Read the ldapsearch manpage. Don't use the "-I" option, you don't need it.
Thank you for the response.
I made the modifications but it doesn't change anything
for info , I use BekerleyDB 4.4, MIT-Kerberos 1.4.3,cyrus SASL 2.1.21 and openldap 2.3.20
Quanah Gibson-Mount wrote:
--On Monday, May 15, 2006 11:53 AM +0200 Benoit Callebaut <bc@cetic.be> wrote:
The behavior of ldapsearch is not what I expected: 1 It asked be my "authorization name". Why ? I am already authenticated by Kerberos (I have a ticket) 2 It doesn't map my name to a correct dn.
Here is the slapd.conf: --- SNIP --- # sasl-realm TEST.CETIC.BE sasl-host pt-jv.cetic.be
-- -- Howard Chu Chief Architect, Symas Corp. http://www.symas.com Director, Highland Sun http://highlandsun.com/hyc OpenLDAP Core Team http://www.openldap.org/project/