[Fedora-directory-users] Re: SYNC without password ...

Vipul Ramani vipulramani at gmail.com
Wed Oct 15 00:10:03 UTC 2008


--- passyc log ---

10/14/08 17:05:56: Failed to load entries from file
10/14/08 17:05:56: Ldap bind error in Connect
    48: Inappropriate authentication
10/14/08 17:05:56: Can not connect to ldap server in SyncPasswords
-----------------------------

ADC ( where passysnc installed )  #

 On the Directory Server, export the server certificate using pk12util.

FDS# pk12util -d . -o servercert.pfx -n Server-Cert


then ,

Import the server certificate from the Directory Server into the new
certificate databases using pk12util.exe.

pk12util.exe -d "C:\Program Files\Red Hat Directory Password
Synchronization" -i servercert.pfx

then

Give trusted peer status to the server.

certutil.exe -d "C:\Program Files\Red Hat Directory Password
Synchronization" -M
     -n Server-Cert -t "P,P,P"



C:\Program Files (x86)\Red Hat Directory Password
Synchronization>certutil.exe -
L -d . -P
CA certificate                                               c,c,c
Server-Cert                                                  Pu,Pu,Pu   <--
imported from FDS

C:\Program Files (x86)\Red Hat Directory Password Synchronization>
---------------------------

still same error . ...





On Tue, Oct 14, 2008 at 3:42 PM, Vipul Ramani <vipulramani at gmail.com> wrote:

> Hi All ,
>
> I am doing Active directory ----> FDS ( ssl) , all attribute is replicated
> from ADC ---> FDS .. But i am not able to see password attribute in FDS ?
>
> Replication
> FDS - working as master
> Passync for replication
>
>  replication is happening from Active Directory:636 ---- > FDS : 636 .
>
>
> Am i am missing something ...
>
> ------Adc user profile , which is replicated in FDS -------
> dn: uid=vramani, ou=People, dc=tf-lab,dc=test,dc=com
> ntUniqueId: f96921fe188c4b47a243ab088512103d
> givenName: vipul
> sn: r
> objectClass: top
> objectClass: person
> objectClass: organizationalperson
> objectClass: inetOrgPerson
> objectClass: ntUser
> uid: vramani
> ntUserDeleteAccount: true
> cn: vipul r
> ntUserDomainId: vramani
> ntUserAcctExpires: 9223372036854775807
> ntUserCodePage: 0
> ------
> ----acess------
>
>
> [14/Oct/2008:08:37:16 -0700] conn=4 op=170 SRCH base="ou=People,
> dc=tf-lab,dc=test,dc=com" scope=0 filter="(objectClass=*)" attrs=ALL
> [14/Oct/2008:08:37:16 -0700] conn=4 op=170 RESULT err=0 tag=101 nentries=1
> etime=0
> [14/Oct/2008:08:37:17 -0700] conn=4 op=171 SRCH base="ou=People,
> dc=tf-lab,dc=test,dc=com" scope=1 filter="(objectClass=*)"
> attrs="objectClass"
> [14/Oct/2008:08:37:17 -0700] conn=4 op=171 RESULT err=0 tag=101 nentries=0
> etime=1
> [14/Oct/2008:08:37:19 -0700] conn=4 op=173 SRCH
> base="dc=tf-lab,dc=test,dc=com" scope=0 filter="(objectClass=*)"
> attrs=ALL[14/Oct/2008:08:37:19 -0700] conn=4 op=173 RESULT err=0 tag=101
> nentries=1 etime=0
> [14/Oct/2008:08:37:19 -0700] conn=4 op=174 SRCH
> base="dc=tf-lab,dc=test,dc=com" scope=1 filter="(objectClass=*)"
> attrs="objectClass"
> [14/Oct/2008:08:37:19 -0700] conn=4 op=174 RESULT err=0 tag=101 nentries=1
> etime=0
> [14/Oct/2008:08:37:20 -0700] conn=4 op=175 SRCH base="ou=People,
> dc=tf-lab,dc=test,dc=com" scope=0 filter="(objectClass=*)" attrs=ALL
> [14/Oct/2008:08:37:20 -0700] conn=4 op=175 RESULT err=0 tag=101 nentries=1
> etime=0[14/Oct/2008:08:37:26 -0700] conn=3 op=122 SRCH
> base="cn=replication,cn=config" scope=2 filter="(objectClass=*)" attrs=ALL
> [14/Oct/2008:08:37:26 -0700] conn=3 op=122 RESULT err=0 tag=101 nentries=1
> etime=0
> [14/Oct/2008:08:37:27 -0700] conn=3 op=124 MOD dn="cn=Vedant, cn=replica,
> cn=\22dc=tf-lab,dc=test,dc=com\22, cn=mapping tree, cn=config"
> [14/Oct/2008:08:37:27 -0700] conn=3 op=124 RESULT err=0 tag=103 nentries=0
> etime=0[14/Oct/2008:08:37:27 -0700] conn=3 op=125 SRCH base="cn=Vedant,
> cn=replica, cn=\22dc=tf-lab,dc=test,dc=com\22, cn=mapping tree, cn=config"
> scope=0 filter="(|(objectClass=*)(objectClass=ldapsubentry))"
> attrs="nsds5replicaLastUpdateStart nsds5replicaLastUpdateEnd
> nsds5replicaChangesSentSinceStartup nsds5replicaLastUpdateStatus
> nsds5replicaUpdateInProgress nsds5replicaLastInitStart
> nsds5replicaLastInitEnd nsds5replicaLastInitStatus nsds5BeginReplicaRefresh"
> [14/Oct/2008:08:37:27 -0700] conn=3 op=125 RESULT err=0 tag=101 nentries=1
> etime=0
> [14/Oct/2008:08:37:31 -0700] conn=3 op=126 SRCH
> base="cn=replication,cn=config" scope=2 filter="(objectClass=*)"
> attrs=ALL[14/Oct/2008:08:37:31 -0700] conn=3 op=126 RESULT err=0 tag=101
> nentries=1 etime=0
> [14/Oct/2008:08:37:31 -0700] conn=3 op=127 MOD dn="cn=Vedant, cn=replica,
> cn=\22dc=tf-lab,dc=test,dc=com\22, cn=mapping tree, cn=config"
> [14/Oct/2008:08:37:31 -0700] conn=3 op=127 RESULT err=0 tag=103 nentries=0
> etime=0[14/Oct/2008:08:37:31 -0700] conn=3 op=128 MOD dn="cn=Vedant,
> cn=replica, cn=\22dc=tf-lab,dc=test,dc=com\22, cn=mapping tree, cn=config"
> [14/Oct/2008:08:37:31 -0700] conn=3 op=128 RESULT err=0 tag=103 nentries=0
> etime=0
> [14/Oct/2008:08:37:37 -0700] conn=4 op=176 SRCH base="ou=People,
> dc=tf-lab,dc=test,dc=com" scope=1 filter="(objectClass=*)"
> attrs="objectClass"
> [14/Oct/2008:08:37:37 -0700] conn=4 op=176 RESULT err=0 tag=101 nentries=18
> etime=0
> ------
>
>
> thanks in Adv...
>
>
>
>
>
-- 
Regards

Vipul Ramani
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/fedora-directory-users/attachments/20081014/a48c0c24/attachment.htm>


More information about the Fedora-directory-users mailing list