rlm_ldap and large AD structure issue

Alan DeKok aland at deployingradius.com
Fri Feb 22 18:45:18 CET 2008


Capelle, Mark (PCMC-GB) wrote:
> I have an issue since pointing FR to a point higher in my AD tree (which
> will return more objects).  I get the following error in my FR logs when
> I try to authenticate a user:
>
> Fri Feb 22 10:37:14 2008 : Error: rlm_ldap: ldap_search() failed:
> Operations error

  That's usually do to internal AD redirects, IIRC.

  See also doc/rlm_ldap, which talks about "operations error".

> Has anyone else encountered this and found a solution?  I am fighting
> like hell to not install the corporate standard Cisco ACS box at my
> site, but if I can’t manage to get this working I may have to finally
> cave L.

  Ugh.  Most sites I hear about are moving away from commercial products
to FreeRADIUS.

  Alan DeKok.



More information about the Freeradius-Users mailing list