Aug 28 07:46:16 box1 slapd[26116]: daemon: activity on 1 descriptor Aug 28 07:46:16 box1 slapd[26116]: daemon: activity on: Aug 28 07:46:16 box1 slapd[26116]: Aug 28 07:46:16 box1 slapd[26116]: >>> slap_listener(ldap:///) Aug 28 07:46:16 box1 slapd[26116]: daemon: listen=7, new connection on 12 Aug 28 07:46:16 box1 slapd[26116]: daemon: added 12r (active) listener=(nil) Aug 28 07:46:16 box1 slapd[26116]: conn=2 fd=12 ACCEPT from IP=127.0.0.1:34065 (IP=0.0.0.0:389) Aug 28 07:46:16 box1 slapd[26116]: daemon: epoll: listen=7 active_threads=0 tvp=NULL Aug 28 07:46:16 box1 slapd[26116]: daemon: epoll: listen=8 active_threads=0 tvp=NULL Aug 28 07:46:16 box1 ldapwhoami: SRP client step 1 Aug 28 07:46:16 box1 ldapwhoami: SRP client step 1 Aug 28 07:46:16 box1 slapd[26116]: daemon: activity on 1 descriptor Aug 28 07:46:16 box1 slapd[26116]: daemon: activity on: Aug 28 07:46:16 box1 slapd[26116]: 12r Aug 28 07:46:16 box1 slapd[26116]: Aug 28 07:46:16 box1 slapd[26116]: daemon: read active on 12 Aug 28 07:46:16 box1 slapd[26116]: connection_get(12) Aug 28 07:46:16 box1 slapd[26116]: connection_get(12): got connid=2 Aug 28 07:46:16 box1 slapd[26116]: connection_read(12): checking for input on id=2 Aug 28 07:46:16 box1 slapd[26116]: daemon: epoll: listen=7 active_threads=0 tvp=NULL Aug 28 07:46:16 box1 slapd[26116]: do_bind Aug 28 07:46:16 box1 slapd[26116]: >>> dnPrettyNormal: <> Aug 28 07:46:16 box1 slapd[26116]: <<< dnPrettyNormal: <>, <> Aug 28 07:46:16 box1 slapd[26116]: do_sasl_bind: dn () mech SRP Aug 28 07:46:16 box1 slapd[26116]: conn=2 op=0 BIND dn="" method=163 Aug 28 07:46:16 box1 slapd[26116]: ==> sasl_bind: dn="" mech=SRP datalen=27 Aug 28 07:46:16 box1 slapd[26116]: SRP server step 1 Aug 28 07:46:16 box1 slapd[26116]: SASL Canonicalize [conn=2]: authcid="syncrepl" Aug 28 07:46:16 box1 slapd[26116]: slap_sasl_getdn: conn 2 id=syncrepl [len=8] Aug 28 07:46:16 box1 slapd[26116]: slap_sasl_getdn: u:id converted to uid=syncrepl,cn=SRP,cn=auth Aug 28 07:46:16 box1 slapd[26116]: >>> dnNormalize: Aug 28 07:46:16 box1 slapd[26116]: <<< dnNormalize: Aug 28 07:46:16 box1 slapd[26116]: ==>slap_sasl2dn: converting SASL name uid=syncrepl,cn=srp,cn=auth to a DN Aug 28 07:46:16 box1 slapd[26116]: slap_authz_regexp: converting SASL name uid=syncrepl,cn=srp,cn=auth Aug 28 07:46:16 box1 slapd[26116]: slap_authz_regexp: converted SASL name to uid=syncrepl,dc=example,dc=com Aug 28 07:46:16 box1 slapd[26116]: slap_parseURI: parsing uid=syncrepl,dc=example,dc=com Aug 28 07:46:16 box1 slapd[26116]: >>> dnNormalize: Aug 28 07:46:16 box1 slapd[26116]: <<< dnNormalize: Aug 28 07:46:16 box1 slapd[26116]: <==slap_sasl2dn: Converted SASL name to uid=syncrepl,dc=example,dc=com Aug 28 07:46:16 box1 slapd[26116]: slap_sasl_getdn: dn:id converted to uid=syncrepl,dc=example,dc=com Aug 28 07:46:16 box1 slapd[26116]: SASL Canonicalize [conn=2]: slapAuthcDN="uid=syncrepl,dc=example,dc=com" Aug 28 07:46:16 box1 slapd[26116]: => hdb_search Aug 28 07:46:16 box1 slapd[26116]: bdb_dn2entry("uid=syncrepl,dc=example,dc=com") Aug 28 07:46:16 box1 slapd[26116]: base_candidates: base: "uid=syncrepl,dc=example,dc=com" (0x00000002) Aug 28 07:46:16 box1 slapd[26116]: => test_filter Aug 28 07:46:16 box1 slapd[26116]: PRESENT Aug 28 07:46:16 box1 slapd[26116]: => access_allowed: auth access to "uid=syncrepl,dc=example,dc=com" "objectClass" requested Aug 28 07:46:16 box1 slapd[26116]: => dn: [3] dc=example,dc=com Aug 28 07:46:16 box1 slapd[26116]: => acl_get: [3] matched Aug 28 07:46:16 box1 slapd[26116]: => acl_get: [3] attr objectClass Aug 28 07:46:16 box1 slapd[26116]: => acl_mask: access to entry "uid=syncrepl,dc=example,dc=com", attr "objectClass" requested Aug 28 07:46:16 box1 slapd[26116]: => acl_mask: to all values by "", (=0) Aug 28 07:46:16 box1 slapd[26116]: <= check a_dn_pat: * Aug 28 07:46:16 box1 slapd[26116]: <= acl_mask: [1] applying read(=rscxd) (stop) Aug 28 07:46:16 box1 slapd[26116]: <= acl_mask: [1] mask: read(=rscxd) Aug 28 07:46:16 box1 slapd[26116]: => access_allowed: auth access granted by read(=rscxd) Aug 28 07:46:16 box1 slapd[26116]: <= test_filter 6 Aug 28 07:46:16 box1 slapd[26116]: slap_ap_lookup: str2ad(cmusaslsecretSRP): attribute type undefined Aug 28 07:46:16 box1 slapd[26116]: => access_allowed: auth access to "uid=syncrepl,dc=example,dc=com" "userPassword" requested Aug 28 07:46:16 box1 slapd[26116]: => acl_get: [1] attr userPassword Aug 28 07:46:16 box1 slapd[26116]: => acl_mask: access to entry "uid=syncrepl,dc=example,dc=com", attr "userPassword" requested Aug 28 07:46:16 box1 slapd[26116]: => acl_mask: to all values by "", (=0) Aug 28 07:46:16 box1 slapd[26116]: <= check a_dn_pat: self Aug 28 07:46:16 box1 slapd[26116]: <= check a_dn_pat: anonymous Aug 28 07:46:16 box1 slapd[26116]: <= acl_mask: [2] applying auth(=xd) (stop) Aug 28 07:46:16 box1 slapd[26116]: <= acl_mask: [2] mask: auth(=xd) Aug 28 07:46:16 box1 slapd[26116]: => access_allowed: auth access granted by auth(=xd) Aug 28 07:46:16 box1 slapd[26116]: send_ldap_result: conn=2 op=0 p=3 Aug 28 07:46:16 box1 slapd[26116]: send_ldap_result: err=0 matched="" text="" Aug 28 07:46:16 box1 slapd[26116]: SASL Canonicalize [conn=2]: authzid="syncrepl" Aug 28 07:46:16 box1 slapd[26116]: daemon: epoll: listen=8 active_threads=0 tvp=NULL Aug 28 07:46:16 box1 slapd[26116]: send_ldap_sasl: err=14 len=787 Aug 28 07:46:16 box1 slapd[26116]: send_ldap_response: msgid=1 tag=97 err=14 Aug 28 07:46:16 box1 slapd[26116]: conn=2 op=0 RESULT tag=97 err=14 text= Aug 28 07:46:16 box1 slapd[26116]: <== slap_sasl_bind: rc=14 Aug 28 07:46:16 box1 ldapwhoami: SRP client step 2 Aug 28 07:46:16 box1 ldapwhoami: Got option: [mda=sha-1] Aug 28 07:46:16 box1 ldapwhoami: Got option: [replay_detection] Aug 28 07:46:16 box1 ldapwhoami: Got option: [integrity=hmac-sha-1] Aug 28 07:46:16 box1 ldapwhoami: Got option: [integrity=hmac-ripemd-160] Aug 28 07:46:16 box1 ldapwhoami: Got option: [integrity=hmac-md5] Aug 28 07:46:16 box1 ldapwhoami: Got option: [confidentiality=des] Aug 28 07:46:16 box1 ldapwhoami: Got option: [confidentiality=3des] Aug 28 07:46:16 box1 ldapwhoami: Got option: [confidentiality=aes] Aug 28 07:46:16 box1 ldapwhoami: Got option: [confidentiality=blowfish] Aug 28 07:46:16 box1 ldapwhoami: Got option: [confidentiality=cast-128] Aug 28 07:46:16 box1 ldapwhoami: Got option: [confidentiality=idea] Aug 28 07:46:16 box1 ldapwhoami: Got option: [maxbuffersize=65536] Aug 28 07:46:16 box1 ldapwhoami: Available MDA = 1 Aug 28 07:46:16 box1 ldapwhoami: Available confidentiality = 63 musthave = 0 limit = 2147483647 Aug 28 07:46:16 box1 ldapwhoami: Available integrity = 7 musthave = 0 limit = 2147483647 Aug 28 07:46:16 box1 ldapwhoami: Mandatory layers = 0 Aug 28 07:46:16 box1 slapd[26116]: daemon: activity on 1 descriptor Aug 28 07:46:16 box1 slapd[26116]: daemon: activity on: Aug 28 07:46:16 box1 slapd[26116]: 12r Aug 28 07:46:16 box1 slapd[26116]: Aug 28 07:46:16 box1 slapd[26116]: daemon: read active on 12 Aug 28 07:46:16 box1 slapd[26116]: connection_get(12) Aug 28 07:46:16 box1 slapd[26116]: connection_get(12): got connid=2 Aug 28 07:46:16 box1 slapd[26116]: connection_read(12): checking for input on id=2 Aug 28 07:46:16 box1 slapd[26116]: daemon: epoll: listen=7 active_threads=0 tvp=NULL Aug 28 07:46:16 box1 slapd[26116]: daemon: epoll: listen=8 active_threads=0 tvp=NULL Aug 28 07:46:16 box1 slapd[26116]: do_bind Aug 28 07:46:16 box1 slapd[26116]: >>> dnPrettyNormal: <> Aug 28 07:46:16 box1 slapd[26116]: <<< dnPrettyNormal: <>, <> Aug 28 07:46:16 box1 slapd[26116]: do_sasl_bind: dn () mech SRP Aug 28 07:46:16 box1 slapd[26116]: conn=2 op=1 BIND dn="" method=163 Aug 28 07:46:16 box1 slapd[26116]: ==> sasl_bind: dn="" mech= datalen=392 Aug 28 07:46:16 box1 slapd[26116]: SRP server step 2 Aug 28 07:46:16 box1 slapd[26116]: Got option: [mda=sha-1] Aug 28 07:46:16 box1 slapd[26116]: Got option: [replay_detection] Aug 28 07:46:16 box1 slapd[26116]: Got option: [integrity=hmac-sha-1] Aug 28 07:46:16 box1 slapd[26116]: Got option: [confidentiality=aes] Aug 28 07:46:16 box1 slapd[26116]: Got option: [maxbuffersize=16777215] Aug 28 07:46:16 box1 slapd[26116]: Using replay detection Aug 28 07:46:16 box1 slapd[26116]: Using integrity protection Aug 28 07:46:16 box1 slapd[26116]: Using confidentiality protection Aug 28 07:46:16 box1 slapd[26116]: SASL proxy authorize [conn=2]: authcid="syncrepl" authzid="syncrepl" Aug 28 07:46:16 box1 slapd[26116]: conn=2 op=1 BIND authcid="syncrepl" authzid="syncrepl" Aug 28 07:46:16 box1 slapd[26116]: SASL Authorize [conn=2]: proxy authorization allowed authzDN="" Aug 28 07:46:16 box1 slapd[26116]: send_ldap_sasl: err=0 len=48