lists.arthurdejong.org
RSS feed

RE: Using two differents LDAPS

[Date Prev][Date Next] [Thread Prev][Thread Next]

RE: Using two differents LDAPS



Hello,
I check my centos installation, just openldap-clients and nss-pam-ldapd are 
here. I test nss-pam-ldapd in combination with libpam-ldap on Debian. But it's 
not working.
When I do nslcd -d and I test to authenticate my user, there are no error logs 
no information log. I think that the nslcd service not working. When I use 
libnss-ldap and libpam-ldap, it's work...
So i can use this solution, or I must use nss-pam-ldapd ?

-----Message d'origine-----
De : 
nss-pam-ldapd-users-bounces+jordan.droussent=atos.net@lists.arthurdejong.org 
[nss-pam-ldapd-users-bounces+jordan.droussent=atos.net [at] lists.arthurdejong.org]
 De la part de Arthur de Jong
Envoyé : vendredi 1 juin 2012 12:48
À : nss-pam-ldapd-users@lists.arthurdejong.org
Objet : Re: Using two differents LDAPS

On Fri, 2012-06-01 at 07:26 +0000, DROUSSENT Jordan wrote:
> For a project, i need to used two different LDAPS. One get the
> posixAccount and the second to authenticate my users.
>
> I have just a read access on the first, that’s why I need to use a
> second ldap.
>
> In Centos 6, i can do this using /etc/pam_ldap.conf and
> /etc/nslcd.conf. But when I deploy nss-pam-ldapd on Debian Squeeze,
>
> There are one configuration file (/etc/pam_ldap.conf) but I need two
> configuration file…

nss-pam-ldapd currently works on the basis of a single LDAP configuration so 
there is no easy way to have a different LDAP server for PAM.

It seems that on Centos you are using nss-pam-ldapd in combination with PADL 
pam_ldap while on Debian you are using both the NSS and PAM modules of 
nss-pam-ldapd. If you install libpam-ldap on Debian you should have a similar 
configuration.

--
-- arthur - arthur@arthurdejong.org - http://arthurdejong.org --
________________________________


Ce message et les pièces jointes sont confidentiels et réservés à l'usage 
exclusif de ses destinataires. Il peut également être protégé par le secret 
professionnel. Si vous recevez ce message par erreur, merci d'en avertir 
immédiatement l'expéditeur et de le détruire. L'intégrité du message ne pouvant 
être assurée sur Internet, la responsabilité du groupe Atos ne pourra être 
engagée quant au contenu de ce message. Bien que les meilleurs efforts soient 
faits pour maintenir cette transmission exempte de tout virus, l'expéditeur ne 
donne aucune garantie à cet égard et sa responsabilité ne saurait être engagée 
pour tout dommage résultant d'un virus transmis.

This e-mail and the documents attached are confidential and intended solely for 
the addressee; it may also be privileged. If you receive this e-mail in error, 
please notify the sender immediately and destroy it. As its integrity cannot be 
secured on the Internet, the Atos group liability cannot be triggered for the 
message content. Although the sender endeavors to maintain a computer 
virus-free network, the sender does not warrant that this transmission is 
virus-free and will not be liable for any damages resulting from any virus 
transmitted.
-- 
To unsubscribe send an email to
nss-pam-ldapd-users-unsubscribe@lists.arthurdejong.org or see
http://lists.arthurdejong.org/nss-pam-ldapd-users/