Re: [users@httpd]Login difficulty after integration of httpd with LDAP

2016-07-05 Thread Roger Paanini
Eric, I just found the problem: there is a typo in ldap URL: sAMAccountName has an i at the end. After I removed it, it is working fine. AuthLDAPURL "ldaps://my.com:636/DC=my,DC=com?sAMAccountName*i*?sub?( objectclass=user) "

Re: [users@httpd]Login difficulty after integration of httpd with LDAP

2016-07-05 Thread Eric Covener
On Tue, Jul 5, 2016 at 2:32 PM, Roger Paanini wrote: > I have redacted the response to protect confidential info. Do you need the > full response? I don't think so. Could you capture both searches in wireshark and see how they differ at a low level? Something might stand out side-by-side. -- E

Re: [users@httpd]Login difficulty after integration of httpd with LDAP

2016-07-05 Thread Roger Paanini
Eric, this command works perfectly fine: ldapsearch -x -h my.com -D "CN=ldap,OU=acct,DC=my,DC=com" -w * -b "dc=my,dc=com" -s sub "(&(sAMAccountName=testuser)(objectClass=user))" I have redacted the response to protect confidential info. Do you need the full response? Thanks! On Tue, Jul 5,

Re: [users@httpd]Login difficulty after integration of httpd with LDAP

2016-07-05 Thread Eric Covener
On Tue, Jul 5, 2016 at 11:56 AM, Mike Rumph wrote: > [Tue Jul 05 09:23:50.587187 2016] [authnz_ldap:info] [pid 35839:tid > 139644016523008] [client 10.204.1.1:51637] AH01695: auth_ldap authenticate: > user testuser authentication failed; URI /ui [User not found][No such > object] Can you show a

Re: [users@httpd]Login difficulty after integration of httpd with LDAP

2016-07-05 Thread Mike Rumph
Adding a subject for easier tracking On 7/5/2016 8:36 AM, Roger Paanini wrote: Hi Folks, I am trying to integrate httpd with LDAP (Active Directory) but I am running into some trouble: Every time I try to login, here is what I see: Tue Jul 05 09:23:50.471191 2016] [ssl:info] [pid 35839:tid

[users@httpd]

2016-07-05 Thread Roger Paanini
Hi Folks, I am trying to integrate httpd with LDAP (Active Directory) but I am running into some trouble: Every time I try to login, here is what I see: Tue Jul 05 09:23:50.471191 2016] [ssl:info] [pid 35839:tid 139644016523008] [client 10.204.1.1:51637] AH01964: Connection to child 66 establishe

Re: [users@httpd] Date Format of Shell Program Changes in Apache

2016-07-05 Thread Rob McAninch
> On Jul 1, 2016, at 17:50, Yehuda Katz wrote: > > This is because of the locale settings. I changed the script to show the > locale (and to be plain text so the spaces are visible). > >> #!/usr/bin/perl >> use strict; >> print "content-type: text/plain\n\n"; >> print `who`; >> print `locale`

[users@httpd] CVE-2016-4979: HTTPD webserver - X509 Client certificate based authentication can be bypassed when HTTP/2 is used [vs]

2016-07-05 Thread Dirk-Willem van Gulik
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Security Advisory - Apache Software Foundation Apache HTTPD WebServer / httpd.apache.org X509 Client certificate based authentication can be bypassed when HTTP/2 is used CVE-2016-4979

[users@httpd] [ANNOUNCE] Apache HTTP Server 2.4.23 Released

2016-07-05 Thread Jim Jagielski
Apache HTTP Server 2.4.23 Released The Apache Software Foundation and the Apache HTTP Server Project are pleased to announce the release of version 2.4.23 of the Apache HTTP Server ("Apache"). This version of Apache is our latest GA release of the new generation 2.4.x branch of Apache

Re: [users@httpd] httpd-2.2.31 for Solaris

2016-07-05 Thread Kartik Vashishta
Here's how to compile 64 bit https on Solaris Sparc: Apache Build: #! /bin/sh # # Created by configure CC="cc"; export CC CFLAGS="-m64 -xO3"; export CFLAGS LDFLAGS="-m64"; export LDFLAGS "./configure" \ "--with-expat=/usr/sfw" \ "--with-ssl=/usr" \ "--enable-ssl" \ "--enable-proxy"

[users@httpd] httpd-2.2.31 for Solaris

2016-07-05 Thread Pradeep Ks
Can someone share the binaries of httpd-2.2.31 for Solaris? I have no infrastructure to compile and not enough time and expertise to set it up. Thanks.