[Solved] Freeipa v4.5 bind user for LDAP search issue

  • Hi all,

    I need help to create the binddn account for authentication to FreeIPA:

    I created the following user with the ipa-ldap-updater panopsy-binddn.update command.

    When searching with the command ldapsearch -D "cn=Directory Manager" -x uid=panopsy -W I got:

    dn: uid=panopsy,cn=sysaccounts,cn=etc,dc=open-synergy,dc=com
    objectClass: account
    objectClass: simplesecurityobject
    objectClass: top
    uid: panopsy
    userPassword:: xxxxxx

    But then in pfsense when I set  the Bind credentials to: uid=panopsy,cn=sysaccounts,cn=etc,dc=open-synergy,dc=com
    Doesn't work: /diag_authentication.php: ERROR! Could not bind to server xxxxxx

    However, cn="Directory Manager" works like a charm but not safe of course…

    I don't know what I get wrong here.

    Tahnks in advance!

  • I went with creating a user into FreeIPA with Read access.

