Open Pengwin61 opened 11 months ago
Can you provide the ProFTPD configuration you're using, please?
I'm using RedOS 7.3 it's based on CentOS 7. I'm using Proftpd from the binary as a package, installed mod_sftp_ldap with prxs. FreeIpa deployed in production as a container.
proftpd -l
Compiled-in modules:
mod_core.c
mod_xfer.c
mod_rlimit.c
mod_auth_unix.c
mod_auth_file.c
mod_auth.c
mod_ls.c
mod_log.c
mod_site.c
mod_delay.c
mod_facts.c
mod_dso.c
mod_ident.c
mod_readme.c
mod_auth_pam.c
mod_tls.c
mod_memcache.c
mod_cap.c
mod_ctrls.c
mod_lang.c
To diagnose the issue, I'll need to see your proftpd.conf
settings.
Sorry for not attaching this file sooner. I use batch install from my os distribution proftpd.txt modules.txt
Yesterday, on a test VM, I tried to build a newer version of proftpd 1.3.8 than in the repositories of my OS, but I ran into the fact that I could not build the ldap module. What do I mean by this, if I can’t figure out how to solve the problem with my batch installation, then I’m ready to build from source
update: I managed to build the ldap module by installing headers, I'm trying to build the entire project from the source
Thanks. Do you have any .conf
files that contain your mod_ldap
(and mod_sftp
) configurations? Those are the relevant configurations for this particular ticket.
Sorry, here are my config files. I am also building a project from sources in parallel and noticed that on version mod_ldap/2.9.5 with the same config, connection to freeIPA does not work. Connection string error.
Checking syntax of configuration file
2023-08-11 18:56:53,223 mk0vm1035.domain proftpd[1076652] mk0vm1035.domain : LDAPServer: parsed URL 'ldap://mk0cr1001.domain :389/??sub' as 'ldap://mk0cr1001.domain :389/??sub'
Can you provide the SFTPLog and LDAPLog, for an SFTP login? I'd like to better understand why you think mod_ldap is not looking for the SSH public key for your user. Is it based purely on the log messages you see (or don't see), or are there are other login issues you are encountering?
Hello. I am using the following build. When accessing FreeIpa, the module does not pull the key
logs