Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 6 Feb 2014 21:27:58 +0100
From:      Yoann Gini <yoann.gini@gmail.com>
To:        freebsd-questions@freebsd.org
Subject:   FreeBSD 10 and Heimdal with LDAP backend
Message-ID:  <CB750AD3-C09F-4172-A47A-6DFE39DB8B1E@gmail.com>

next in thread | raw e-mail | index | archive | help

[-- Attachment #1 --]
Hello,

Im Yoann Gini and Im new on this list. Im a system administrator specialized on OS X and OS X Server. I run an FreeBSD server for my personal usage.

I actually trying to install a new server on FreeBSD 10. Ive installed most of my necessary ports but Ive a problem with the Heimdal port.

Ive installed it with the LDAP backend (to use an OpenLDAP as the Kerberos backend database, its better for server sync) then Ive recreated my configuration to use it (see the interesting part below).

When I try to start the server, it fail and I get this message in debug.log

Feb  6 21:09:16 turing kdc[79684]: error trying to load dynamic module /usr/lib/hdb_ldap.so: Cannot open "/usr/lib/hdb_ldap.so"
Feb  6 21:09:16 turing kdc[79684]: No database support for ldap:ou=Kerberos,dc=authdata

What am I supposed to do with this error? Ive already check the LDAP backend option

If someone have an idea I can be really nice :-)

Ive run find on my system, hdb_ldap.so dont exist at all (neither on FreeBSD 9).

And by the way, why does it look in /usr/lib instead of /usr/local/lib?


krb5.conf:
[kdc]   
        database = {
                dbname = ldap:ou=Kerberos,dc=authdata
                hdb-ldap-structural-object = inetOrgPerson
                mkey_file = /var/db/heimdal/m-key
                acl_file = /var/db/heimdal/acl_file
        }

Best regards,
Yoann.
[-- Attachment #2 --]
0	*H
010	+0	*H
00r'znn0
	*H
0o10	USE10U
AddTrust AB1&0$UAddTrust External TTP Network1"0 UAddTrust External CA Root0
050607080910Z
200530104838Z010	UUS10	UUT10USalt Lake City10U
The USERTRUST Network1!0Uhttp://www.usertrust.com1604U-UTN-USERFirst-Client Authentication and Email0"0
	*H
0
9}A;bF7`u9eJGHjM5BI/|1Nd.)բdąQ5yNh{zɤ2O0nFxoY^/m/묡j.g5yiF͠v:z'[=s"HaLi.1 ,׉CZqYں
gT:
wetbh~GeMW(t40b0,00U#0z4&&T$T0Ug}ĝ&pKPH|=n}0U0U00{Ut0r08642http://crl.comodoca.com/AddTrustExternalCARoot.crl06420http://crl.comodo.net/AddTrustExternalCARoot.crl0
	*H
؉o(~TBk	ĠmאfyCqovE7=YxFz[r-F)Iy<mmhOr6j5PρmUY0JmdI|6i9ZK:
D/p%ZTļms2,雄$-zhP?Mg.;N
&DeMR>k2\Al]Xm=G.̎00mOj3""2zq0
	*H
010	UUS10	UUT10USalt Lake City10U
The USERTRUST Network1!0Uhttp://www.usertrust.com1604U-UTN-USERFirst-Client Authentication and Email0
110428000000Z
200530104838Z010	UGB10UGreater Manchester10USalford10U
COMODO CA Limited1907U0COMODO Client Authentication and Secure Email CA0"0
	*H
0
[KW^/@ȣSX_fe2N2}UxLUB'qi2@'Vbqi c^`ʢAjHmeC*.+c8w߱ڂ2jgo \5Tq
7
PSlY1	LR@[HhJ$:q_㬿;%qh=XF<hmz!W42~JRrd&N`ohQcB}"cөΞD\[5K0G0U#0g}ĝ&pKPH|=n}0UzNt[xcd'/[y{0U0U00U 
00U 0XUQ0O0MKIGhttp://crl.usertrust.com/UTN-USERFirst-ClientAuthenticationandEmail.crl0t+h0f0=+01http://crt.usertrust.com/UTNAddTrustClient_CA.crt0%+0http://ocsp.usertrust.com0
	*H
־xWUm3DRB
JAIZҭsn>&|L0(B<%>
u=9fѡMo(ltZڱuz/yVtCr`9 G:eH<=%`I?C
3_н`j;:<I3B)93i.EMiڀ=]|Gm]W0KID~y83:]&XaU!ՙC@B0Ұun0*02'IP0
	*H
010	UGB10UGreater Manchester10USalford10U
COMODO CA Limited1907U0COMODO Client Authentication and Secure Email CA0
130303000000Z
140303235959Z0%1#0!	*H
	yoann.gini@gmail.com0"0
	*H
0
\紪o1n;ici`AO 3B3:Jol	/SEQ3b
8ijܹotoEiYҴ6ruOwn
 Drk|4)}PbæM5Ͻe!c .Uy3t"]4>+xxO?Vn57;CB%|'1e

+*_00U#0zNt[xcd'/[y{0U}qDU2X2M0U0U00 U%0++10	`HB 0FU ?0=0;+10+0)+https://secure.comodo.net/CPS0WUP0N0LJHFhttp://crl.comodoca.com/COMODOClientAuthenticationandSecureEmailCA.crl0+|0z0R+0Fhttp://crt.comodoca.com/COMODOClientAuthenticationandSecureEmailCA.crt0$+0http://ocsp.comodoca.com0U0yoann.gini@gmail.com0
	*H
-!8AM	!([".lA96PiJvSvubL)Yǂx\T
&K#SLќGۀ'wԺl8Άҕ	Zon/\">DAtK>ubKTPsV٨5yĬkNGVҙ|ĠdM_1vf.՛hGvM^K
=h,K"M-0t^1,To>100010	UGB10UGreater Manchester10USalford10U
COMODO CA Limited1907U0COMODO Client Authentication and Secure Email CA2'IP0	+0	*H
	1	*H
0	*H
	1
140206202760Z0#	*H
	1eE7jGapJ[A0	+710010	UGB10UGreater Manchester10USalford10U
COMODO CA Limited1907U0COMODO Client Authentication and Secure Email CA2'IP0*H
	1010	UGB10UGreater Manchester10USalford10U
COMODO CA Limited1907U0COMODO Client Authentication and Secure Email CA2'IP0
	*H
0HuaWI¡ަj/-ζc!xU+xoYnCdW57[9] EN!@_*uKq-*f)T1ZqԲB$S#Mf2eL 7_?):Fy,8_n=Yxrg!+L∦5IJU۸AA+u-hڤS\
Mx)&g>jYE"<csq𘲙

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CB750AD3-C09F-4172-A47A-6DFE39DB8B1E>