• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

QNAP LDAP Server - Extended Query Help...

Scheduled Pinned Locked Moved General pfSense Questions
3 Posts 2 Posters 197 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • T
    The Computer Guy
    last edited by Apr 30, 2024, 2:32 PM

    Hello, using a local LDAP Server on a QNAP NAS, and have created a group called vpn on the nas.

    To test that the LDAP is working correctly and getting the correct info, I created a group called vpn on the firewall too. As you can see below, it works, and the test shows that the user is in the group.

    ldap_settings.png

    ldap_result.png

    I'm only using LDAP on pfSense for OpenVPN, so now need to use an extended query to restrict users to just this group, but I just can't seem to get it right, whatever extended query I use, I just get an authentication error. I've got a few boxes that work with MS LDAP great for remote access using pfSense firewalls, so know it can be done!?

    1 Reply Last reply Reply Quote 0
    • S
      stephenw10 Netgate Administrator
      last edited by Apr 30, 2024, 6:04 PM

      Mmm, LDAP queries can be tricky!

      What exactly are you trying? What does it return? Anything logged at the server end?

      Steve

      T 1 Reply Last reply Apr 30, 2024, 8:11 PM Reply Quote 0
      • T
        The Computer Guy @stephenw10
        last edited by Apr 30, 2024, 8:11 PM

        @stephenw10 - I think it should only need to be this query -

        (&(objectClass=posixGroup)(cn=vpn)(memberUid=*))

        I just get a red box on the authentication test page in pfSense -

        The following input errors were detected:

        Authentication failed.

        Unfortunately there doesn't seem to be any LDAP logs generated on the QNAP :(

        1 Reply Last reply Reply Quote 0
        3 out of 3
        • First post
          3/3
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
          This community forum collects and processes your personal information.
          consent.not_received