Results 1 to 4 of 4

Thread: Zimbra Pam/Samba trouble

  1. #1
    artimus is offline Active Member
    Join Date
    Jul 2007
    Posts
    29
    Rep Power
    8

    Default Zimbra Pam/Samba trouble

    Im following gregs howto() but I'm running into some issues.
    I noticed a few things.


    1. I can bind to ldap from my zimbra server using the following query:
    Code:
    ldapsearch -H ldap://zimbra.domain.tld/ -v -x -W -D 'uid=myadmin,ou=people,dc=zimbra,dc=domain,dc=tld' -s sub '(objectclass=*)' -LL
    If I run this query from another host on the same lan i get the following output:
    Code:
    ldap_initialize( ldap://zimbra.domain.tld/ )
    Enter LDAP Password:
    filter: (objectclass=*)
    requesting: ALL
    version: 1
    
    No such object (32)
    Matched DN: dc=tld
    needless to say, samba and pam are not working

    I don't see posixAccount anywhere in my ldapsearch.

  2. #2
    Greg is offline Zimbra Employee
    Join Date
    Sep 2005
    Location
    Tucson - San Francisco - Moscow
    Posts
    127
    Rep Power
    9

    Default

    OK, here's some troubleshooting/research to do:
    - check your slapd.conf and see if the nis.schema and samba.schema are there in the includes (note: you should not have been editing slapd.conf, because it gets overwritten every time ZCS starts)
    - check your LDAP log to see if it throws any errors when it loads
    - when you are trying to bind log in to the system that is configured to use pam_ldap, pam should make an LDAP query - look into sys log for the query, 1 - see if pam makes the query 2 - what LDAP have to say about it
    Bugzilla - Wiki - Downloads - Before posting... Search!
    P.S.: don't forget to vote on this bug
    add Samba LDAP entries to Exchange Migration Tool

  3. #3
    Greg is offline Zimbra Employee
    Join Date
    Sep 2005
    Location
    Tucson - San Francisco - Moscow
    Posts
    127
    Rep Power
    9

    Default

    Quote Originally Posted by artimus View Post
    1. I can bind to ldap from my zimbra server using the following query:
    Code:
    ldapsearch -H ldap://zimbra.domain.tld/ -v -x -W -D 'uid=myadmin,ou=people,dc=zimbra,dc=domain,dc=tld' -s sub '(objectclass=*)' -LL
    What do you get when you run this query form the same host where LDAP is running?
    Bugzilla - Wiki - Downloads - Before posting... Search!
    P.S.: don't forget to vote on this bug
    add Samba LDAP entries to Exchange Migration Tool

  4. #4
    artimus is offline Active Member
    Join Date
    Jul 2007
    Posts
    29
    Rep Power
    8

    Default

    On the zimbra server I would get nice chunk of ldif from ldap.

    From the other box I was succesfully able to bind using uid=zimbra,cn=admins,cn=zimbra.


    Unfortunately I need to get this mail server up and running sooner then expected. I have already removed all my samba/posix settings, and will save that for a future project when I have time to test.

    It is a little awkward, but It does work. I left off at a point where user and groups were working for a linux box, and users could log into samba from windows and see there home directory.

    Another thing that threw me off for a while was that I am using a subdomain for testing. I could see users in posix but not groups. The problem turned out that I had my groups bound to dc=domain,dc=tld, while my users were bound to dc=zimbra,dc=domain,dc=tld. While simple and obvious, it's amazing how many times I can look over that same line I not notice what I did.

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Replies: 26
    Last Post: 04-19-2011, 09:24 AM
  2. Error loading on Mac OS X 10.4.10 server PPC
    By qprcanada in forum Installation
    Replies: 7
    Last Post: 10-26-2007, 06:25 AM
  3. Zimbra shutdowns every n hours.
    By Andrewb in forum Administrators
    Replies: 13
    Last Post: 08-14-2007, 08:55 AM
  4. 3.1 on FC4 problems
    By cohnhead in forum Installation
    Replies: 8
    Last Post: 05-26-2006, 11:16 AM
  5. port 7071 not listening OS X install
    By leeimber in forum Installation
    Replies: 7
    Last Post: 03-21-2006, 10:47 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •