FAQ Search Today's Posts Mark Forums Read
» Video Reviews

» Linux Archive

Linux-archive is a website aiming to archive linux email lists and to make them easily accessible for linux users/developers.


» Sponsor

» Partners

» Sponsor

Go Back   Linux Archive > Redhat > Fedora Directory

 
 
LinkBack Thread Tools
 
Old 03-19-2009, 08:20 AM
Emmanuel BILLOT
 
Default Nothing happens on Win Sync ?

Hi,

I configured Win Sync with a 2003 server, ldaps:636 works on each side.
I've got many entries in FDS, i laucnh "Initialize Full
Re-synchronization". A pop up indicate the process is running.

But noting happens, logs are

[19/Mar/2009:10:09:48 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): State: backoff -> backoff
[19/Mar/2009:10:09:48 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): State: backoff -> backoff
[19/Mar/2009:10:09:48 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): No linger to cancel on the connection
[19/Mar/2009:10:09:48 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): Disconnected from the consumer
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): windows_inc_stop: protocol stopped after 1 seconds

[19/Mar/2009:10:09:49 +0100] - acquire_replica, supplier RUV:
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - supplier:
{replicageneration} 4975e2f8000000010000
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - supplier: {replica
1 ldap://ldapnew.intranet.orleans.ird.fr:389} 4975e382000000010000
49c20a2b000000010000 49c20a2b

[19/Mar/2009:10:09:49 +0100] - acquire_replica, consumer RUV:
[19/Mar/2009:10:09:49 +0100] - acquire_replica, consumer RUV = null
[19/Mar/2009:10:09:49 +0100] - acquire_replica, supplier RUV is newer
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): Trying secure slapi_ldap_init
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): binddn = cn=zizou zizou,cn=Users,dc=ird,dc=fr, passwd =
{DES}hEWPI2lOsxbq1sXNqsB92Q==
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): Disconnected from the consumer
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): Beginning linger on the connection
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): No linger on the closed conn
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): No linger to cancel on the connection
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): Disconnected from the consumer
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): State: start -> ready_to_acquire_replica

[19/Mar/2009:10:09:49 +0100] - acquire_replica, supplier RUV:
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - supplier:
{replicageneration} 4975e2f8000000010000
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - supplier: {replica
1 ldap://ldapnew.intranet.orleans.ird.fr:389} 4975e382000000010000
49c20a2b000000010000 49c20a2b

[19/Mar/2009:10:09:49 +0100] - acquire_replica, consumer RUV:
[19/Mar/2009:10:09:49 +0100] - acquire_replica, consumer RUV = null
[19/Mar/2009:10:09:49 +0100] - acquire_replica, supplier RUV is newer
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): Trying secure slapi_ldap_init
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): binddn = cn=zizou zizou,cn=Users,dc=ird,dc=fr, passwd =
{DES}hEWPI2lOsxbq1sXNqsB92Q==
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): Disconnected from the consumer
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): Beginning linger on the connection
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): No linger on the closed conn
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin -
windows_acquire_replica returned transient_error (105)
[19/Mar/2009:10:09:49 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): State: ready_to_acquire_replica -> start_backoff
[19/Mar/2009:10:09:52 +0100] NSMMReplicationPlugin - agmt="cn=win"
(10:636): State: start_backoff -> backoff



What's wrong ?

BR,

--
==========================================
Emmanuel BILLOT
IRD - Orléans
Délégation aux Systèmes d'Information (DSI)
tél : 02 38 49 95 88
==========================================

--
Fedora-directory-users mailing list
Fedora-directory-users@redhat.com
https://www.redhat.com/mailman/listinfo/fedora-directory-users
 
Old 03-19-2009, 12:24 PM
Emmanuel BILLOT
 
Default Nothing happens on Win Sync ?

Many tests give the followibng result

[root@ldapnew slapd-ldapnew]# /usr/lib/mozldap/ldapsearch -h
porlsvrdc0003.ird.fr -p 636 -D "cn=toutou,cn=Users,dc=ird,dc=fr" -w - -Z
-P /etc/dirsrv/slapd-ldapnew/cert8.db -s base -b "" "objectclass=*"

Enter bind password:
ldap_simple_bind: Can't contact LDAP server
SSL error -8183 (security library: improperly formatted
DER-encoded message.)


However, cert seems to be ok:
- ldaps:636 works on ldap.exe client (Windows)
- ldaps:636 works on ldapsearch -x -H ldaps://porlsvrdc0003.ird.fr -D
"cn=toutou,cn=Users,dc=ird,dc=fr" -W -b "dc=ird,dc=fr" with the
"classic" ldapsearch client


How can i debug it ?

BR,

--
==========================================
Emmanuel BILLOT
IRD - Orléans
Délégation aux Systèmes d'Information (DSI)
tél : 02 38 49 95 88
==========================================

--
Fedora-directory-users mailing list
Fedora-directory-users@redhat.com
https://www.redhat.com/mailman/listinfo/fedora-directory-users
 
Old 03-19-2009, 12:41 PM
Emmanuel BILLOT
 
Default Nothing happens on Win Sync ?

Emmanuel BILLOT a écrit :

Many tests give the followibng result

[root@ldapnew slapd-ldapnew]# /usr/lib/mozldap/ldapsearch -h
porlsvrdc0003.ird.fr -p 636 -D "cn=toutou,cn=Users,dc=ird,dc=fr" -w -
-Z -P /etc/dirsrv/slapd-ldapnew/cert8.db -s base -b "" "objectclass=*"

Enter bind password:
ldap_simple_bind: Can't contact LDAP server
SSL error -8183 (security library: improperly formatted
DER-encoded message.)


However, cert seems to be ok:
- ldaps:636 works on ldap.exe client (Windows)
- ldaps:636 works on ldapsearch -x -H ldaps://porlsvrdc0003.ird.fr -D
"cn=toutou,cn=Users,dc=ird,dc=fr" -W -b "dc=ird,dc=fr" with the
"classic" ldapsearch client


How can i debug it ?

BR,

Ok i found what was wrong : the request.inf from which the req cert is
generated contained an unknow item value


[Extensions]
2.5.29.17=xxxxxxxx




The inf file without the extensions section generate a good req file and
then a valid cert.


BR,

--
==========================================
Emmanuel BILLOT
IRD - Orléans
Délégation aux Systèmes d'Information (DSI)
tél : 02 38 49 95 88
==========================================

--
Fedora-directory-users mailing list
Fedora-directory-users@redhat.com
https://www.redhat.com/mailman/listinfo/fedora-directory-users
 

Thread Tools




All times are GMT. The time now is 01:39 AM.

VBulletin, Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO ©2007, Crawlability, Inc.
Copyright ©2007 - 2008, www.linux-archive.org