Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Could not start TLS. Please check your LDAP server configuration. #217

Open
EmadHelmi opened this issue Nov 5, 2024 · 0 comments
Open

Comments

@EmadHelmi
Copy link

Describe the bug
This is my values.yaml file:

replicaCount: 1
replication:
  enabled: false
phpldapadmin:
  enabled: true
  env:
    PHPLDAPADMIN_LDAP_CLIENT_TLS_REQCERT: "never"
  ingress:
    enabled: true
    annotations: {}
    ingressClassName: nginx
    path: /
    pathType: Prefix
    hosts:
    - ldapanel.asanbar.ir
    tls: []
ltb-passwd:
  enabled : true
  ingress:
    enabled: true
    annotations: {}
    # Assuming that ingress-nginx is used
    ingressClassName: nginx
    host: "ssl-ldap2.local"

And I start the helm with this command:
helm install asanbar helm-openldap/openldap-stack-ha -f values.yaml

when I open http://ldapanel.asanbar.ir/ in my browser and enter the auths, I give the mentioned error in the title.

Logs
this is the log of asanbar-0

672a0003.0d623b40 0x7fffbc8106c0 conn=1536 fd=23 ACCEPT from IP=10.1.0.1:62168 (IP=0.0.0.0:1389)
672a0003.0d642dc9 0x7fffbd8126c0 conn=1537 fd=24 ACCEPT from IP=10.1.0.1:62170 (IP=0.0.0.0:1389)
672a0003.0d678c6a 0x7fffbd8126c0 conn=1537 fd=24 closed (connection lost)
672a0003.0d68d996 0x7fffbd0116c0 conn=1536 fd=23 closed (connection lost)
672a0009.0b9a1dcd 0x7fffbe0136c0 conn=1538 fd=23 ACCEPT from IP=10.1.0.93:54014 (IP=0.0.0.0:1389)
672a0009.0ba34ed4 0x7fffbc8106c0 conn=1538 op=0 EXT oid=1.3.6.1.4.1.1466.20037
672a0009.0ba5141d 0x7fffbc8106c0 conn=1538 op=0 do_extended: unsupported operation "1.3.6.1.4.1.1466.20037"
672a0009.0ba9f8e2 0x7fffbc8106c0 conn=1538 op=0 RESULT tag=120 err=2 qtime=0.000074 etime=0.000717 text=unsupported extended operation
672a0009.0bbe9e87 0x7fffbd8126c0 conn=1538 op=1 BIND dn="cn=admin,dc=example,dc=org" method=128
672a0009.0bd938e9 0x7fffbd8126c0 conn=1538 op=1 RESULT tag=97 err=49 qtime=0.000032 etime=0.002098 text=
672a0009.0be3f73c 0x7fffbd0116c0 conn=1538 op=2 UNBIND
672a0009.0bf249bd 0x7fffbd0116c0 conn=1538 fd=23 closed
672a000d.0d65cfef 0x7fffbc8106c0 conn=1540 fd=24 ACCEPT from IP=10.1.0.1:62190 (IP=0.0.0.0:1389)
672a000d.0d65bb6d 0x7fffbe0136c0 conn=1539 fd=23 ACCEPT from IP=10.1.0.1:62192 (IP=0.0.0.0:1389)
672a000d.0d68b28b 0x7fffbd8126c0 conn=1539 fd=23 closed (connection lost)
672a000d.0d696eb1 0x7fffbc8106c0 conn=1540 fd=24 closed (connection lost)
672a0017.0d591df4 0x7fffbd0116c0 conn=1541 fd=23 ACCEPT from IP=10.1.0.1:55886 (IP=0.0.0.0:1389)
672a0017.0d592353 0x7fffbe0136c0 conn=1542 fd=25 ACCEPT from IP=10.1.0.1:55876 (IP=0.0.0.0:1389)
672a0017.0d6058de 0x7fffbe0136c0 conn=1542 fd=25 closed (connection lost)
672a0017.0d61cc49 0x7fffbd8126c0 conn=1541 fd=23 closed (connection lost)
672a0021.0d720250 0x7fffbc8106c0 conn=1543 fd=23 ACCEPT from IP=10.1.0.1:57076 (IP=0.0.0.0:1389)
672a0021.0d74daaa 0x7fffbd0116c0 conn=1544 fd=25 ACCEPT from IP=10.1.0.1:57092 (IP=0.0.0.0:1389)
672a0021.0d77d5b0 0x7fffbe0136c0 conn=1543 fd=23 closed (connection lost)
672a0021.0d7b18f9 0x7fffbe0136c0 conn=1544 fd=25 closed (connection lost)
672a002b.0d6029cf 0x7fffbc8106c0 conn=1545 fd=23 ACCEPT from IP=10.1.0.1:59136 (IP=0.0.0.0:1389)
672a002b.0d610753 0x7fffbe0136c0 conn=1546 fd=25 ACCEPT from IP=10.1.0.1:59128 (IP=0.0.0.0:1389)
672a002b.0d692b26 0x7fffbc8106c0 conn=1545 fd=23 closed (connection lost)
672a002b.0d6cf8f1 0x7fffbd8126c0 conn=1546 fd=25 closed (connection lost)
672a0035.0d6de03f 0x7fffbd0116c0 conn=1547 fd=23 ACCEPT from IP=10.1.0.1:64834 (IP=0.0.0.0:1389)
672a0035.0d6df4c1 0x7fffbe0136c0 conn=1548 fd=25 ACCEPT from IP=10.1.0.1:64832 (IP=0.0.0.0:1389)
672a0035.0d70583e 0x7fffbd8126c0 conn=1548 fd=25 closed (connection lost)
672a0035.0d71487a 0x7fffbc8106c0 conn=1547 fd=23 closed (connection lost)
672a003f.0d6dd095 0x7fffbe0136c0 conn=1549 fd=23 ACCEPT from IP=10.1.0.1:59582 (IP=0.0.0.0:1389)
672a003f.0d6dd236 0x7fffbd0116c0 conn=1550 fd=25 ACCEPT from IP=10.1.0.1:59584 (IP=0.0.0.0:1389)
672a003f.0d7324ad 0x7fffbd8126c0 conn=1549 fd=23 closed (connection lost)
672a003f.0d764863 0x7fffbc8106c0 conn=1550 fd=25 closed (connection lost)
672a0049.0d8c120b 0x7fffbd8126c0 conn=1551 fd=24 ACCEPT from IP=10.1.0.1:56690 (IP=0.0.0.0:1389)
672a0049.0d8bbbc8 0x7fffbd0116c0 conn=1552 fd=23 ACCEPT from IP=10.1.0.1:56688 (IP=0.0.0.0:1389)
672a0049.0d92c754 0x7fffbe0136c0 conn=1552 fd=23 closed (connection lost)
672a0049.0d9520e4 0x7fffbc8106c0 conn=1551 fd=24 closed (connection lost)

And this is the log of asanbar-phpldapadmin-c9bc9ccdc-5gqxj

10.1.0.67 - - [05/Nov/2024:11:26:10 +0000] "POST /cmd.php HTTP/1.1" 302 429 "http://ldapanel.asanbar.ir/cmd.php?cmd=login_form&server_id=1&redirect=true" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/129.0.0.0 Safari/537.36"
10.1.0.67 - - [05/Nov/2024:11:26:11 +0000] "GET /cmd.php?cmd=login_form&server_id=1&redirect=true HTTP/1.1" 200 2323 "http://ldapanel.asanbar.ir/cmd.php?cmd=login_form&server_id=1&redirect=true" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/129.0.0.0 Safari/537.36"
10.1.0.1 - - [05/Nov/2024:11:26:13 +0000] "GET / HTTP/1.1" 200 4830 "-" "kube-probe/1.30"
10.1.0.1 - - [05/Nov/2024:11:26:13 +0000] "GET / HTTP/1.1" 200 4830 "-" "kube-probe/1.30"
10.1.0.1 - - [05/Nov/2024:11:26:23 +0000] "GET / HTTP/1.1" 200 4830 "-" "kube-probe/1.30"
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant