EFW Support

Support => Installation Support => Topic started by: ttucker on Wednesday 03 March 2010, 06:04:54 am



Title: EFW 2.3 and Novell eDirectory LDAP authentication blocks everything
Post by: ttucker on Wednesday 03 March 2010, 06:04:54 am
I have setup an endian firewall 2.3 and I am trying to configure to use eDirectory LDAP authentication.


I configured the access policy as follows:

authentication to
Source type
Any

Destination type
Any

Authentication
group based

allowed groups
cn=internet,o=org

Access policy Allow access
Filter profile Default profile

and every website that I try to go to says the following:

ERROR
The requested URL could not be retrieved

--------------------------------------------------------------------------------

While trying to retrieve the URL: xxxxxxxx


The following error was encountered:
Access Denied.

Access control configuration prevents your request from being allowed at this time. Please contact your service provider if you feel this is incorrect.

The http proxy logs show the following:

0 192.168.0.61 TCP_DENIED/403 2724 GET xxxxxx admin NONE/- text/html


If I set authentication to disabled, the access policy works.

These settings worked with endian 2.2

What is different in 2.3 from 2.2 that I have not configured correctly?

On the authentication tab I have it set as follows:

Ldap authentication method
LDAP (v2, v3, Novell eDirectory, AD)

Ldap server
192.168.0.1

Port
389

Bind DN
o=org

Ldap type
Novell eDirectory Server

Bind DN username
cn=admin,o=org

user objectClass
person

group objectClass
group.

ldap browser does see the tree.