ldap怎么看有没有查询用户绑定,如果不成功哪里能看错误信息?
ldap怎么看有没有查询用户绑定,如果不成功哪里能看错误信息?
(0)
最佳答案
以导入用户为例,正常debugging信息如下:
<FW> terminal monitor <FW> terminal debugging <FW> debugging ldap all 阶段1:组装服务器管理员绑定报文,连接LDAP服务器获取查询权限 Apr 18 2017 11:36:17.920.2+08:00 FW LDAP/7/DEBUG:[LDAP(Pkt):] Make a packet of manager bind(Manager DN:uid=manager_user , Base DN:dc=svn5000test,dc=com). Apr 18 2017 11:36:17.920.3+08:00 FW LDAP/7/DEBUG:[LDAP(Pkt):] searchType: 2 DN: uid=manager_user. Apr 18 2017 11:36:17.920.4+08:00 FW LDAP/7/DEBUG:[LDAP(Pkt):] status change to LDAP_FLAG_REQ_MNG_BINDED. Apr 18 2017 11:36:17.920.5+08:00 FW LDAP/7/DEBUG:[LDAP(Evt):] Make search packet OK. Apr 18 2017 11:36:17.920.6+08:00 FW LDAP/7/DEBUG:LDAP Proc AuthAndSearchReq: ulSTNo = 0 server ip is 4018dde;port is 389! Apr 18 2017 11:36:17.920.7+08:00 FW LDAP/7/DEBUG:[ldap_se][04018dde][00000000] Apr 18 2017 11:36:17.920.8+08:00 FW LDAP/7/DEBUG:[LDAP(Evt):] Connect the LDAP server(Server IP:4.1.141.222,port:389) Apr 18 2017 11:36:17.920.9+08:00 FW LDAP/7/DEBUG:[LDAP(Pkt):] Send packet to server OK(Server IP:4.1.141.222,port:389,Socket=1) Apr 18 2017 11:36:17.930.1+08:00 FW LDAP/7/DEBUG:[LDAP(Evt):] Receive a packet of bind success. Apr 18 2017 11:36:17.930.2+08:00 FW LDAP/7/DEBUG:[LDAP(Pkt):] Receive a packet of manager bind result success. 阶段2:根据查询条件到LDAP服务器查询用户并解析查询结果,将用户添加到FW Apr 18 2017 11:36:17.930.3+08:00 FW LDAP/7/DEBUG:[LDAP(Pkt):] Make a packet of search request(SearchRope:2 Attribute:uid SearchDN:ou=director,dc=svn5000test,dc=com Filter:(&(|(objectclass=person)(objectclass=organizationalPerson))(uid=*))) Apr 18 2017 11:36:17.930.4+08:00 FW LDAP/7/DEBUG:LDAP Make Pack:fiter result is (&(|(objectclass=person)(objectclass=organizationalPerson))(uid=*)) Apr 18 2017 11:36:17.930.5+08:00 FW LDAP/7/DEBUG:[LDAP(Pkt):] Reqtype: 5, ulStatus: 1. Apr 18 2017 11:36:17.930.6+08:00 FW LDAP/7/DEBUG:[LDAP(Event):]User DN is uid=user_0001,ou=director,dc=SVN5000test,dc=com. Apr 18 2017 11:36:17.930.7+08:00 FW LDAP/7/DEBUG:[LDAP(Pkt):]LDAP UM Parse Search User Pkt. UserDN: uid=user_0001,ou=director,dc=SVN5000test,dc=com Apr 18 2017 11:36:17.930.8+08:00 FW LDAP/7/DEBUG:[LDAP(Evt):] GroupDN: ou=director,dc=SVN5000test,dc=com, SearchDN: ou=director,dc=svn5000test,dc=com. Apr 18 2017 11:36:17.930.9+08:00 FW LDAP/7/DEBUG:[LDAP(Evt):] LDAP Get UserGroupPath: szLDAPSearchDN: ou=director,dc=svn5000test,dc=com, tempGroupDN: ou=director,dc=svn5000test,dc=com. Apr 18 2017 11:36:17.930.12+08:00 FW LDAP/7/DEBUG:[LDAP(Pkt):] Receive a packet of search result success, Req Type: AAA_LDAP_MSG_SEARCHREQ. Apr 18 2017 11:36:17.930.13+08:00 FW LDAP/7/DEBUG:[LDAP(Pkt):] Receive a packet of search response, Is Page Search: 0. Apr 18 2017 11:36:17.930.14+08:00 FW LDAP/7/DEBUG:[LDAP(Pkt):] Search succeeded. Group Name:user_0001"/director. Apr 18 2017 11:36:17.930.15+08:00 FW LDAP/7/DEBUG:[LDAP(Evt):] Search succeeded. Apr 18 2017 11:36:17.930.16+08:00 FW LDAP/7/DEBUG:[LDAP(Evt):] Send SearchAck To channel 26 :(MsgCode:331, SearchResult:0, FailReason:0, SearchType: 2, GroupNum: 1, GroupLayerNum: 0, GroupBufLen: 20, ulVSysID: 0, TimeStamp: 20151226021310, Data: user_0001"/director)导入发生错误时常见错误信息如下:
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论