![](https://secure.gravatar.com/avatar/0fa97865a0e1ab36152b6b2299eedb49.jpg?s=120&d=mm&r=g)
Turnkey is pretty old, I think.
Most people here will be running the subscription version, which has quite a few fixes since the version in Turnkey.
adam.
------ Original Message ------ From: "Theis Andersen Samsig" tas@comit.dk To: "observium@observium.org" observium@observium.org Sent: 09/10/2014 17:13:53 Subject: Re: [Observium] ActiveDirectory (LDAP) authentication very slow
It seems that nobody has had this issue, so let me rephrase the question:
Does anyone have observium working with LDAP authentication (AD in particular)?
Best regards, Theis
From: Theis <tas@comit.dkmailto:tas@comit.dk> Date: tirsdag den 30. september 2014 22.42 To: "observium@observium.orgmailto:observium@observium.org" <observium@observium.orgmailto:observium@observium.org> Subject: ActiveDirectory (LDAP) authentication very slow
Hi,
I’m running observium from the latest TurnKeyLinux distribution and I’m having some trouble getting the AD to work correctly. I have copied the configuration from this page: http://www.observium.org/wiki/Authentication_modules#Active_Directory And made modifications to match our environment (Changing the DN’s, suffix, prefix, groups and changed the STARTTLS to FALSE). Our AD is based on Windows 2008R2 To get it working I installed the php5-ldap on the TurnKey distribution using the apt-get install command (and did nothing else than reboot). The normal mysql will let me login as intended (speedy and no delay) – but when switching to LDAP I initially couldn’t login “Authentication Failed” until I removed the following line from the configuration file: $config['auth_ldap_group'] = array("CN=Observium Users,OU=Groups,DC=ad,DC=example,DC=com"); (I had of course modified it to math our configuration)
When removing the line I am able to login – but the login (and the following page loads) takes around 63 seconds.
My questions is:
· Why is the page load taking 60+ seconds when using LDAP OR how do I troubleshoot it (seems like a timeout situation)
· Why do I need to remove the “auth_ldap_group” line to get it to work? (not really important but nice to know)
Hope there is someone out that can help or point me in the right direction…
Best regards
Theis Andersen Samsig Senior Solution Architect
observium mailing list observium@observium.org http://postman.memetic.org/cgi-bin/mailman/listinfo/observium