_BASEDN= o=do
            NS_LDAP_AUTH= tls:simple
            NS_LDAP_SEARCH_REF= FALSE
            NS_LDAP_SEARCH_SCOPE= one
            NS_LDAP_SEARCH_TIME= 30
            NS_LDAP_SERVER_PREF= 10.238.0.2
            NS_LDAP_PROFILE= tls_profile
            NS_LDAP_CREDENTIAL_LEVEL= proxy
            NS_LDAP_BIND_TIME= 10
            
            
            Any help with this is greatly appreciated!
            Thanks,
            Peter Anderson
    _______________________________________________
    sunmanagers mailing list
    sunmanagers@sunmanagers.org
    http://www.sunmanagers.org/mailman/listinfo/sunmanagers


  • Next message: Broun, Bevan: "SUMMARY: LVD/HVD/SE prob - connecting a compaq MSL5026 to a E420R"