On Fri, Feb 27, 2009 at 12:19 PM, Ed Avis <eda@xxxxxxxxxxxxx> wrote: > Eric Covener <covener <at> gmail.com> writes: > >>>[Fri Feb 27 13:16:30 2009] [warn] [client 192.168.186.32] [2890] auth_ldap >>>authenticate: user eda authentication failed; URI >>>/cgi-bin/test_auth/index.html >>>[ldap_search_ext_s() for user failed][Operations error] > >>If it made it out onto the wire, wireshark breaks down the protocol pretty >>well. > > Thanks for the suggestion. I logged it with tethereal and got the following: > > 192.168.186.41 -> 192.168.186.8 DNS Standard query A wcl-dc1.wcl.local > 192.168.186.8 -> 192.168.186.41 DNS Standard query response A 192.168.186.8 > 192.168.186.41 -> 192.168.186.8 TCP 35969 > ldap > [SYN] Seq=0 Win=5840 Len=0 MSS=1460 TSV=604241179 TSER=0 WS=6 > 192.168.186.8 -> 192.168.186.41 TCP ldap > 35969 > [SYN, ACK] Seq=0 Ack=1 Win=16384 Len=0 MSS=1460 WS=0 TSV=0 TSER=0 > 192.168.186.41 -> 192.168.186.8 TCP 35969 > ldap > [ACK] Seq=1 Ack=1 Win=5888 Len=0 TSV=604241179 TSER=0 > 192.168.186.41 -> 192.168.186.8 LDAP bindRequest(1) "<ROOT>" simple > 192.168.186.8 -> 192.168.186.41 LDAP bindResponse(1) success This looks anonymous, but it just might be brief output. Might want to capture ldapsearch -D... for comparison -- Eric Covener covener@xxxxxxxxx --------------------------------------------------------------------- The official User-To-User support forum of the Apache HTTP Server Project. See <URL:http://httpd.apache.org/userslist.html> for more info. To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx " from the digest: users-digest-unsubscribe@xxxxxxxxxxxxxxxx For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx