linux-admin.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
From: Jan Trautmann <phoenix2@web.de>
To: Martin Klier <martin.klier@atu.de>, linux-admin@vger.kernel.org
Subject: Re: Apache, LDAP and SSL
Date: Tue, 11 Apr 2006 21:03:13 +0200	[thread overview]
Message-ID: <200604112103.13195.phoenix2@web.de> (raw)
In-Reply-To: <200604040933.34418.martin.klier@atu.de>

Grüsse aus der Operpfalz :) 

http://www.rrze.uni-erlangen.de/dienste/arbeiten-rechnen/linux/howtos/ldap/ssl.shtml 
There i found something about SSL and LDAP in german. 

I´ve had tried a few time ago something simular but after a few hours i 
decieded that it costs too much time to integrate this with M$ Active 
Directory. I must say that i only have done this for playing and testing. 
But i have often read in forums that there is a problem with M$ AD and LDAP in 
the same way. I remember a possible solution that the M$ AD must be the PDC 
an the Linux must be BPC but in this special case i can´t help much.

Maybe reply some more information like syslogs for the problem in SLES9.

Maybe you can get help in www.linuxforen.de (if you not already searched or 
asked there). In this forum i found this link 
http://www.oo-services.com/de/articles/sso.aspx .
This is a Howto for making SSL and LDAP running with Active Directory 2003.

I hope this could help you.
I think that the problem with not working LDAP in SLES9 is a configuration or 
version problem maybe an new version of LDAP/Samba could help. I realy dont 
know which version is in SLES9 but in SuSe most times there are old and crap 
versions,  this would be nothing new for me ;) 

Best regards

Jan Martin Trautmann 


Am Dienstag, 4. April 2006 09:33 schrieben Sie:
> Hi Admins,
>
> has anyone ever made a configuration like this:
> Apache 2.x.x, SSL and, most important, SSL-encrypted(!) LDAP auth against a
> Microcrap ActiveDirectory 2003?
>
> Topday, Apache 2.0.x and 2.2.0 works, LDAP-agaist-AD works, SSL works, but
> not LDAPS.
>
> I happily tried on SuSE10.0 (pre-built Apache, no LDAP SSL support built
> in, so it's crap) and SLES9 (own-built Apache, with ldap modules with
> ssl/SASL), but there are always strange errors, most sounding like a
> non-available LDAP server. But, indeed, the 3269 port is open there. Since
> I have no clue about the windows box, I can't say any more about this side.
>
> Is there any ressource in the world I can look on?
-
To unsubscribe from this list: send the line "unsubscribe linux-admin" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html

  reply	other threads:[~2006-04-11 19:03 UTC|newest]

Thread overview: 3+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2006-04-04  7:33 Apache, LDAP and SSL Martin Klier
2006-04-11 19:03 ` Jan Trautmann [this message]
2006-04-12  6:32   ` Martin Klier

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=200604112103.13195.phoenix2@web.de \
    --to=phoenix2@web.de \
    --cc=linux-admin@vger.kernel.org \
    --cc=martin.klier@atu.de \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).