sasl openldap SuSE 9.2 sudden authentification failure

Stephan Buys list at codefusion.co.za
Tue May 24 11:19:07 CEST 2005


Your LDAP server has hung.

Do the following:

1) /kolab/etc/rc openldap stop
2) Make sure no slapd processes are hanging around
3) /kolab/bin/db_recover -h /kolab/etc/openldap/openldap-data
4) /kolab/etc/rc openldap start

Should do it...

On Tuesday 24 May 2005 10:17, Henning Burow wrote:
> Hi,
> 
> on our Kolab beta 3 running on SuSE 9.2 we have the same problem. Now no one 
> can connect, because authentification fails.
> 
> Our /kolab/var/sasl/log:
> May 18 00:00:14 kivinan <info> saslauthd[14487]: detach_tty      : master pid 
> is: 14487
> May 18 00:00:14 kivinan <info> saslauthd[14487]: ipc_init        : listening 
> on socket: /kolab/var/sasl/saslauthd/mux
> May 18 00:10:02 kivinan <debug> saslauthd[14503]: Domain/Realm not available.
> May 18 00:10:02 kivinan <debug> saslauthd[14503]: Domain/Realm not available.
> May 18 00:20:02 kivinan <debug> saslauthd[14487]: Domain/Realm not available.
> May 18 00:20:02 kivinan <debug> saslauthd[14487]: Domain/Realm not available.
> May 18 00:30:02 kivinan <debug> saslauthd[14503]: Domain/Realm not available.
> May 18 00:30:02 kivinan <debug> saslauthd[14503]: Domain/Realm not available.
> May 18 00:30:02 kivinan <error> saslauthd[14503]: user ldap_search_st() 
> failed: Can't contact LDAP server
> May 18 00:30:02 kivinan <info> saslauthd[14503]: Retrying authentication
> May 18 00:30:02 kivinan <debug> saslauthd[14503]: Domain/Realm not available.
> May 18 00:30:02 kivinan <debug> saslauthd[14503]: Domain/Realm not available.
> May 18 00:40:02 kivinan <debug> saslauthd[14487]: Domain/Realm not available.
> May 18 00:40:02 kivinan <debug> saslauthd[14487]: Domain/Realm not available.
> May 18 00:40:02 kivinan <error> saslauthd[14487]: user ldap_search_st() 
> failed: Can't contact LDAP server
> May 18 00:40:02 kivinan <info> saslauthd[14487]: Retrying authentication
> May 18 00:40:02 kivinan <debug> saslauthd[14487]: Domain/Realm not available.
> May 18 00:40:02 kivinan <debug> saslauthd[14487]: Domain/Realm not available.
> 
> Our /kolab/var/apache/error.log:
> [Tue May 24 09:24:17 2005] [notice] suEXEC mechanism enabled 
> (wrapper: /kolab/sbin/suexec)
> [Tue May 24 09:24:17 2005] [notice] Accept mutex: sysvsem (Default: sysvsem)
> [Tue May 24 09:24:35 2005] [error] PHP Warning:  ldap_bind():  Unable to bind 
> to server: Can't contact LDAP server 
> in /kolab/var/kolab/php/admin/include/ldap.class.php on line 98
> [Tue May 24 09:24:46 2005] [error] [client 192.168.100.222] Directory index 
> forbidden by rule: /kolab/var/kolab/www/
> [Tue May 24 09:24:46 2005] [error] PHP Warning:  ldap_bind():  Unable to bind 
> to server: Can't contact LDAP server 
> in /kolab/var/kolab/php/admin/include/ldap.class.php on line 98
> [Tue May 24 09:27:39 2005] [error] PHP Warning:  ldap_bind():  Unable to bind 
> to server: Can't contact LDAP server 
> in /kolab/var/kolab/php/admin/include/ldap.class.php on line 98
> [Tue May 24 09:35:31 2005] [error] PHP Warning:  ldap_bind():  Unable to bind 
> to server: Can't contact LDAP server 
> in /kolab/var/kolab/php/admin/include/ldap.class.php on line 98
> [Tue May 24 09:38:51 2005] [error] PHP Warning:  ldap_bind():  Unable to bind 
> to server: Can't contact LDAP server 
> in /kolab/var/kolab/php/admin/include/ldap.class.php on line 98
> 
> Our /kolab/var/openldap/openldap.log
> May 09 15:10:25 kivinan <debug> slapd[3833]: bdb_initialize: Sleepycat 
> Software: Berkeley DB 4.2.52: (December  3, 2003)
> May 09 15:10:25 kivinan <debug> slapd[3833]: bdb_initialize: Sleepycat 
> Software: Berkeley DB 4.2.52: (December  3, 2003)
> May 24 08:24:44 kivinan <debug> slapd[3828]: @(#) $OpenLDAP: slapd 2.2.17 (May  
> 4 2005 18:16:15) $
> 	kolab at kivinan:/kolab/RPM/TMP/openldap-2.2.17/servers/slapd
> May 24 08:24:44 kivinan <debug> slapd[3828]: bdb_initialize: Sleepycat 
> Software: Berkeley DB 4.2.52: (December  3, 2003)
> May 24 08:24:44 kivinan <debug> slapd[3828]: bdb_initialize: Sleepycat 
> Software: Berkeley DB 4.2.52: (December  3, 2003)
> May 24 08:31:20 kivinan <debug> slapd[8742]: @(#) $OpenLDAP: slapd 2.2.17 (May  
> 4 2005 18:16:15) $
> 	kolab at kivinan:/kolab/RPM/TMP/openldap-2.2.17/servers/slapd
> May 24 08:31:20 kivinan <debug> slapd[8742]: bdb_initialize: Sleepycat 
> Software: Berkeley DB 4.2.52: (December  3, 2003)
> May 24 08:31:20 kivinan <debug> slapd[8742]: bdb_initialize: Sleepycat 
> Software: Berkeley DB 4.2.52: (December  3, 2003)
> May 24 08:35:40 kivinan <debug> slapd[3832]: @(#) $OpenLDAP: slapd 2.2.17 (May  
> 4 2005 18:16:15) $
> 	kolab at kivinan:/kolab/RPM/TMP/openldap-2.2.17/servers/slapd
> May 24 08:35:40 kivinan <debug> slapd[3832]: bdb_initialize: Sleepycat 
> Software: Berkeley DB 4.2.52: (December  3, 2003)
> May 24 08:35:40 kivinan <debug> slapd[3832]: bdb_initialize: Sleepycat 
> Software: Berkeley DB 4.2.52: (December  3, 2003)
> May 24 08:52:12 kivinan <debug> slapd[10359]: @(#) $OpenLDAP: slapd 2.2.17 
> (May  4 2005 18:16:15) $
> 	kolab at kivinan:/kolab/RPM/TMP/openldap-2.2.17/servers/slapd
> May 24 08:52:12 kivinan <debug> slapd[10359]: bdb_initialize: Sleepycat 
> Software: Berkeley DB 4.2.52: (December  3, 2003)
> May 24 08:52:12 kivinan <debug> slapd[10359]: bdb_initialize: Sleepycat 
> Software: Berkeley DB 4.2.52: (December  3, 2003)
> May 24 09:24:06 kivinan <debug> slapd[16615]: @(#) $OpenLDAP: slapd 2.2.17 
> (May  4 2005 18:16:15) $
> 	kolab at kivinan:/kolab/RPM/TMP/openldap-2.2.17/servers/slapd
> May 24 09:24:06 kivinan <debug> slapd[16615]: bdb_initialize: Sleepycat 
> Software: Berkeley DB 4.2.52: (December  3, 2003)
> May 24 09:24:06 kivinan <debug> slapd[16615]: bdb_initialize: Sleepycat 
> Software: Berkeley DB 4.2.52: (December  3, 2003)
> 
> 
> The Kolab Webinterface says:
> Could not bind to ldap server: Can't contact ldap server
> 
> According to '/kolab/bin/openpkg rc all status' all services are running. I 
> tried telnet on Port 389, but got no connection. Any ideas what has happened?
> 
> Any suggestions?
> 
> Thanks,
> Henning
> 
> _______________________________________________
> Kolab-users mailing list
> Kolab-users at kolab.org
> https://kolab.org/mailman/listinfo/kolab-users
> 
> 
> 

-- 
Stephan  Buys
Code Fusion cc.
Tel: +27 11 673 0411
Mobile: +27 83 294 1876
Email: s.buys at codefusion.co.za

E-mail Solutions, Kolab Specialists.
http://www.codefusion.co.za




More information about the users mailing list