ldap error messages

Get help with installation and running phpBB 3.0.x here. Please do not post bug reports, feature requests, or MOD-related questions here.

ldap error messages

Postby someUserName » Fri Jan 25, 2008 7:06 pm

Note: using active directory


This is also the info I submit: server name, port, base dn, uid, user dn (my windows credentials), and password (windows password)

Without the base DN I obviously get this error (so thats a good sign that its using that field when its there):
Could not connect to LDAP server.


Now if I omit the domain from the user dn (someuser instead of someuser@domain.com) I get the following error message:

Binding to LDAP server failed with specified user/password.


If I add the domain to the user DN I get this error:
Could not find a login identity for admin.


Its like its trying to log in using the credentials of my phpbb3 account or something.

I tried changing the admin account to the full windows username with the domain but its simple too long.

Suggestions?

edit: its like it needs to have my admin account added, but problem is I cannot have any usernames that long.

edit2:

I removed CN=Users from base dn and I got "Configuration updated successfully." (first time ever seeing that with ldap selected) but still cannot log in using my regular credientials.
someUserName
Registered User
 
Posts: 29
Joined: Wed Jan 23, 2008 6:14 pm

Re: ldap error messages

Postby someUserName » Tue Jan 29, 2008 3:06 pm

bump

Here is were I stand...

If CN=Users (along with the two other DC=) is in the base DN it wont work. If anything but CN is in uid it wont work (ex: CN=Users wont work).

Now, the weird thing is, if my php account is admin it will take the ldap settings. But when I log out, I can no longer log in to phpbb using my admin account or my windows credentials. I then need to re-install phpbb.

The weird thing is if I name my phpbb account the same name as my windows name then try to apply the ldap settings that usually work (but screw up phpbb to the point I need to re-install) I get a error... weird.

NOTE: My username/password to bind this is my own, would that be a problem?

edit: If this cannot be fixed, my last ditch attempt might be to recode php to attempt to bind a username/password. If it succeeds, then I know its a valid UN/PW, if it fails, then I know its not valid. But I know that would require lots of coding.

edit2: Well looks like we are able to log in using the admin of the domain. hmmm

edit3: Ok, solved... ill post what I did tommorow cause I am sure someone else in the future will have the same problems with this ldap thing.

Here is how I solved this:

1# When I was getting "LDAP NO LDAP EXTENSION" it was a php problem. I ended up re-installing php (this time using zip instead of msi) while following instruction and it worked.

2# My info
LDAP server name: 10.10.x.x
LDAP server port: 389
LDAP base dn: CN=Users,DC=xxxxxxx,DC=org
LDAP uid: sAMAccountName
LDAP user dn: somelogincredentials@xxxxxxx.org
LDAP password: the_password

3# Then changed my PHP admin account to administrator (admin or my domain username fails)

4# Saved it (without login out) then logged in with a other user account on a other browser (so it would be created in the DB). Went back to original browser and made that new domain account site founder (aka full admin). NOTE: This needed to be done, or else my original administrator account would not work because it was trying to authenticate using ldap. The moment sign out of administrator I cannot sign back into it.

5# Added "mail to "LDAP e-mail attribute:". If I add this without any domain users created it failed.

note:
[*]port was optional.
[*]Like I said, having the mail attribute caused me issues (would give me some error) until I had a real domain user in the DB. So don’t add mail till later.
[*]My uid was sAMAccountName but it can potentially be different on yours.
[*]Any login credentials work, but apparently you need them or else it wont bind.
[*]Also at one point I was able to take abberrant settings to save correctly but no domain credentials were being accepted EXCEPT the domain administrator account. Not sure what to make of that.
someUserName
Registered User
 
Posts: 29
Joined: Wed Jan 23, 2008 6:14 pm

Re: ldap error messages

Postby new_to_php » Sun Feb 07, 2010 6:09 pm

Can you please give me more details on this

3# Then changed my PHP admin account to administrator (admin or my domain username fails)

what is a php admin account .. Do you mean the administrator accoutn for the board or some thign else ..

4# Saved it (without login out) then logged in with a other user account on a other browser (so it would be created in the DB). Went back to original browser and made that new domain account site founder (aka full admin). NOTE: This needed to be done, or else my original administrator account would not work because it was trying to authenticate using ldap. The moment sign out of administrator I cannot sign back into it

I dint get the no 4 .. sorry about this i am new to all this php thing ...
new_to_php
Registered User
 
Posts: 5
Joined: Sun Feb 07, 2010 4:56 pm

Re: ldap error messages

Postby stevemaury » Sun Feb 07, 2010 6:12 pm

Please stick to one topic. Bumping a 2+ year old topic will not help. And it violates the 6-hour bump rule.
Image
All unsolicited PMs will be ignored.

For hosting, try http://www.1and1.com/?k_id=15278953
User avatar
stevemaury
Support Team Member
Support Team Member
 
Posts: 29084
Joined: Thu Nov 02, 2006 12:21 am
Location: The U.P.


Return to 3.0.x Support Forum

Who is online

Users browsing this forum: AndreaByr, BucsFan, cooch17, darnold, daveht, forumdesados, HGN, JimA, Kevin Clark, Pit$Bull, rory1978, tumba25, Uzam, YaCy [Bot] and 101 guests