[Pkg-sssd-devel] Bug#840617: sssd-ldap STARTTLS issue; plain ldapsearch -ZZ works

Roberto C. Sánchez roberto at connexer.com
Sat Oct 15 01:55:49 UTC 2016


On Thu, Oct 13, 2016 at 11:51:52AM +0200, Francesco Malvezzi wrote:
> Package: sssd-ldap
> Version: 1.14.1-1
> Severity: important
> 
> Dear Maintainer,
> 
> pam-sss doesn't allow login to LDAP users:
> 

I too am affected by this.  I just installed stretch on a new laptop (I
need the newer kernel for hardware support) and when I configured sssd
it simply didn't work.  All my other machines (running jessie) work
fine.  I don't use LDAP for authentication (Kerberos handles that for
me), but I do use it for user information.  So, getent and id would not
work.  The problem (on the LDAP side) manifested itself by terminating
the connection with this message: "An unexpected TLS packet was
received".

I obtained the 1.13.4-3 packages of the various sssd components and
after I installed them everything worked.

If there is something I can do to help identify the problem, please let
me know.

Regards,

-Roberto

-- 
Roberto C. Sánchez
http://people.connexer.com/~roberto
http://www.connexer.com
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-sssd-devel/attachments/20161014/84a47282/attachment.sig>


More information about the Pkg-sssd-devel mailing list