Mailing Lists: Apple Mailing Lists

Image of Mac OS face in stamp
 
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: SonicWall LDAP user authentication




On Mar 18, 2007, at 10:56 AM, Brad Kerst wrote:

I have searched in the archives for my answer and was unable to find any
help so I am posting her with my question. This is the first time I have
done this so please be gentle...


I have a sonicwall pro 3060 running the enhanced os and a mac os 10.4.8
open directory master. I would like to setup the sonicwall to allow users
to login using ldap off of the mac server. In the users/settings area I
have configured the ladp as follows

This does work, and there's just some setting that you most likely have awry.



Anonymous login: check...

OK - you should also be using LDAPv3.


Schema: (clicked read from server and got)
	LDAP Schema:  RFC2307

Hmmmm....Sure it's not RFC2798 (InetOrgPerson)?


Object Class: posixAccount

Again, I set this as InetOrgPerson.


	Login name attribute:  uid
	Qualified Login name Att:  <blank>
	User group membership att:  <blank>
	Framed IP address att: <blank>

All good.


Object Class(groups): posixGroup

I use "group of names".


Member att(groups): memberUid

This is simply "member".


Directroy: (clicked auto configure)
	Primary domain: odm.munising.lan

Is that actually your primary domain? Or is it simply "munsing.lan"?


	Trees Containing users:  cn=users,dc=odm,dc=munising,dc=lan
	Trees Containing user groups:  cn=groups,dc=odm,dc=munising,dc=lan

This will follow your domain - you may end up losing the "dc=odm," portion.



When I go to the test tab and type in a username and password I receive
the following error:


LDAP Client Authentication Failed

Try it with the changes and suggestions above, and let us know. -- Edward Marczak w: http://www.radiotope.com b: http://www.radiotope.com/writing e: email@hidden











Attachment: smime.p7s
Description: S/MIME cryptographic signature

 _______________________________________________
Do not post admin requests to the list. They will be ignored.
Macos-x-server mailing list      (email@hidden)
Help/Unsubscribe/Update your Subscription:
http://lists.apple.com/mailman/options/macos-x-server/email@hidden

This email sent to email@hidden

References: 
 >SonicWall LDAP user authentication (From: "Brad Kerst" <email@hidden>)



Visit the Apple Store online or at retail locations.
1-800-MY-APPLE

Contact Apple | Terms of Use | Privacy Policy

Copyright © 2007 Apple Inc. All rights reserved.