[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: AIX authentication on OpenLDAP



Oh no,

thanks for answer Kyle. It seems as I can stop to find any solution, yes?!
Do you know when IBM wants to release the auth module. Or where can I get it to
test it myself?

So I have to find new solutions: Can I use the IBM SecureWay Directory and
authenticate my Linux, Oracle and AIX-Server against it? Does anybody has
experiences with it? Or is IBM in this case incompatible too?!

Thanks a lot,
  Sebastian

> "Chapman, Kyle" schrieb:
> 
> i know well about this.. ibm will be releasing a auth module that will work
> with openldap, we have been testing it with them...  i can say it isnt very
> good yet and doesnt support ssl/tls yet...
> 
> ibm implemented ldap like ms, with there own classes and attributes so as to
> make you use their directory for everything...
> 
> -----Original Message-----
> From: Sebastian von Swiontek [mailto:svs@talicom.de]
> Sent: Monday, October 08, 2001 7:49 AM
> To: openldap-software@OpenLDAP.org
> Subject: AIX authentication on OpenLDAP
> 
> Hi list,
> 
> I hope you all can help me, because I bother me since one week about this
> problem.
> 
> I've got a very well running OpenLDAP 2.0.14 on Linux. With the use of
> pam_ldap
> I can authenticate against the LDAP-Server. But now I'd like to integrate my
> AIX
> 4.3.3 too. But this is very heavy.
> In my opinion there doesn't exist any pam mechanism for AIX. So I used the
> "IBM
> SecureWay Directory Client" and with it the "mksecldap" script. So if I
> configure my aix system with it and run a "lsuser ALL", I see in my message of
> 
> the OpenLDAP-Server at the filter field the message "badfilter". The good part
> 
> of it is, that the aix opens a connection to the ldap server and tries to get
> informations. But no users are listed  :-(
> 
> On the other hand: Why searchs the aix in "ou=aixuser,cn=aixsecdb,..."? But
> it's
> not the main problem. I've created this subtree. But it doesn't matter.
> 
> So, where is the problem? Does anybody know this problem and solved it or does
> 
> anybody can help me in any kind of way? Please or I will get crazy :-)
> 
> Thanks in advance,
> Sebastian
> 
> --
> ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
> Mit freundlichen Gruessen / Kind regards
>                                                    .^.
> Sebastian von Swiontek                             /V\
>                                                  /(   )\
> e-mail  : svs@talicom.de                          ^^-^^
> 
> talicom GmbH                    Tel.   : +49 511 123599-16
> Calenberger Esplanade 3         Fax.   : +49 511 123599-11
> D-30169 Hannover                Mobile : +49 172 5185548
> ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

-- 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Mit freundlichen Gruessen / Kind regards

Sebastian von Swiontek

e-mail  : svs@talicom.de

talicom GmbH                    Tel.   : +49 511 123599-16
Calenberger Esplanade 3         Fax.   : +49 511 123599-11
D-30169 Hannover                Mobile : +49 172 5185548
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~