Gentoo Archives: gentoo-user-es

From: Angel Cervera Claudio <angel@××××××××.com>
To: gentoo-user-es@l.g.o
Subject: Re: [gentoo-user-es] problemas con postfix + ldap + saslauthd
Date: Tue, 27 Dec 2005 10:35:36
Message-Id: 43B118C3.7060007@acervera.com
In Reply to: RE: [gentoo-user-es] problemas con postfix + ldap + saslauthd by Facundo Ortiz
1 Hola a todos.
2 Perdona haber perdido el hilo de la conversación, pero es que he sido
3 papa y he tenido que estar fuera unos día.
4 Todo a salido bien y mi mujer y mi hija (Pilar, de 2,640Kilos) están
5 sanas y fuertes. ;)
6
7 Pero a lo que íbamos:
8
9 Facundo Ortiz wrote:
10
11 >Tengo un dato más. Parece que le faltara un plugin al ldap: el "ldapdb". Es
12 >posible que lo tenga que instalar aparte? Ya hice la prueba de instalar de
13 >nuevo, pero siempre pasa lo mismo. Cuando desde el outlook de una pc chequeo
14 >el mail, aparece este error:
15 >
16 >/var/log/auth.log
17 >Dec 22 15:59:36 router pop3[7904]: auxpropfunc error invalid parameter
18 >supplied
19 >
20 >
21 Esto, seguramente, sea porque tienes algún parámetro erróneo en el
22 fichero de configuración del ldap
23 Repasa la configuración del ldapdb.
24
25 Repasa también que exista el usuario en el ldap.
26 Para ello puedes hacer una búsqueda con ldapsearch usando los mismo
27 atributos de búsqueda que has indicado en la configuración del ldapdb.
28
29 >Dec 22 15:59:36 router pop3[7904]: _sasl_plugin_load failed on
30 >sasl_auxprop_plug_init for plugin: ldapdb
31 >Dec 22 16:00:08 router saslauthd[2494]: Entry not found ((uid=foz)).
32 >Dec 22 16:00:08 router saslauthd[2494]: Authentication failed for foz: User
33 >not found (-6)
34 >Dec 22 16:00:08 router saslauthd[2494]: do_auth : auth failure:
35 >[user=foz] [service=pop] [realm=] [mech=ldap] [reason=Unknown]
36 >
37 >/var/log/debug
38 >Dec 22 15:59:36 router master[7904]: about to exec /usr/lib/cyrus/pop3d
39 >Dec 22 15:59:36 router pop3[7904]: executed
40 >Dec 22 15:59:36 router pop3[7904]: accepted connection
41 >Dec 22 16:00:08 router slapd[2328]: conn=4 op=3 SRCH
42 >base="dc=funedu,dc=org,dc=ar" scope=2 deref=0 filter="(uid=foz)"
43 >
44 >
45 No estoy muy seguro, pero creo que no está bien esta configuración.
46 ¿Tienes así organizado el ldap?
47 Lo normal es que los usuarios cuelguen de "ou=loquesea,o=organizacion" y
48 no de "dc=funedu,dc=org,dc=ar" Pero eso ya es cosa de como tengas
49 organizado el ldap.
50
51 >Dec 22 16:00:08 router slapd[2328]: conn=4 op=3 SRCH attr=dn
52 >Dec 22 16:00:08 router slapd[2328]: conn=4 op=3 SEARCH RESULT tag=101 err=0
53 >nentries=0 text=
54 >Dec 22 16:00:08 router pop3[7904]: badlogin: [1.1.50.126] plaintext foz
55 >SASL(-13): authentication failure: checkpass failed
56 >Dec 22 16:00:11 router master[2393]: process 7904 exited, status 0
57 >
58 >
59 >Facundo Ortiz de Zarate
60 >Fundación EDUCANDO
61 >
62 >
63 >
64 >
65 >
66 >>-----Mensaje original-----
67 >>De: Angel Cervera Claudio [mailto:angel@××××××××.com]
68 >>Enviado el: Miércoles 14 de Diciembre de 2005 07:26
69 >>Para: gentoo-user-es@l.g.o
70 >>Asunto: Re: [gentoo-user-es] problemas con postfix + ldap + saslauthd
71 >>
72 >>Creo que vamos avanzando poco a poco.
73 >>Ahora, al menos, ya te intenta validar sobre el ldap.
74 >>El error que te da el problema debe ser:
75 >>
76 >>Dec 12 17:32:20 router slapd[9248]: daemon: IPv6 socket()
77 >>failed errno=97 (Address family not supported by protocol)
78 >>
79 >>Te puedes conectar al ldap desde otra aplicación para
80 >>chequear que lo tienes bien instalado?
81 >>Creo que al instalar el openldap, en los log del emerge te
82 >>indica una serie de procesos que debes ejecutar para que todo
83 >>funcione correctamente.
84 >>
85 >>Un saludo
86 >>
87 >>Facundo Ortiz de Zarate wrote:
88 >>
89 >>
90 >>
91 >>>>Prueba recompilar postfix con USE="-mysql -postgresql"
92 >>>>
93 >>>>-
94 >>>>
95 >>>>
96 >>>>
97 >>>>
98 >>>Holas, he recompilado el cyrus-sasl, cyrus-imapd, postfix y
99 >>>
100 >>>
101 >>los modulos
102 >>
103 >>
104 >>>Perl: Net-SSLeay IO-Socket-SSL XML-NamespaceSupport XML-SAX-Base
105 >>>Authen-SASL Convert-ASN1 perl-ldap. TODOS con el
106 >>>
107 >>>
108 >>USE="-postgres -mysql"
109 >>
110 >>
111 >>> Han cambiado los mensajes, pero sigue sin funcionar la
112 >>>
113 >>>
114 >>autencitación
115 >>
116 >>
117 >>>SASL, o el LDAP. Los mensajes los adjunto a continuación: (es lo mas
118 >>>resumido que pude). Una ayudita, por favor?
119 >>>
120 >>>/var/log/debug
121 >>>Dec 12 17:32:19 router master[9177]: setrlimit: Unable to set file
122 >>>descriptors limit to -1: Operation not permitted Dec 12
123 >>>
124 >>>
125 >>17:32:19 router
126 >>
127 >>
128 >>>master[9177]: retrying with 1024 (current max) Dec 12
129 >>>
130 >>>
131 >>17:32:19 router
132 >>
133 >>
134 >>>master[9177]: process started Dec 12 17:32:19 router master[9213]:
135 >>>about to exec /usr/lib/cyrus/ctl_cyrusdb Dec 12 17:32:20 router
136 >>>slapd[9248]: @(#) $OpenLDAP: slapd 2.2.28 (Dec 2
137 >>>2005 16:34:30)
138 >>>$root@router:/var/tmp/portage/openldap-2.2.28-r1/work/openlda
139 >>>
140 >>>
141 >>p-2.2.28/s
142 >>
143 >>
144 >>>erver
145 >>>s/slapd
146 >>>Dec 12 17:32:20 router slapd[9248]: daemon: IPv6 socket() failed
147 >>>errno=97 (Address family not supported by protocol) Dec 12 17:32:20
148 >>>router slapd[9248]: daemon: IPv6 socket() failed errno=97 (Address
149 >>>family not supported by protocol) Dec 12 17:32:20 router
150 >>>ctl_cyrusdb[9213]: recovering cyrus databases Dec 12 17:32:20 router
151 >>>ctl_cyrusdb[9213]: skiplist: recovered /var/imap/mailboxes.db (4
152 >>>records, 704 bytes) in 0 seconds Dec 12 17:32:20 router
153 >>>ctl_cyrusdb[9213]: skiplist: recovered /var/imap/annotations.db (0
154 >>>records, 144 bytes) in 0 seconds Dec 12 17:32:20 router
155 >>>ctl_cyrusdb[9213]: done recovering cyrus databases Dec 12 17:32:21
156 >>>router master[9177]: ready for work Dec 12 17:32:21 router
157 >>>master[9297]: about to exec /usr/lib/cyrus/tls_prune Dec 12 17:32:21
158 >>>router master[9298]: about to exec /usr/lib/cyrus/ctl_deliver Dec 12
159 >>>17:32:21 router master[9299]: about to exec
160 >>>
161 >>>
162 >>/usr/lib/cyrus/ctl_cyrusdb
163 >>
164 >>
165 >>>Dec 12 17:32:21 router ctl_cyrusdb[9299]: checkpointing
166 >>>
167 >>>
168 >>cyrus databases
169 >>
170 >>
171 >>>Dec 12 17:32:21 router ctl_cyrusdb[9299]: archiving database file:
172 >>>/var/imap/annotations.db
173 >>>Dec 12 17:32:21 router ctl_cyrusdb[9299]: archiving log file:
174 >>>/var/imap/db/log.0000000001
175 >>>Dec 12 17:32:21 router ctl_cyrusdb[9299]: archiving database file:
176 >>>/var/imap/mailboxes.db
177 >>>Dec 12 17:32:21 router ctl_cyrusdb[9299]: archiving log file:
178 >>>/var/imap/db/log.0000000001
179 >>>Dec 12 17:32:21 router ctl_cyrusdb[9299]: done checkpointing cyrus
180 >>>databases Dec 12 17:32:21 router master[9177]: process 9299 exited,
181 >>>status 0 Dec 12 17:32:21 router tls_prune[9297]: tls_prune: purged 0
182 >>>out of 0 entries Dec 12 17:32:21 router slapd[9248]: bdb_db_init:
183 >>>Initializing BDB database Dec 12 17:32:21 router
184 >>>
185 >>>
186 >>master[9177]: process
187 >>
188 >>
189 >>>9297 exited, status 0 Dec 12 17:32:21 router cyr_expire[9298]:
190 >>>duplicate_prune: pruning back 3 days Dec 12 17:32:21 router
191 >>>cyr_expire[9298]: duplicate_prune: purged 0 out of 3 entries Dec 12
192 >>>17:32:21 router cyr_expire[9298]: expunged 0 out of 0
193 >>>
194 >>>
195 >>messages from 0
196 >>
197 >>
198 >>>mailboxes Dec 12 17:32:21 router slapd[9300]: slapd starting Dec 12
199 >>>17:32:21 router master[9177]: process 9298 exited, status 0
200 >>>
201 >>>((Al hacer un chequeo de la cuenta imap)) Dec 12 18:00:42 router
202 >>>master[9830]: about to exec /usr/lib/cyrus/imapd Dec 12
203 >>>
204 >>>
205 >>18:00:42 router
206 >>
207 >>
208 >>>imap[9830]: executed Dec 12 18:00:42 router imap[9830]: accepted
209 >>>connection Dec 12 18:00:42 router slapd[9356]: conn=7 fd=13
210 >>>
211 >>>
212 >>ACCEPT from
213 >>
214 >>
215 >>>IP=10.0.0.30:35107 (IP=0.0.0.0:389)
216 >>>Dec 12 18:00:42 router slapd[9755]: conn=7 op=0 BIND
217 >>>dn="cn=Manager,dc=funedu,dc=org,dc=ar" method=128 Dec 12 18:00:42
218 >>>router slapd[9755]: conn=7 op=0 BIND
219 >>>dn="cn=Manager,dc=funedu,dc=org,dc=ar" mech=SIMPLE ssf=0 Dec 12
220 >>>18:00:42 router slapd[9755]: conn=7 op=0 RESULT tag=97 err=0
221 >>>
222 >>>
223 >>text= Dec
224 >>
225 >>
226 >>>12 18:00:42 router slapd[9755]: conn=7 op=1 SRCH
227 >>>base="dc=funedu,dc=org,dc=ar" scope=2 deref=0 filter="(uid=foz)"
228 >>>Dec 12 18:00:42 router slapd[9755]: conn=7 op=1 SRCH attr=dn Dec 12
229 >>>18:00:42 router imap[9830]: badlogin: [1.1.50.126] plaintext foz
230 >>>SASL(-13): authentication failure: checkpass failed Dec 12 18:00:42
231 >>>router slapd[9755]: conn=7 op=1 SEARCH RESULT tag=101 err=0
232 >>>
233 >>>
234 >>nentries=0
235 >>
236 >>
237 >>>text= Dec 12 18:00:50 router slapd[9356]: conn=8 fd=16 ACCEPT from
238 >>>IP=10.0.0.30:35108 (IP=0.0.0.0:389)
239 >>>Dec 12 18:00:50 router slapd[9755]: conn=8 op=0 BIND
240 >>>dn="cn=Manager,dc=funedu,dc=org,dc=ar" method=128 Dec 12 18:00:50
241 >>>router slapd[9755]: conn=8 op=0 BIND
242 >>>dn="cn=Manager,dc=funedu,dc=org,dc=ar" mech=SIMPLE ssf=0 Dec 12
243 >>>18:00:50 router slapd[9755]: conn=8 op=0 RESULT tag=97 err=0
244 >>>
245 >>>
246 >>text= Dec
247 >>
248 >>
249 >>>12 18:00:50 router slapd[9755]: conn=8 op=1 SRCH
250 >>>base="dc=funedu,dc=org,dc=ar" scope=2 deref=0 filter="(uid=foz)"
251 >>>Dec 12 18:00:50 router slapd[9755]: conn=8 op=1 SRCH attr=dn Dec 12
252 >>>18:00:50 router slapd[9755]: conn=8 op=1 SEARCH RESULT tag=101 err=0
253 >>>nentries=0 text= Dec 12 18:00:50 router imap[9830]: badlogin:
254 >>>[1.1.50.126] plaintext foz
255 >>>SASL(-13): authentication failure: checkpass failed Dec 12 18:01:01
256 >>>router imap[9830]: badlogin: [1.1.50.126] plaintext
257 >>>
258 >>>
259 >>foz/funedu.org.ar
260 >>
261 >>
262 >>>invalid user
263 >>>
264 >>>/var/log/auth.log
265 >>>Dec 12 17:32:19 router saslauthd[9163]: detach_tty :
266 >>>
267 >>>
268 >>master pid is:
269 >>
270 >>
271 >>>9163
272 >>>Dec 12 17:32:19 router saslauthd[9163]: ipc_init :
273 >>>
274 >>>
275 >>listening on
276 >>
277 >>
278 >>>socket: /var/lib/sasl2/mux
279 >>>Dec 12 17:32:20 router slapd[9248]: auxpropfunc error
280 >>>
281 >>>
282 >>invalid parameter
283 >>
284 >>
285 >>>supplied Dec 12 17:32:20 router slapd[9248]:
286 >>>
287 >>>
288 >>_sasl_plugin_load failed
289 >>
290 >>
291 >>>on sasl_auxprop_plug_init for plugin: ldapdb
292 >>>
293 >>>((Al hacer un chequeo de la cuenta imap)) Dec 12 18:00:42 router
294 >>>imap[9830]: auxpropfunc error invalid parameter supplied Dec 12
295 >>>18:00:42 router imap[9830]: _sasl_plugin_load failed on
296 >>>sasl_auxprop_plug_init for plugin: ldapdb Dec 12 18:00:42 router
297 >>>saslauthd[9164]: Entry not found ((uid=foz)).
298 >>>Dec 12 18:00:42 router saslauthd[9164]: Authentication
299 >>>
300 >>>
301 >>failed for foz:
302 >>
303 >>
304 >>>User not found (-6)
305 >>>Dec 12 18:00:42 router saslauthd[9164]: do_auth :
306 >>>
307 >>>
308 >>auth failure:
309 >>
310 >>
311 >>>[user=foz] [service=imap] [realm=] [mech=ldap]
312 >>>
313 >>>
314 >>[reason=Unknown] Dec 12
315 >>
316 >>
317 >>>18:00:50 router saslauthd[9165]: Entry not found ((uid=foz)).
318 >>>Dec 12 18:00:50 router saslauthd[9165]: Authentication
319 >>>
320 >>>
321 >>failed for foz:
322 >>
323 >>
324 >>>User not found (-6)
325 >>>Dec 12 18:00:50 router saslauthd[9165]: do_auth :
326 >>>
327 >>>
328 >>auth failure:
329 >>
330 >>
331 >>>[user=foz] [service=imap] [realm=] [mech=ldap]
332 >>>
333 >>>
334 >>[reason=Unknown] Dec 12
335 >>
336 >>
337 >>>18:01:01 router imap[9830]: bad userid authenticated
338 >>>
339 >>>Facundo
340 >>>
341 >>>
342 >>>
343 >>>
344 >>>
345 >>>
346 >>--
347 >>Ángel Cervera Claudio
348 >>Freelance / desarrollos j2ee
349 >>web: http://www.acervera.com
350 >>email: angel@××××××××.com
351 >>tlf: 670819234 / 985308170
352 >>
353 >>Avda. de la Argentina, 132
354 >>33213 - Gijón (Asturias) - Spain
355 >>
356 >>- Mensajería ---------------------
357 >>msn: angelcervera@××××××××××.com
358 >>yahoo: angelcervera
359 >>aol: angelcervera
360 >>jabber: angelcervera en jabber.org
361 >>google talk: angelcervera
362 >>skype: angelcervera
363 >>
364 >>--
365 >>gentoo-user-es@g.o mailing list
366 >>
367 >>
368 >>
369 >>
370 >
371 >
372 >
373
374
375 --
376 Ángel Cervera Claudio
377 Freelance / desarrollos j2ee
378 web: http://www.acervera.com
379 email: angel@××××××××.com
380 tlf: 670819234 / 985308170
381
382 Avda. de la Argentina, 132
383 33213 - Gijón (Asturias) - Spain
384
385 - Mensajería ---------------------
386 msn: angelcervera@××××××××××.com
387 yahoo: angelcervera
388 aol: angelcervera
389 jabber: angelcervera en jabber.org
390 google talk: angelcervera
391 skype: angelcervera
392
393 --
394 gentoo-user-es@g.o mailing list

Replies

Subject Author
RE: [gentoo-user-es] problemas con postfix + ldap + saslauthd Facundo Ortiz <facundooz@××××××××××××.ar>
Re: [gentoo-user-es] problemas con postfix + ldap + saslauthd "Arnau Bria Ramírez" <arnau@×××××××××.net>