Just looked at my test solris client.. and got the same error.. It seems "ldapclient -P..." will even complete with the wrong proxyagent password.. (only uses this to create the NS1 password) and fetches the profile anonymous.. so do you get: libsldap: Status: 49 Mesg: openConnection: simple bind failed - Invalid credentials in /var/adm/messages ? > Still, I get this: > > bash-2.03# ldaplist -l passwd > ldaplist: Object not found (LDAP ERROR (50): Insufficient access.) > bash-2.03#