sad could not start TLS encryption

Status
Not open for further replies.

monogrant

Dabbler
Joined
Jan 29, 2015
Messages
10
Hey everyone. I have an LDAP issue. I'm using known good settings from 9.2 for LDAP I'm unable to authenticate in 9.3. I do get all users and groups and can ID them, but I can't authenticate over AFP. I'm getting two messages I can spot when attempting to authenticate.

When connecting via AFP an alert in /var/log/messages:
Jan 29 13:47:03 mplsnewbiz sssd[be[WHITE]]: Could not start TLS encryption. unsupported extended operation
WHITE is my LDAP server. I do not have encryption enabled (set to off, not SSL/TLS) and 9.3 no longer gives the option for password encryption as clear. I suspect this might be the issue?

I'm also seeing a message in /var/log/auth.log
Jan 29 13:49:32 mplsnewbiz afpd[36355]: authentication failure; logname=root uid=0 euid=0 tty=afpd ruser=grantgriffith rhost=10.0.30.149 user=grantgriffith

Jan 29 13:49:32 mplsnewbiz afpd[36355]: received for user grantgriffith: 12 (authentication information is unavailable)
These two message appear each time I attempt to authenticate.

I've dug through my LDAP servers and don't see any errors or even log message that authentication is happening.

Anyone else having issues? Have ideas?
 
Status
Not open for further replies.
Top