LDAP Error 34: Invalid dn syntax.
(Last modified: 27Feb2006)
This document (10067272) is provided subject to the disclaimer at the end of this document.
fact
GroupWise Support Pack 2
Novell GroupWise 6
GroupWise LDAP Authentication
Authenticating to a different NDS tree for LDAP
symptom
LDAP Error 34: Invalid dn syntax.
cause
GroupWise was building an invalid distinguished name to be passed to LDAP for the other tree
fix
The reason that the dn is reported as being invalid is due to the manner in which the GroupWise Post Office Agent builds the distinguished name that is passed to the LDAP server. GroupWise takes the typeful distinguished NDS name of the user and converts it to an LDAP typeful distinguished name. Thus, cn=user.ou=org.o=novell.t=novell_tree becomes
cn=user, ou=org, o=novell.tree=novell_tree. Since the authentication is being done to an external tree, the tree name will obviously not match and the authentication will fail.
There are two possible solutions to this problem the first is to populate the LDAP Authnentication field on the properties of the user, GroupWise Account tab. This should be populated with the LDAP distinguished name without the tree name:
cn=user, ou=org, o=novell
This will have to be done for each user.
The other solution requires GroupWise 6 Support Pack 2 or later. If the LDAPX.DLL for Windows or the LDAPX.NLM for NetWare is renamed in the directory where the POA executables are found, then the POA will use the NDS Email Address Attribute to authenticate. This attribute is populated automatically by GroupWise if Internet Addressing is enabled. The POA then passes the mail attribute as well as the password supplied by the user logging in to authenticate against LDAP. The other tree must have an exact match in the email address attribute for the authentication to be successful.
There are three Groupwise LDAP modules:
ldapx.nlm
The modify Date on the LDAP modules shipped with Netware 6.5 Support Pack 2 is 11/14/2003.
document
Document Title: | LDAP Error 34: Invalid dn syntax. |
Document ID: | 10067272 |
Solution ID: | NOVL67878 |
Creation Date: | 04Jan2002 |
Modified Date: | 27Feb2006 |
Novell Product Class: | Groupware Novell eDirectory |
disclaimer
The Origin of this information may be internal or external to Novell. Novell makes all reasonable efforts to verify this information. However, the information provided in this document is for your information only. Novell makes no explicit or implied claims to the validity of this information.
Any trademarks referenced in this document are the property of their respective owners. Consult your product manuals for complete trademark information.