Smart questions
Smart answers
Smart people
INTELLIGENT WORK FORUMS
FOR COMPUTER PROFESSIONALS

Member Login

Come Join Us!

Are you a
Computer / IT professional?
Join Tek-Tips now!
  • Talk With Other Members
  • Be Notified Of Responses
    To Your Posts
  • Keyword Search
  • One-Click Access To Your
    Favorite Forums
  • Automated Signatures
    On Your Posts
  • Best Of All, It's Free!

Join Tek-Tips
*Tek-Tips's functionality depends on members receiving e-mail. By joining you are opting in to receive e-mail.

LINK TO THIS FORUM!

Add Stickiness To Your Site By Linking To This Professionally Managed Technical Forum.
Just copy and paste the
code below into your site.

Partner With Us!

"Best Of Breed" Forums Add Stickiness To Your Site
Partner Button
(Download This Button Today!)

Feedback

"...I have tons of books, have book marked tons of tutorials, which have helped, but this forum has answered those "impossible to find" solutions. I am thrilled with this site..."

Geography

Where in the world do Tek-Tips members come from?
marvhuffaker (MIS)
24 Jan 05 16:32
Trying to resolve an LDAP authentication to a Win2K box running eDir 8.7.3.  A 3rd party system is trying to authenticate to the ldap.

Here are the errors I get in the LDAP trace:

LDAP    : (192.168.1.41:35589)(0x0000:0x00) TLS read failure 5 on connection 0x6773070, setting err = -5875. Error stack:
LDAP    : Monitor 0x1584 found connection 0x6773070 socket failure, err = -5875, 0 of 0 bytes read

Thanks.

Marvin Huffaker MCNE, CNE
Marvin Huffaker Consulting, Inc.
http://www.redjuju.com/support

Provogeek (MIS)
25 Jan 05 13:05
Does the Win2k box have Ad installed?  If so, AD takes port 389 and 636. so the Novell LDAP listener is usually setup on a different port (388 for clear text).  

Try using Softerra LDAP Browser for testing, it helps and makes figuring LDAP issues out mush easier.

=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
Brent Schmidt        Certified nut case   
Senior Network Engineer
 http://www.kiscc.com

marvhuffaker (MIS)
25 Jan 05 14:30
Well, the Win2K box is a member server, but not a pdc or bdc.  Yes it does take port 389, but It did not appear to be listening on port 636.

So I setup ldap to use port 1389 (but then disabled the port and the ability to use cleartext) for unsecure and left it at 636 for secure. is that my problem?

I've tried to use ldap browsers but it seems that it's very difficult to get the certificate to work with them. How do you normally do this?

Marvin Huffaker MCNE, CNE
Marvin Huffaker Consulting, Inc.
http://www.redjuju.com/support
marvhuffaker (MIS)
25 Jan 05 14:38
also.... I remember that when I first set this up, i did try to set the secure ldap port to a non-636 port, but it hosed up everything -- imanager, etc. and I didn't want to deal with it so i moved it back.

Marvin Huffaker MCNE, CNE
Marvin Huffaker Consulting, Inc.
http://www.redjuju.com/support

Reply To This Thread

Posting in the Tek-Tips forums is a member-only feature.

Click Here to join Tek-Tips and talk with other members!

Close Box

Join Tek-Tips® Today!

Join your peers on the Internet's largest technical computer professional community.
It's easy to join and it's free.

Here's Why Members Love Tek-Tips Forums:

Register now while it's still free!

Already a member? Close this window and log in.

Join Us             Close