Discussions
Categories
Groups
Community Home
Categories
INTERNAL ENABLEMENT
POPULAR
PUBLIC CLOUD
PRIVATE CLOUD
Quick Links
MY LINKS
HELPFUL TIPS
Back to website
Home
Web CMS (TeamSite)
Which LDAP version TS6.7.2 SP2 + Patch 2 request ?
RedTreeMatthias
Hey DevNet,
Just a small question. Which LDAP version TS6.7.2 SP2 + Patch 2 request ?
Bit of background info.
It is about an TeamSite installation TS6.7.2 SP2 + Patch2 on OS Solaris 10.
Did the configuration to authenticate by LDAP the LDAP server receives the request and gives the following error.
conn=XXXXXXXX op=0 RESULT tag=97 err=2 text=historical protocol version requested, use LDAPv3 instead
Isn't LDAPv3 standard even for TS 6.7.2? If not do you know which version of LDAP TS6.7.2 requests? and if its possible to make it work with LDAPv3?
Kind Regards,
Matthias
Find more posts tagged with
Comments
Rick Poulin
Well that's a new one (for me anyway).. According to KB49771, TS has been using LDAPv3 since v5.5.2. Which LDAP vendor are you connecting to? I suggest you post your iw.cfg, user_databases.xml and ldap.conf (or whatever) as there may be a mismatch in your config somewhere. Don't forget to black out specifics.
RedTreeMatthias
This is my modification of files in TS.
ldap.conf in TS ? That part i missed. Ok Unix team just gives me the detail the LDAP they provide is LDAPv3. The request is accepted and handled with the result the error from above. Also if i do an iwldapsearch i get the following error. (ldap vendor openldap <- if this is possible)
LDAP bind error: Protocol error.
maybe this can help in a way.
iw.cfg
[authentication]
authenticate_by=ldap
ldap_server=xxxxxxx.xx.xxxxx.****
ldap_port=389
ldap_dnbase=dc=xx,dc=xxxxx,dc=****
ldap_key=cn
ldapcache_thread_delay=1440
log_ldap_sync=yes
ldap_sync_retry=12
user_databases.xml
iwldap id="ldap_1" display_name="my ldap_1" os="f">
server value="xxxxxxx.xx.xxxxx.****" />
port value="389" />
search_key value="cn" />
dnBase value="dc=xx,dc=xxxxx,dc=****" />
/iwldap>
Rick Poulin
I've always hated that there's two configuration places for this in TeamSite and I can't keep them straight in my mind, so I always end up moving stuff around until I find a configuration that works.. meaning take this suggestion with a grain of salt.
As far as I remember, the iw.cfg setting is only used when you want OS users, which conflicts with what your user_databases says.
For OS users, use iw.cfg, set os="t" in your user_databases, and configure your system's ldap.conf (or similar) to use EXACTLY THE SAME connection params.
For non-OS users, don't even use a [authentication] section in iw.cfg. The user_databases should be all you need.