LDAP with TLS on Log Server

This support forum board is for support questions relating to Nagios Log Server, our solution for managing and monitoring critical log data.
CFT6Server
Posts: 506
Joined: Wed Apr 15, 2015 4:21 pm

LDAP with TLS on Log Server

Post by CFT6Server »

I am configuring LDAP authentication on Log Server running 2R1.0. Looks like the LDAP configuration is the same as Network Analyzer. I've replicated the same setting but it doesn't seem to work. If I set the encryption to NONE, it works. On the NNA side, we have TLS option. For a setting perspective, it looks fine, but perhaps I am missing a step? Any ideas?
jolson
Attack Rabbit
Posts: 2560
Joined: Thu Feb 12, 2015 12:40 pm

Re: LDAP with TLS on Log Server

Post by jolson »

This should be identical to how you've set up your NNA box. I recommend upgrading to *at least* R2.1 - and if possible to 1.3.0. There have been AD/LDAP fixes contained in those releases, and I have hope that they would help resolve your problem. If the update doesn't help, we can take a deeper look at what might be causing your issues. Let me know if upgrading is a possibility for you. Thanks!

https://assets.nagios.com/downloads/nag ... Server.pdf
Twits Blog
Show me a man who lives alone and has a perpetually clean kitchen, and 8 times out of 9 I'll show you a man with detestable spiritual qualities.
CFT6Server
Posts: 506
Joined: Wed Apr 15, 2015 4:21 pm

Re: LDAP with TLS on Log Server

Post by CFT6Server »

I will schedule an upgrade tonight to see if that helps. Thanks.
jolson
Attack Rabbit
Posts: 2560
Joined: Thu Feb 12, 2015 12:40 pm

Re: LDAP with TLS on Log Server

Post by jolson »

No problem - looking forward to your results! :)
Twits Blog
Show me a man who lives alone and has a perpetually clean kitchen, and 8 times out of 9 I'll show you a man with detestable spiritual qualities.
CFT6Server
Posts: 506
Joined: Wed Apr 15, 2015 4:21 pm

Re: LDAP with TLS on Log Server

Post by CFT6Server »

The Cluster was upgraded. Ran into some odd issues that put the cluster to red. I will let it sync up. However testing the LDAP authentication, I am still seeing the same message issue. If I put the encryption to NONE, then it works. No luck for TLS. I have SSL and HTTPS redirect enabled on our cluster, could this be causing any issues?
ssax
Dreams In Code
Posts: 7682
Joined: Wed Feb 11, 2015 12:54 pm

Re: LDAP with TLS on Log Server

Post by ssax »

I'd like to setup some debugging but I need to know what version of log server you upgraded to so that I can look at the proper code.

Thank you
CFT6Server
Posts: 506
Joined: Wed Apr 15, 2015 4:21 pm

Re: LDAP with TLS on Log Server

Post by CFT6Server »

I used the latest download for the upgrade. Version is 1.3.0.
ssax
Dreams In Code
Posts: 7682
Joined: Wed Feb 11, 2015 12:54 pm

Re: LDAP with TLS on Log Server

Post by ssax »

Ok, I'll look at the code and come up with some debugging on Monday so that we can get some more information.

Thank you
CFT6Server
Posts: 506
Joined: Wed Apr 15, 2015 4:21 pm

Re: LDAP with TLS on Log Server

Post by CFT6Server »

Any updates? For now I've set encryption to NONE as a workaround, but would like to set this to TLS to match our NNA.
ssax
Dreams In Code
Posts: 7682
Joined: Wed Feb 11, 2015 12:54 pm

Re: LDAP with TLS on Log Server

Post by ssax »

Can you post some sanitized screenshots of your current settings in NNA and in LS? I want to see what your settings are (and if you are using ldaps:// in the server box).
Locked