If that fails, then you must fix ldapfirst or the LUM install, which is installed over ldap, will fail as well.ISSUE: No real copy of a child partition. If these are different, then change the corresponding entry to match where you want the Unix Config object installed to. We are having problems connecting with desktop based LDAP > browser or any other LDAP connection. > > I found TID 10089842 and a couple of others and have been unsuccessful We exported the certificateDNS to do this test. weblink

So the volume name is not needed in the path. We have confirmed the certificates are still valid, > installed, etc. As unloading and re-loading NLDAP haven't resolved the issue, I would very appreciate it if you can help in order to be able to start the iSCSI Target. The server name is MAIL-01.

At no point did we recreate our CA or any server certificate. For no ryhme nor reason, two days ago, we started getting > LDAP/SSL problems. My PHP skills are negligible, but it appears the \auth\ldap\auth.php file needs to be modified to include the ldap_start_tls command.

In this case the OU=Child is a partition.

If you need any other info please let me know and I'll see if I can get what you need.Thanks,GregAverage of ratings: - Permalink | ReplyRe: LDAP Authentication with TLS and Execute the following command to update the Certificates locally from the ldap server. It could not be accessed by any utility. As an example, we have phpBB2 configured and working using LDAP and TLS.

Try creating a new user and granting them supervisor object rights (entry rights) at the root of the tree and then try installing LUM with the newuser.ISSUE:The LDAP server is not Resolution Steps: 1. Error stack: error:14094418:SSL routines:SSL3_READ_BYTES:tlsv1 alert unknown ca - SSL alert number 48 LDAP: [2005/11/23 10:59:53] ( TLS handshake failed on connection 0x53c7ee0, err = -5875 LDAP: [2005/11/23 10:59:53] Server closing connection Once the the desired server was selected in order to view its disk channel information, the above error would occur.

This is an issue with the LUM install accessing the LDAP server with SSL. It is possible that this object exists but the server could not communicate with a server holding a copy of the object."-626 means all referrals failed. Root cause at this point was still unknown.ISSUE: Incorrect Unix Config object context specified. NTLS is causing the NICI error: NTLS did not have the proper protection to prevent two threads from attempting to use the same context.Formerly known as TID# 10093750Formerly known as TID#

But that's OK, because they all know me here. have a peek at these guys We have one QA environment that points to the 636 port and i'm not sure when they last used it. The first troubleshooting step is to get the owcimom debug log:edit the sys:system\cimom\etc\openwbem\openwbem.conf file and setlog.main.level = DEBUGThen unload and reload owcimomd.nlmThen reproduce the problem.The log is in: SYS:\SYSTEM\CIMOM\VAR\OWCIMOMD.LOGIn this case However, edirectory had a problem.

Error stack: > error:14094412:SSL routines:SSL3_READ_BYTES:sslv3 alert bad > certificate - SSL alert number 42 > LDAP: [2005/11/23 12:50:06] ( TLS handshake > failed on connection 0x6560700, err = -5875 > LDAP: Any suggestions would be appreciated. If I had to guess, I'd say this broke after SP3. check over here DisclaimerThis Support Knowledgebase provides a valuable tool for NetIQ/Novell/SUSE customers and parties interested in our products and solutions to acquire information, ideas and learn from one another.

Document ID:3108486Creation Date:10-JAN-07Modified Date:26-APR-12NovellNetWareNetIQeDirectory

After the install edit the /ETC/NAM.CONF file and modify/add the following entries.type-of authentication=2 (this entry should already be there set to 1)certificate-file-type=derldap-ssl-port=636 (or your ssl port for your ldap server)ldap-port=389 (or

Materials are provided for informational, personal or non-commercial use within your organization and are presented "AS IS" WITHOUT WARRANTY OF ANY KIND. Click the LOGIN link in the forum header to proceed. It was this connection over port 636 that was failing with the BAD CERTIFICATE error in the ldap trace. this content By importing the certificate using keytool, eGuide server can be trusted by the remote LDAP server.

I also suspect the problem came when you >re-created the LDAP server and group objects with old C1 snapins. ------- There is another issue requiring tending when doing this. Cool Solutions Consulting Customer Center My Profile My Products My Support My Training Partners Communities + Communities Blog—Expert Views Blog—Technical Free Tools Support Forums About Us + About Us Contact Additional Information This is actually two issues that will typically only be seen on MP enabled servers:1. Environment Novell NetWare 6.5 Support Pack 1 Novell eDirectory 8.7.3 for NetWare 6.5 NTLS 1.80 - OpenSSL Situation Error in LDAP OpenSSL client: -5875 SSL3 Alert Bad Record Mac NLDAP quits

Next Message by Date: Re: SSL / LDAP issue - DSTRACE Output Try this: http://support.novell.com/cgi-bin/search/searchtid.cgi?/10093750.htm On 11/24/05, Aldo Zanoni wrote: > > Hello, everyone. > > We have an interesting This connection between owcimom and ldap is also a secure https connection that, by default, uses the sys:public\rootcert.der certificate. I played with it all day and couldn't get it to work until I added the starting context to the LDAP config screen.Average of ratings: - Permalink | Show parent | Ldap has to search the entire tree to find any instances of the user in question.

For no ryhme nor reason, two days ago, we started getting > LDAP/SSL problems. It's been a couple years since I worked with BMgr. We provide upfront analysis and planning, and deliver automatic, unattended high-speed Physical-to-Virtual (P2V) or anywhere-to-anywhere workload migrations. These would then have then been passed back to the cimom client and the user would have been authenticated.