Displaying 20 results from an estimated 5000 matches similar to: "Failed to issue the StartTLS instruction: Decoding error"
2011 Nov 11
1
Samba StartTLS
Hi
Scenario:
Lan with opensuse 11.4 Samba and LDAP server. Linux, win-xp and win7 clients.
The Linux clients can login fine under TLS:
Nov 10 11:31:22 hh1 slapd[1727]: conn=1243 op=0 STARTTLS
Nov 10 11:31:22 hh1 slapd[1727]: conn=1243 op=0 RESULT oid= err=0 text=
Nov 10 11:31:22 hh1 slapd[1727]: conn=1243 fd=23 TLS established tls_ssf=256
ssf=256
Nov 10 11:31:22 hh1 slapd[1727]: conn=1243 op=1
2016 Jan 06
0
Stymied with samba vs openldap SSL ("Failed to issue the StartTLS instruction...")
On 01/06/2016 01:34 PM, Lee Brown wrote:
> On Wed, Jan 6, 2016 at 10:36 AM, Graham Allan <allan at physics.umn.edu
> <mailto:allan at physics.umn.edu>> wrote:
>
> On 01/06/2016 09:53 AM, Graham Allan wrote:
>
>
> The packet dump is a good idea. I get the same failure using
> straight
> SSL to port 636, but wireshark might be able
2009 Jul 07
2
Samba configuration error
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Does anyone know what this error means:
[root@ldap2 samba]# net getlocalsid
[2009/07/07 17:04:00, 0] lib/smbldap.c:smb_ldap_start_tls(600)
Failed to issue the StartTLS instruction: Protocol error
[2009/07/07 17:04:01, 0] lib/smbldap.c:smb_ldap_start_tls(600)
Failed to issue the StartTLS instruction: Protocol error
[2009/07/07 17:04:02, 0]
2016 Jan 06
1
Stymied with samba vs openldap SSL ("Failed to issue the StartTLS instruction...")
On Wed, Jan 6, 2016 at 12:56 PM, Graham Allan <allan at physics.umn.edu> wrote:
> On 01/06/2016 01:34 PM, Lee Brown wrote:
>
>> On Wed, Jan 6, 2016 at 10:36 AM, Graham Allan <allan at physics.umn.edu
>> <mailto:allan at physics.umn.edu>> wrote:
>>
>> On 01/06/2016 09:53 AM, Graham Allan wrote:
>>
>>
>> The packet dump
2016 Jan 06
3
Stymied with samba vs openldap SSL ("Failed to issue the StartTLS instruction...")
On Wed, Jan 6, 2016 at 10:36 AM, Graham Allan <allan at physics.umn.edu> wrote:
> On 01/06/2016 09:53 AM, Graham Allan wrote:
>
>>
>> The packet dump is a good idea. I get the same failure using straight
>> SSL to port 636, but wireshark might be able to decode any StartTLS
>> negotiation attempt on the default port. Failing that I guess I'll
>>
2006 Jul 18
1
Weird statup probems TLS & SSL openldap and samba 3.0.23
Hello,
I am kind of confused with this situation. I am attempting to build a
PDC using TLS/SSL with the following version of software.
Samba 3.0.23
OpenLDAP 2.3.19
Fedora Core 5
When I startup the Samba server via the "service" command (service smb
start) I get the following errors in my logs.
Using SSL:
Jul 13 09:52:34 prism smbd[23161]: smbldap_search_suffix: Problem
during
2006 Feb 19
1
samba as PDC with ldap
I have read louis`s howto from december, tried to use kunbuntu, this failed at the ldap server test stage, tried various things, could not make it work, so downloaded debian.
Followed louis`s howto and compiled a 2.6.8 kernel (louis, the compile instructions do not work as given).
Followed the howto, downloaded samba etc, setup slapd etc as per instructions and it failed again at the same place.
2013 May 16
3
Samba 3.x server with LDAP backend doesn't work
We have a central LDAP server for our enterprise on a Linux box. I have installed Samba 3.4.4 server on an AIX server and trying to get users authenticated via LDAP server. So far my efforts have been unsuccessful. Here is my ldap section of the smb.conf file:
passdb backend = ldapsam:ldaps://<company_ldap_server>/
ldap ssl = start tls
ldap suffix = dc=xxx,dc=yyy,dc=zzz
ldap delete dn =
2009 Sep 09
0
ldap ssl = Off dont work
Hi
I have Samba 3.4.0 and slapd 2.4.15 .
In my samba log appears this lines again and again:
[2009/09/09 01:53:31, 0] lib/smbldap.c:smb_ldap_start_tls(600)
Failed to issue the StartTLS instruction: Protocol error
[2009/09/09 01:53:31, 1] lib/smbldap.c:another_ldap_try(1175)
Connection to LDAP server failed for the 1 try!
this means he cant connect to the LDAP Server because he want uses
1999 Dec 30
0
SAMBA digest 2359
Hello Samba,
???????, 30 ??????? 99, you wrote:
sso> SAMBA Digest 2359
sso> For information on unsubscribing see http://lists.samba.org/
sso> Topics covered in this issue include:
sso> 1) Re: Unix .TXT vs DOS .TXT files
sso> by Gerry Creager N5JXS <gerry@cs.tamu.edu>
sso> 2) Switching user share on NT and smbd spawning
sso>
2009 Sep 17
0
Samba 3.4.1 BDC fails
Hi!
We are using 2 Samba 3.4.1 on CentOS 5.3.
The PDC is working without bigger problems,
but I can't get the BDC to work.
We have a replica of the ldap on the BDC and I
tried the connect with an linux smbclient and
with the standard mount -t cifs
both not sucessfull:
smbclient:
Receiving SMB: Server stopped responding
session setup failed: Call timed out: server did not respond after
2002 Sep 09
0
Multiple Nics / Multiple Workgroups
Can someone send me some example configs etc for
a 3 nic card , 3 workgroup setup
(ie : 192.168.10.x is workgroup sso, 192.168.32.x is nscc , 192.168.64.x
is crc)
I want each to be basically separate from the next (when used this way
does it even pay attention to the workgroup = in the global of each
conf file?)
so far I have a smb.conf / smb.conf.nscc / smb.conf.sso
2018 Oct 04
2
CentOS 7.5, Apache 2.4, Kerberos
Hi List,
My goal in sending this email is to get some direction on where to start
looking to solve my problem. Thank you all in advance for reading through
this and providing any guidance!
I'm working on moving to new servers, upgrading from CentOS 6.7 to CentOS
7.5. In this move, we are also upgrading from Apache/2.2.15 to Apache/
2.4.33. Our servers are all sitting behind a load
2007 Mar 17
0
Kerberos + Windows XP + Samba
Dear list members,
i am trying to implement SSO solution on my windows network. Right
now, for testing purposes, i have setted a kerberos server to
authenticate my users. Using this kerberos server, i am able to log on
any of my unix workstations. Users information is retrieve from nis
and the authentication process is performed by keberos on its all.
Done so with unix, i starting testing with
2018 Sep 18
0
Using both starttls and ssl in passdb on proxy results in timeouts
I tried some more things, such as setting starttls=NULL or ssl=NULL, which does the same as setting it to ?no?. Interestingly, if I set ssl=NULL and don?t set starttls at all, it still tries an SSL connection to the backend.
Is there no way to use starttls or ssl depending on a variable? It could also be possible that I have starttls-backends and ssl-backends which would be a similar use-case to
2007 Jan 11
2
STARTTLS: read error=generic SSL error (0)"
Hi All,
I am runnig sendmail 8.12.8. I am getting the below error.
[root at mail MailScanner]# tail -f /var/log/maillog
Jan 11 11:20:40 mail sendmail[10646]: STARTTLS: read error=generic SSL error
(0)
Jan 11 11:20:41 mail last message repeated 22494 times
Jan 11 11:20:41 mail sendmail[10646]: STARTTLS: read error=generic SSL error
(0)
Jan 11 11:20:41 mail last message repeated 8894 times
Jan 11
2017 Nov 23
3
Dovecot LMTP Proxy + STARTTLS?
Hi
I got dovecot 2.2.26 on a Centos7 with latest updates. Dovecot is
configured to act as director and delivers to my two backend servers.
I enabled lmtp proxy on director to listen on port 24.
Now I see in msg headers that the connection to the lmtp proxy uses
STARTTLS but the connection from proxy to backend seems to be
unencrypted. Is it possible to enforce the use of STARTTLS in the
2004 Jan 06
3
SSL and STARTTLS
I wanted to enable SSL on some alternate ports so that a limited number
of people could try SSL access. But doing so enabled STARTTLS in
IMAP, so that all IMAP users got surprised (at least those whose
clients attempted to use it automatically).
e.g.:
# IP or host address where to listen in for SSL connections. Defaults
# to above non-SSL equilevants if not specified.
imaps_listen =
2009 Jan 15
3
Enforcing STARTTLS for all mechs while disabling imaps
Hi all,
Is there a way to enforce STARTTLS for all connections, regardless their
authentication mechanism? disable_plaintext_auth only takes care of the auth
conversation, but I would like to have all communication encrypted.
As far as I can see, this would only be possible when using imaps and
disabling imap. However, I would like to have the other way around;
disabling imaps and using imap for
2007 Jan 12
1
Entourage X and Sendmail STARTTLS on CentOS 4.4
I have a user who has Mac OS 10.4.8 with Entourage X. The email server
is sendmail 8.13.8 and is setup to use STARTTLS on a CentOS 4.4 system.
It appears from everything I have googled that only Entourage 2004 will
properly function with STARTTLS. Has anybody any experience with
Entourage X ... specifically is there something I am missing regarding
the CentOS server setup or are all Entourage