[sudo-users] Can't use sudo with SSL/LDAP

Aaron Spangler aaron777 at gmail.com
Tue Apr 26 16:03:49 EDT 2005


Which LDAP libraries did you compile Sudo against? 
Also, could you please let us know the relevant parts of the
/etc/ldap.conf file?

Maybe we can help.

- Aaron

On 4/14/05, Matt Juszczak <matt at atopia.net> wrote:
> OK, it was working until I started requiring SSL and closed off the 300
> port (leaving 636 only port open)
> I get the correct LDAP Summary, with my password, ssl on, binddn,
> sudoers_base, ldapversion, etc.
> Then it says:
> ldap_init(myserver.mydomain.net,636)
> ldap_set_option(LDAP_OPT_PROTOCOL_VERSION,0x03)
> ldap_simple_bind_s()=-1 : Can't contact LDAP server
> sysaccount is not in the sudoers file.  This incident will be reported.
> All other sudo functionality works, including authentication, finger, id,
> etc. etc.  Any ideas?
