Active Directory as Authentication Source

Daniel Fisher dfisher at vt.edu
Wed Mar 4 16:09:32 EST 2015


On Wed, Mar 4, 2015 at 3:13 PM, Michael Dahlberg <olgamirth at gmail.com>
wrote:

>
>
> On Wed, Mar 4, 2015 at 2:27 PM, Daniel Fisher <dfisher at vt.edu> wrote:
>
>> On Wed, Mar 4, 2015 at 1:23 PM, Michael Dahlberg <olgamirth at gmail.com>
>> wrote:
>>
>>> Also, a final note: I've tried using ldapsearch with the given BaseDN
>>> and the BindDN as "serviceuser at bucknell.edu" and am able to
>>> successfully query the AD database.
>>>
>>
>> When you use ldapsearch, do you see 'ref:' values in the output? It could
>> be that the err=32 that you're seeing is caused by a referral that the IDP
>> is following when it performs DN resolution.
>>
>>
> I ran the following command (removed some of the info that the Windows
> Admins rather I not put on a public list)
>
> ldapsearch -x -D "servicename at bucknell.edu" -b "" -s base -H ldap://
> XXXXX.bucknell.edu -W
>
>
Perform the search that you expect the IDP to perform to find one of your
users.

--Daniel Fisher
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20150304/9e9c1f25/attachment.html 


More information about the users mailing list