[Freeipa-users] IPA Solaris Clients

Brian Likosar blikosar at redhat.com
Tue Jan 6 15:20:23 UTC 2009


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Rob Crittenden wrote:
> Look in /var/ldap/ldap_client_file on a Solaris machine to verify that
> the configuration is ok (you don't want to make manual changes here,
> they will be lost).

This file does not exist, nor is it referenced in the Client Config
documentation.  Does Solaris not respect the /etc/ldap.conf file?

> See if you can contact the LDAP server using ldapsearch:
> 
> % ldapsearch -h ipa.example.com -b "dc=example,dc=com" uid=admin

This worked perfectly.

> If the connection fails see if you have a firewall in between (iptables
> on Linux).
> 
> Logs to check are:
> 
> Solaris: /var/adm/messages
> Linux: /var/log/dirsrv/slapd-INSTANCE/access
> 
> If the Solaris machine is issuing LDAP queries you'd see them in the FDS
> access log eventually (there is a 30-second buffer by default).

The only LDAP queries the Solaris machine makes are when I run the
ldapsearch command.  I've followed the setup on the freeipa.org site,
and ldap[NOTFOUND=return] is included in /etc/nsswitch.conf, but it
still seems to make no calls to FDS.  Any other ideas?

Thanks for the tips!
- --
Brian Likosar                           +1.224.627.8238
Solutions Architect                     blikosar at redhat.com
Global Services                         Red Hat, Inc.
GPG Key ID:  0x0FC7CAD4
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
Comment: Using GnuPG with Red Hat - http://enigmail.mozdev.org

iD8DBQFJY3a31ix0cQ/HytQRAt8aAJ48DdBGW/YlB/DaEvm5xjErD0bV7gCfQMHZ
D2IMQ04gG20rMZO0JPj83KM=
=+drw
-----END PGP SIGNATURE-----




More information about the Freeipa-users mailing list