[Date Prev][Date Next]
[Chronological]
[Thread]
[Top]
Re: SASL/GSSAPI authentication problems - Invalid credentials
- To: openldap-software@OpenLDAP.org
- Subject: Re: SASL/GSSAPI authentication problems - Invalid credentials
- From: Dieter Kluenter <dieter@dkluenter.de>
- Date: Wed, 30 Apr 2003 13:12:14 +0200
- In-reply-to: <20030429192300.GC23811@tesuji.reed.edu> (Ben Poliakoff's message of "Tue, 29 Apr 2003 12:23:00 -0700")
- References: <20030428233337.GA19094@tesuji.reed.edu> <m3ptn5v7hj.fsf@marin.l4b.de> <20030429192300.GC23811@tesuji.reed.edu>
- User-agent: Gnus/5.090005 (Oort Gnus v0.05) XEmacs/21.4 (Portable Code, i686-pc-linux)
Hi,
Ben Poliakoff <benp@reed.edu> writes:
> * Dieter Kluenter <dieter@dkluenter.de> [030429 05:24]:
>>
>> Test your setup with the cyrus-sasl test-suite. Change to sample
>> directory within cyrus-sasl source file. As root start ./server in a
>> xterm and as user start "./client -s ldap -m GSSAPI hostname" in a
>> second xterm.
>>
>
> The test suite stuff seems to be working properly as well:
>
> .....snip....
> ---------------------------------------------------------------------------
> send: {53}
> `3[6][9]*[86]H[86][F7][12][1][2][2][2][1][0][0][FF][FF][FF][FF][F9][AD][DA][91][E4][86]p[F1][96][D9][E5][C6][A7][D9][9F]&g>:y![A3][DB][0][1][0][0][0][4][4][4][4]
> recv: {61}
> `;[6][9]*[86]H[86][F7][12][1][2][2][2][1][0][0][FF][FF][FF][FF][95][D4][C1][D6][F1][D7][E6]*[C][19][F9]UG[82]?Q[94][AB][E9]]i[A][AF][EB][1][0][0][0]benp[8][8][8][8][8][8][8][8]
> successful authentication 'benp'
> closing connection
The test suite is probabely using a different mechanism, a successfull
GSSAPI authentication should show the kerberos realm as well, that is
benp@REED.EDU
-Dieter
--
Dieter Kluenter | Systemberatung
Tel:040.64861967 | Fax: 040.64891521
mailto: dkluenter@schevolution.com
http://www.schevolution.com/tour