Login | Register For Free | Help
Search for: (Advanced)

Mailing List Archive: exim: users

userPassword at LDAP lookup always empty

 

 

exim users RSS feed   Index | Next | Previous | View Threaded


lehmann at cnm

Nov 13, 2009, 7:22 AM

Post #1 of 2 (350 views)
Permalink
userPassword at LDAP lookup always empty

Hello,

I would like to retrieve the ?userPassword value with a LDAP lookup, but
it is always empty. But this seems to be removed either by exim or the C
client lib. When I connect with Java, I can retrieve this field.

The LDAP is only used internally and I need other fields of the LDAP
entry as well. Therefor I don't want to separately try a LDAP connect to
test if ther credentials are ok and then a second time to retrieve other
fields.

So how can I get the value of userPassword and do the comparison
manually? We are only using MD5 crypt passwords.

Regards
Marten

--
## List details at http://lists.exim.org/mailman/listinfo/exim-users
## Exim details at http://www.exim.org/
## Please use the Wiki with this list - http://wiki.exim.org/


hs at schlittermann

Nov 14, 2009, 2:08 PM

Post #2 of 2 (315 views)
Permalink
Re: userPassword at LDAP lookup always empty [In reply to]

Hello Martn,

Marten Lehmann <lehmann [at] cnm> (Fr 13 Nov 2009 16:22:27 CET):
> Hello,
>
> I would like to retrieve the ?userPassword value with a LDAP lookup, but
> it is always empty. But this seems to be removed either by exim or the C
> client lib. When I connect with Java, I can retrieve this field.

Are you sure that you're using the same credentials and filter in your
Java client an in exim? I'd guess, connecting the LDAP from exim results
in a less privileged session. You won't even see a warning or such. The
LDAP server just doesn't tell you anything about the userPassword.

> The LDAP is only used internally and I need other fields of the LDAP
> entry as well. Therefor I don't want to separately try a LDAP connect to
> test if ther credentials are ok and then a second time to retrieve other
> fields.

But you pay with the loss of flexibility and more config hassle on the
side of exim. The LDAP server should be used for authentication if the
userPasswords are stored there.

Best regards from Dresden/Germany
Viele Grüße aus Dresden
Heiko Schlittermann
--
SCHLITTERMANN.de ---------------------------- internet & unix support -
Heiko Schlittermann HS12-RIPE -----------------------------------------
gnupg encrypted messages are welcome - key ID: 48D0359B ---------------
gnupg fingerprint: 3061 CFBF 2D88 F034 E8D2 7E92 EE4E AC98 48D0 359B -
Attachments: signature.asc (0.19 KB)

exim users RSS feed   Index | Next | Previous | View Threaded
 
 


Interested in having your list archived? Contact Gossamer Threads
 
  Web Applications & Managed Hosting Powered by Gossamer Threads Inc.