SHOW:
|
|
- or go back to the newest paste.
1 | [root@proxy squid_kerb_ldap-1.2.2]# ./squid_kerb_ldap -d -g proxy_allow -D MYDOMAIN | |
2 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Starting version 1.2.2 |
2 | + | 2014/08/21 10:59:49| squid_kerb_ldap: Starting version 1.2.2 |
3 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Group list proxy_allow |
3 | + | 2014/08/21 10:59:49| squid_kerb_ldap: Group list proxy_allow |
4 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Group proxy_allow Domain NULL |
4 | + | 2014/08/21 10:59:49| squid_kerb_ldap: Group proxy_allow Domain NULL |
5 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Netbios list NULL |
5 | + | 2014/08/21 10:59:49| squid_kerb_ldap: Netbios list NULL |
6 | - | 2014/08/21 09:25:10| squid_kerb_ldap: No netbios names defined. |
6 | + | 2014/08/21 10:59:49| squid_kerb_ldap: No netbios names defined. |
7 | - | 2014/08/21 09:25:10| squid_kerb_ldap: ldap server list NULL |
7 | + | 2014/08/21 10:59:49| squid_kerb_ldap: ldap server list NULL |
8 | - | 2014/08/21 09:25:10| squid_kerb_ldap: No ldap servers defined. |
8 | + | 2014/08/21 10:59:49| squid_kerb_ldap: No ldap servers defined. |
9 | - | |
9 | + | MYUSER |
10 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Got User: set default domain: MYDOMAIN |
10 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Got User: MYUSER set default domain: MYDOMAIN |
11 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Got User: Domain: MYDOMAIN |
11 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Got User: MYUSER Domain: MYDOMAIN |
12 | - | 2014/08/21 09:25:10| squid_kerb_ldap: User domain loop: group@domain proxy_allow@NULL |
12 | + | 2014/08/21 10:59:53| squid_kerb_ldap: User domain loop: group@domain proxy_allow@NULL |
13 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Default domain loop: group@domain proxy_allow@NULL |
13 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Default domain loop: group@domain proxy_allow@NULL |
14 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Default group loop: group@domain proxy_allow@NULL |
14 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Default group loop: group@domain proxy_allow@NULL |
15 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Found group@domain proxy_allow@NULL |
15 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Found group@domain proxy_allow@NULL |
16 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Setup Kerberos credential cache |
16 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Setup Kerberos credential cache |
17 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Get default keytab file name |
17 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Get default keytab file name |
18 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Got default keytab file name /etc/squid/PROXY.keytab |
18 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Got default keytab file name /etc/squid/PROXY.keytab |
19 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Get principal name from keytab /etc/squid/PROXY.keytab |
19 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Get principal name from keytab /etc/squid/PROXY.keytab |
20 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
20 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
21 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
21 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
22 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
22 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
23 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
23 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
24 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
24 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
25 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
25 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
26 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
26 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
27 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
27 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
28 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
28 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
29 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
29 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
30 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
30 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
31 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
31 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
32 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
32 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
33 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
33 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
34 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
34 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
35 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
35 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
36 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
36 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
37 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has realm name: MYDOMAIN.COM |
37 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has realm name: SUBDOMAIN.DOMAIN.COM |
38 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Set credential cache to MEMORY:squid_ldap_19550 |
38 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Set credential cache to MEMORY:squid_ldap_19655 |
39 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Did not find a principal in keytab for domain MYDOMAIN. |
39 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Did not find a principal in keytab for domain MYDOMAIN. |
40 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Try to get principal of trusted domain. |
40 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Try to get principal of trusted domain. |
41 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has principal: [email protected] |
41 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: [email protected] |
42 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Error while initialising credentials from keytab : Preauthentication failed |
42 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while initialising credentials from keytab : Preauthentication failed |
43 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has principal: [email protected] |
43 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: [email protected] |
44 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Error while initialising credentials from keytab : Preauthentication failed |
44 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while initialising credentials from keytab : Preauthentication failed |
45 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has principal: [email protected] |
45 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: [email protected] |
46 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Error while initialising credentials from keytab : Preauthentication failed |
46 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while initialising credentials from keytab : Preauthentication failed |
47 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has principal: host/[email protected] |
47 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: host/[email protected] |
48 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Error while initialising credentials from keytab : Client not found in Kerberos database |
48 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while initialising credentials from keytab : Client not found in Kerberos database |
49 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has principal: host/[email protected] |
49 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: host/[email protected] |
50 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Error while initialising credentials from keytab : Client not found in Kerberos database |
50 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while initialising credentials from keytab : Client not found in Kerberos database |
51 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has principal: host/[email protected] |
51 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: host/[email protected] |
52 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Error while initialising credentials from keytab : Client not found in Kerberos database |
52 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while initialising credentials from keytab : Client not found in Kerberos database |
53 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Keytab entry has principal: HTTP/[email protected] |
53 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: HTTP/[email protected] |
54 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Found trusted principal name: HTTP/[email protected] |
54 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while getting tgt : Server not found in Kerberos database |
55 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Got principal name HTTP/[email protected] |
55 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: HTTP/[email protected] |
56 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Stored credentials |
56 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while getting tgt : Server not found in Kerberos database |
57 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Initialise ldap connection |
57 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: HTTP/[email protected] |
58 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Canonicalise ldap server name for domain MYDOMAIN |
58 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while getting tgt : Server not found in Kerberos database |
59 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Resolved SRV _ldap._tcp.MYDOMAIN record to dc2.MYDOMAIN.COM |
59 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: [email protected] |
60 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Resolved SRV _ldap._tcp.MYDOMAIN record to dc1.MYDOMAIN.COM |
60 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while getting tgt : Server not found in Kerberos database |
61 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Resolved address 1 of MYDOMAIN to dc1.MYDOMAIN.COM |
61 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: [email protected] |
62 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Resolved address 2 of MYDOMAIN to dc1.MYDOMAIN.COM |
62 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while getting tgt : Server not found in Kerberos database |
63 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Resolved address 3 of MYDOMAIN to dc1.MYDOMAIN.COM |
63 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: [email protected] |
64 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Resolved address 4 of MYDOMAIN to dc2.MYDOMAIN.COM |
64 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while getting tgt : Server not found in Kerberos database |
65 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Resolved address 5 of MYDOMAIN to dc2.MYDOMAIN.COM |
65 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: host/[email protected] |
66 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Resolved address 6 of MYDOMAIN to dc2.MYDOMAIN.COM |
66 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while initialising credentials from keytab : Client not found in Kerberos database |
67 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Adding MYDOMAIN to list |
67 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: host/[email protected] |
68 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Sorted ldap server names for domain MYDOMAIN: |
68 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while initialising credentials from keytab : Client not found in Kerberos database |
69 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Host: dc1.MYDOMAIN.COM Port: 389 Priority: 0 Weight: 100 |
69 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: host/[email protected] |
70 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Host: dc2.MYDOMAIN.COM Port: 389 Priority: 0 Weight: 100 |
70 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while initialising credentials from keytab : Client not found in Kerberos database |
71 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Host: MYDOMAIN Port: -1 Priority: -2 Weight: -2 |
71 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: HTTP/[email protected] |
72 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Setting up connection to ldap server dc1.MYDOMAIN.COM:389 |
72 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while getting tgt : Server not found in Kerberos database |
73 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Bind to ldap server with SASL/GSSAPI |
73 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: HTTP/[email protected] |
74 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Successfully initialised connection to ldap server dc1.MYDOMAIN.COM:389 |
74 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while getting tgt : Server not found in Kerberos database |
75 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Search ldap server with bind path "" and filter: (objectclass=*) |
75 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Keytab entry has principal: HTTP/[email protected] |
76 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Search ldap entries for attribute : schemaNamingContext |
76 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error while getting tgt : Server not found in Kerberos database |
77 | - | 2014/08/21 09:25:10| squid_kerb_ldap: 1 ldap entry found with attribute : schemaNamingContext |
77 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Got no principal name |
78 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Search ldap server with bind path CN=Schema,CN=Configuration,DC=MYDOMAIN,DC=COM and filter: (ldapdisplayname=samaccountname) |
78 | + | 2014/08/21 10:59:53| squid_kerb_ldap: Error during setup of Kerberos credential cache |
79 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Found 1 ldap entry |
79 | + | 2014/08/21 10:59:53| squid_kerb_ldap: User MYUSER is not member of group@domain proxy_allow@NULL |
80 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Determined ldap server as an Active Directory server |
80 | + | |
81 | - | 2014/08/21 09:25:10| squid_kerb_ldap: Search ldap server with bind path dc=MYDOMAIN and filter : (samaccountname=MYUSER) |
81 | + | 2014/08/21 10:59:53| squid_kerb_ldap: ERR |