You are viewing a plain text version of this content. The canonical link for it is here.
Posted to user@guacamole.apache.org by Rajesh Mohan <Ra...@infosys.com> on 2018/07/31 09:35:44 UTC

LDAP Authentication was not working in Guacamole 0.9.14

Hi Team,

I am facing an issue when I login to the web console of Apache Guacamole using our AD Account .

I am facing the below mentioned error message in my catalina.out logs. Can you please sort it out what was the issue .

ERROR MESSAGES.

Jul 31, 2018 2:56:33 PM org.apache.catalina.loader.WebappClassLoaderBase clearReferencesThreads
SEVERE: The web application [/guacamole] appears to have started a thread named [com.google.injecttil.$Finalizer] but has failed to stop it. This is very likely to create a memory leak.

Please find the guacamole. Properties file:

guacd-hostname: localhost
guacd-port:    4822

#Location to read the .jar FILE for ldap Authentication
lib-directory: /usr/local/apache-tomcat-7.0.88/webapps/guacamole/WEB-INF/lib
#lib-directory: /var/lib/tomcat6/webapps/

ldap-hostname:           usdlinfgdc01
ldap-port:               389
ldap-encryption-method:  none
ldap-user-base-dn:      dc=infosys-platforms,dc=com
ldap-search-bind-dn:    CN=ldapadmin,OU=SPL,OU=Users,OU=DCM,DC=infosys-platforms,DC=com
ldap-search-bind-password:      !3P@dm1n
ldap-username-attribute: uid


Regards
Rajesh Mohan
* +91 9941944147
VOIP 4444460497



Re: LDAP Authentication was not working in Guacamole 0.9.14

Posted by Nick Couchman <vn...@apache.org>.
On Wed, Aug 1, 2018 at 2:26 AM Rajesh Mohan <Ra...@infosys.com>
wrote:

>
>
> *But I need an Additional Information in  this same case .*
>
>
>
> Can we enable both the LDAP Authentication and  BasicFileAuthentication in
> a guacamole.properties file. In Such a case I have to login to the
> Guacamole UI using the LDAP AD account and once logged in to use the Linux
> and windows servers using the local account and also AD Account .
>
>
>
> DO WE HAVE ANY OPTION TO ENABLE IT LIKE SO , ?
>
>
>

I can't remember, but I don't think the BasicFileAuthentication module
works with LDAP authentication.  If you're wanting to "layer" the LDAP
authentication module such that you can store connections somewhere outside
of the LDAP tree, I highly suggest you use the JDBC module with one of the
supported databases.  See the following page:

http://guacamole.apache.org/doc/gug/ldap-auth.html#ldap-and-database

-Nick

RE: LDAP Authentication was not working in Guacamole 0.9.14

Posted by Rajesh Mohan <Ra...@infosys.com>.
Hi Nick,

Thanks you so much for the comments which you have provided. ☺

And atlast it was found that the GUACAMOLE_HOME path was mistakenly set as my home path instead of /etc/guacamole/

As of now the Guacamole was working fine with  the LDAP Authentication by pasting the guacamole-auth-ldap in my home path extensions directory .“ONCE AGAIN THANK YOU SO MUCH FOR YOUR COMMENTS NICK ☺”

But I need an Additional Information in  this same case .

Can we enable both the LDAP Authentication and  BasicFileAuthentication in a guacamole.properties file. In Such a case I have to login to the Guacamole UI using the LDAP AD account and once logged in to use the Linux and windows servers using the local account and also AD Account .

DO WE HAVE ANY OPTION TO ENABLE IT LIKE SO , ?

Regards,
Rajesh Mohan

From: vnick [via Apache Guacamole - General/User Mailing List] <ml...@n4.nabble.com>
Sent: Tuesday, July 31, 2018 10:59 PM
To: Rajesh Mohan <Ra...@infosys.com>
Subject: Re: LDAP Authentication was not working in Guacamole 0.9.14

On Tue, Jul 31, 2018 at 1:22 PM Anburaj Palraj <[hidden email]</user/SendEmail.jtp?type=node&node=3752&i=0>> wrote:
Hi Rajesh,

In modern versions of AD, to search from the root DN, you need to use port 3268 so you can use the global catalogue.


You can do this, but there is no requirement to do so.  There was a bug in Guacamole that prevented LDAP queries from succeeding when pointed at AD trees where Referrals existed (non-GC port 389 in the case of Active Directory), but that was resolved in 0.9.14 and should work perfectly fine, now.

-Nick

________________________________
If you reply to this email, your message will be added to the discussion below:
http://apache-guacamole-general-user-mailing-list.2363388.n4.nabble.com/LDAP-Authentication-was-not-working-in-Guacamole-0-9-14-tp3745p3752.html<https://apac01.safelinks.protection.outlook.com/?url=http%3A%2F%2Fapache-guacamole-general-user-mailing-list.2363388.n4.nabble.com%2FLDAP-Authentication-was-not-working-in-Guacamole-0-9-14-tp3745p3752.html&data=01%7C01%7CRajesh.Mohan%40infosys.com%7C1ef41930285f43c9539708d5f70b4acc%7C63ce7d592f3e42cda8ccbe764cff5eb6%7C1&sdata=W3KGJXo12dgNkUXwsqegiWBQcFcNsyREgSjVFCWkR%2Fk%3D&reserved=0>
To start a new topic under Apache Guacamole - General/User Mailing List, email ml+s2363388n1h0@n4.nabble.com<ma...@n4.nabble.com>
To unsubscribe from Apache Guacamole - General/User Mailing List, click here<https://apac01.safelinks.protection.outlook.com/?url=http%3A%2F%2Fapache-guacamole-general-user-mailing-list.2363388.n4.nabble.com%2Ftemplate%2FNamlServlet.jtp%3Fmacro%3Dunsubscribe_by_code%26node%3D1%26code%3DUmFqZXNoLk1vaGFuQGluZm9zeXMuY29tfDF8OTgyNjE1MzY2&data=01%7C01%7CRajesh.Mohan%40infosys.com%7C1ef41930285f43c9539708d5f70b4acc%7C63ce7d592f3e42cda8ccbe764cff5eb6%7C1&sdata=d1MeLJFQzTlU7zect5C%2BEnnymz0essSpQt%2F1oWLqJTo%3D&reserved=0>.
NAML<https://apac01.safelinks.protection.outlook.com/?url=http%3A%2F%2Fapache-guacamole-general-user-mailing-list.2363388.n4.nabble.com%2Ftemplate%2FNamlServlet.jtp%3Fmacro%3Dmacro_viewer%26id%3Dinstant_html%2521nabble%253Aemail.naml%26base%3Dnabble.naml.namespaces.BasicNamespace-nabble.view.web.template.NabbleNamespace-nabble.view.web.template.NodeNamespace%26breadcrumbs%3Dnotify_subscribers%2521nabble%253Aemail.naml-instant_emails%2521nabble%253Aemail.naml-send_instant_email%2521nabble%253Aemail.naml&data=01%7C01%7CRajesh.Mohan%40infosys.com%7C1ef41930285f43c9539708d5f70b4acc%7C63ce7d592f3e42cda8ccbe764cff5eb6%7C1&sdata=Y2R7CoYdyawBF4QWHKaGKTgSGz9YGna2hKWzW7Ju4fw%3D&reserved=0>

Re: LDAP Authentication was not working in Guacamole 0.9.14

Posted by Nick Couchman <vn...@apache.org>.
On Tue, Jul 31, 2018 at 1:22 PM Anburaj Palraj <an...@gmail.com>
wrote:

> Hi Rajesh,
>
> In modern versions of AD, to search from the root DN, you need to use port
>  3268 so you can use the global catalogue.
>
>
You can do this, but there is no requirement to do so.  There was a bug in
Guacamole that prevented LDAP queries from succeeding when pointed at AD
trees where Referrals existed (non-GC port 389 in the case of Active
Directory), but that was resolved in 0.9.14 and should work perfectly fine,
now.

-Nick

Re: LDAP Authentication was not working in Guacamole 0.9.14

Posted by Anburaj Palraj <an...@gmail.com>.
Hi Rajesh,

In modern versions of AD, to search from the root DN, you need to use port
3268 so you can use the global catalogue.

On Tue, Jul 31, 2018 at 10:35 PM, Nick Couchman <vn...@apache.org> wrote:

>
>
> On Tue, Jul 31, 2018 at 12:10 PM Rajesh Mohan <Ra...@infosys.com>
> wrote:
>
>> Hi,
>>
>>
>>
>> Yes I am sure that GUACAMOLE_HOME PATH were    “/etc/guacamole”  and I
>> have placed the same jar files inside the extension dir.
>>
>>
>>
>> # cd /etc/guacamole/
>>
>> # ls -ltr
>>
>> total 12
>>
>> -rwxr-xr-x 1 tomcat tomcat  886 Jul 31 18:10 user-mapping.xml
>>
>> drwxr-xr-x 3 tomcat tomcat 4096 Jul 31 21:25 extensions
>>
>> -rwxr-xr-x 1 tomcat tomcat  500 Jul 31 21:26 guacamole.properties
>>
>>
>>
>> Post restarting the same also the error doesn’t vanished. PFA..
>>
>>
>>
>
> Based on the most recent catalina.out you attached, you did not get the
> previous instance of Tomcat completely shut down before starting the new
> one.  I suggest you stop Tomcat, make sure it is all the way stopped ("ps
> -ef|grep java" and  "netstat -anp" looking for 8080, 8009, and 8005), and
> then restart Tomcat and try to log in, again.  It's hard to tell exactly
> what's going on, but it looks like maybe the previous instance is still
> listening without LDAP loaded.
>
> -Nick
>

Re: LDAP Authentication was not working in Guacamole 0.9.14

Posted by Nick Couchman <vn...@apache.org>.
On Tue, Jul 31, 2018 at 12:10 PM Rajesh Mohan <Ra...@infosys.com>
wrote:

> Hi,
>
>
>
> Yes I am sure that GUACAMOLE_HOME PATH were    “/etc/guacamole”  and I
> have placed the same jar files inside the extension dir.
>
>
>
> # cd /etc/guacamole/
>
> # ls -ltr
>
> total 12
>
> -rwxr-xr-x 1 tomcat tomcat  886 Jul 31 18:10 user-mapping.xml
>
> drwxr-xr-x 3 tomcat tomcat 4096 Jul 31 21:25 extensions
>
> -rwxr-xr-x 1 tomcat tomcat  500 Jul 31 21:26 guacamole.properties
>
>
>
> Post restarting the same also the error doesn’t vanished. PFA..
>
>
>

Based on the most recent catalina.out you attached, you did not get the
previous instance of Tomcat completely shut down before starting the new
one.  I suggest you stop Tomcat, make sure it is all the way stopped ("ps
-ef|grep java" and  "netstat -anp" looking for 8080, 8009, and 8005), and
then restart Tomcat and try to log in, again.  It's hard to tell exactly
what's going on, but it looks like maybe the previous instance is still
listening without LDAP loaded.

-Nick

RE: LDAP Authentication was not working in Guacamole 0.9.14

Posted by Rajesh Mohan <Ra...@infosys.com>.
Hi,

Yes I am sure that GUACAMOLE_HOME PATH were    “/etc/guacamole”  and I have placed the same jar files inside the extension dir.

# cd /etc/guacamole/
# ls -ltr
total 12
-rwxr-xr-x 1 tomcat tomcat  886 Jul 31 18:10 user-mapping.xml
drwxr-xr-x 3 tomcat tomcat 4096 Jul 31 21:25 extensions
-rwxr-xr-x 1 tomcat tomcat  500 Jul 31 21:26 guacamole.properties

Post restarting the same also the error doesn’t vanished. PFA..

Regards,
Rajesh M
From: vnick [via Apache Guacamole - General/User Mailing List] <ml...@n4.nabble.com>
Sent: Tuesday, July 31, 2018 9:24 PM
To: Rajesh Mohan <Ra...@infosys.com>
Subject: Re: LDAP Authentication was not working in Guacamole 0.9.14


On Tue, Jul 31, 2018 at 11:50 AM Rajesh Mohan <[hidden email]</user/SendEmail.jtp?type=node&node=3748&i=0>> wrote:
Hi ,

Yes I have updated the debug messages in the logback.xml file and restarted the tomcat service.

<!-- Log at INFO level -->
    <root level="debug">
        <appender-ref ref="GUAC-DEFAULT" />
    </root>

</configuration>
# cat /usr/local/apache-tomcat-7.0.88/webapps/guacamole/WEB-INF/classes/logback.xml

Post that also I have been facing the same kind of issues in the server .  Attached the catalina.out and catalina.log file for reference .


Based on the output from the catalina.out file you posted, the LDAP extension is not being loaded at all by the Guacamole client - only the default (File) authentication provider is being loaded.  Please make sure that you know where your GUACAMOLE_HOME directory is, that you have placed the LDAP JAR file within the extensions sub-directory, that permissions are set correctly, and that you have restarted Tomcat.

-Nick

________________________________
If you reply to this email, your message will be added to the discussion below:
http://apache-guacamole-general-user-mailing-list.2363388.n4.nabble.com/LDAP-Authentication-was-not-working-in-Guacamole-0-9-14-tp3745p3748.html<https://apac01.safelinks.protection.outlook.com/?url=http%3A%2F%2Fapache-guacamole-general-user-mailing-list.2363388.n4.nabble.com%2FLDAP-Authentication-was-not-working-in-Guacamole-0-9-14-tp3745p3748.html&data=01%7C01%7CRajesh.Mohan%40infosys.com%7C9046d16ac6094c08a07708d5f6fe00ca%7C63ce7d592f3e42cda8ccbe764cff5eb6%7C1&sdata=rcvlxp6CrBGvai6PVzcoVDJjoNCCtG2Oj0VACnZBRSE%3D&reserved=0>
To start a new topic under Apache Guacamole - General/User Mailing List, email ml+s2363388n1h0@n4.nabble.com<ma...@n4.nabble.com>
To unsubscribe from Apache Guacamole - General/User Mailing List, click here<https://apac01.safelinks.protection.outlook.com/?url=http%3A%2F%2Fapache-guacamole-general-user-mailing-list.2363388.n4.nabble.com%2Ftemplate%2FNamlServlet.jtp%3Fmacro%3Dunsubscribe_by_code%26node%3D1%26code%3DUmFqZXNoLk1vaGFuQGluZm9zeXMuY29tfDF8OTgyNjE1MzY2&data=01%7C01%7CRajesh.Mohan%40infosys.com%7C9046d16ac6094c08a07708d5f6fe00ca%7C63ce7d592f3e42cda8ccbe764cff5eb6%7C1&sdata=dqHz4TTzka4bFAC%2FQtG0kpNIFldOQt7EljzCukg%2BiSA%3D&reserved=0>.
NAML<https://apac01.safelinks.protection.outlook.com/?url=http%3A%2F%2Fapache-guacamole-general-user-mailing-list.2363388.n4.nabble.com%2Ftemplate%2FNamlServlet.jtp%3Fmacro%3Dmacro_viewer%26id%3Dinstant_html%2521nabble%253Aemail.naml%26base%3Dnabble.naml.namespaces.BasicNamespace-nabble.view.web.template.NabbleNamespace-nabble.view.web.template.NodeNamespace%26breadcrumbs%3Dnotify_subscribers%2521nabble%253Aemail.naml-instant_emails%2521nabble%253Aemail.naml-send_instant_email%2521nabble%253Aemail.naml&data=01%7C01%7CRajesh.Mohan%40infosys.com%7C9046d16ac6094c08a07708d5f6fe00ca%7C63ce7d592f3e42cda8ccbe764cff5eb6%7C1&sdata=K90nyKN7UKr06Yz8a1BqyhwW7xm6MvuDJI379k%2FSNFg%3D&reserved=0>

Re: LDAP Authentication was not working in Guacamole 0.9.14

Posted by Nick Couchman <vn...@apache.org>.
On Tue, Jul 31, 2018 at 11:50 AM Rajesh Mohan <Ra...@infosys.com>
wrote:

> Hi ,
>
>
>
> Yes I have updated the debug messages in the logback.xml file and
> restarted the tomcat service.
>
>
>
> <!-- Log at INFO level -->
>
>     <root level="debug">
>
>         <appender-ref ref="GUAC-DEFAULT" />
>
>     </root>
>
>
>
> </configuration>
>
> # cat
> /usr/local/apache-tomcat-7.0.88/webapps/guacamole/WEB-INF/classes/logback.xml
>
>
>
> Post that also I have been facing the same kind of issues in the server .
> Attached the catalina.out and catalina.log file for reference .
>
>
>

Based on the output from the catalina.out file you posted, the LDAP
extension is not being loaded at all by the Guacamole client - only the
default (File) authentication provider is being loaded.  Please make sure
that you know where your GUACAMOLE_HOME directory is, that you have placed
the LDAP JAR file within the extensions sub-directory, that permissions are
set correctly, and that you have restarted Tomcat.

-Nick

RE: LDAP Authentication was not working in Guacamole 0.9.14

Posted by Rajesh Mohan <Ra...@infosys.com>.
Hi ,

Yes I have updated the debug messages in the logback.xml file and restarted the tomcat service.

<!-- Log at INFO level -->
    <root level="debug">
        <appender-ref ref="GUAC-DEFAULT" />
    </root>

</configuration>
# cat /usr/local/apache-tomcat-7.0.88/webapps/guacamole/WEB-INF/classes/logback.xml

Post that also I have been facing the same kind of issues in the server .  Attached the catalina.out and catalina.log file for reference .


Regards,
Rajesh M

From: vnick [via Apache Guacamole - General/User Mailing List] <ml...@n4.nabble.com>
Sent: Tuesday, July 31, 2018 8:58 PM
To: Rajesh Mohan <Ra...@infosys.com>
Subject: Re: LDAP Authentication was not working in Guacamole 0.9.14

On Tue, Jul 31, 2018 at 6:43 AM Rajesh Mohan <[hidden email]</user/SendEmail.jtp?type=node&node=3746&i=0>> wrote:
Hi Team,

I am facing an issue when I login to the web console of Apache Guacamole using our AD Account .

I am facing the below mentioned error message in my catalina.out logs. Can you please sort it out what was the issue .

ERROR MESSAGES.

Jul 31, 2018 2:56:33 PM org.apache.catalina.loader.WebappClassLoaderBase clearReferencesThreads
SEVERE: The web application [/guacamole] appears to have started a thread named [com.google.injecttil.$Finalizer] but has failed to stop it. This is very likely to create a memory leak.

I do not believe this error has anything to do with why LDAP logins are not working.  Please post more of the catalina.out file - I would recommend starting a "tail -f catalina.out" and then attempting the login to see what messages are posted.  You also might want to put the Guacamole Client into debug mode by creating a custom logback.xml file, as described, here:

http://guacamole.apache.org/doc/gug/configuring-guacamole.html#webapp-logging<https://apac01.safelinks.protection.outlook.com/?url=http%3A%2F%2Fguacamole.apache.org%2Fdoc%2Fgug%2Fconfiguring-guacamole.html%23webapp-logging&data=01%7C01%7CRajesh.Mohan%40infosys.com%7C60ad713cbb1f47c2b06508d5f6fa4fa8%7C63ce7d592f3e42cda8ccbe764cff5eb6%7C1&sdata=F7yOg%2FXLonAI%2Btn4H10RZuJR39PR%2FaJkWV%2Bsgm8iBII%3D&reserved=0>


Please find the guacamole. Properties file:

guacd-hostname: localhost
guacd-port:    4822

#Location to read the .jar FILE for ldap Authentication
lib-directory: /usr/local/apache-tomcat-7.0.88/webapps/guacamole/WEB-INF/lib
#lib-directory: /var/lib/tomcat6/webapps/

I don't think these properties are valid, anymore, and were deprecated and then removed several versions ago.  Your extensions need to be located in the "extensions/" subdirectory of the GUACAMOLE_HOME folder.  See the manual for more information on GUACAMOLE_HOME:

http://guacamole.apache.org/doc/gug/configuring-guacamole.html#guacamole-home<https://apac01.safelinks.protection.outlook.com/?url=http%3A%2F%2Fguacamole.apache.org%2Fdoc%2Fgug%2Fconfiguring-guacamole.html%23guacamole-home&data=01%7C01%7CRajesh.Mohan%40infosys.com%7C60ad713cbb1f47c2b06508d5f6fa4fa8%7C63ce7d592f3e42cda8ccbe764cff5eb6%7C1&sdata=a19yXhxgE20TWJlQVS8iXZChj4S2iU5t0TbaM7oimn8%3D&reserved=0>

You definitely do not want your extensions located within the deploy directory of the guacamole WAR file - if you do this, they are likely to get wiped out when you re-deploy the application.


ldap-hostname:           usdlinfgdc01
ldap-port:               389
ldap-encryption-method:  none
ldap-user-base-dn:      <REDACTED>
ldap-search-bind-dn:    <REDACTED>
ldap-search-bind-password:     <REDACTED>
ldap-username-attribute: uid

These look fine, so probably just an issue with either the LDAP module not being loaded or some issues querying the tree.

-Nick

________________________________
If you reply to this email, your message will be added to the discussion below:
http://apache-guacamole-general-user-mailing-list.2363388.n4.nabble.com/LDAP-Authentication-was-not-working-in-Guacamole-0-9-14-tp3745p3746.html<https://apac01.safelinks.protection.outlook.com/?url=http%3A%2F%2Fapache-guacamole-general-user-mailing-list.2363388.n4.nabble.com%2FLDAP-Authentication-was-not-working-in-Guacamole-0-9-14-tp3745p3746.html&data=01%7C01%7CRajesh.Mohan%40infosys.com%7C60ad713cbb1f47c2b06508d5f6fa4fa8%7C63ce7d592f3e42cda8ccbe764cff5eb6%7C1&sdata=iga08gJrjQuyeelFSWo8iM37Wa581iUj7zZDtGZGyeI%3D&reserved=0>
To start a new topic under Apache Guacamole - General/User Mailing List, email ml+s2363388n1h0@n4.nabble.com<ma...@n4.nabble.com>
To unsubscribe from Apache Guacamole - General/User Mailing List, click here<https://apac01.safelinks.protection.outlook.com/?url=http%3A%2F%2Fapache-guacamole-general-user-mailing-list.2363388.n4.nabble.com%2Ftemplate%2FNamlServlet.jtp%3Fmacro%3Dunsubscribe_by_code%26node%3D1%26code%3DUmFqZXNoLk1vaGFuQGluZm9zeXMuY29tfDF8OTgyNjE1MzY2&data=01%7C01%7CRajesh.Mohan%40infosys.com%7C60ad713cbb1f47c2b06508d5f6fa4fa8%7C63ce7d592f3e42cda8ccbe764cff5eb6%7C1&sdata=gkrgwmHvMIj1bC7zj3k9JplIWOUokL8NFoRbm7FoRLg%3D&reserved=0>.
NAML<https://apac01.safelinks.protection.outlook.com/?url=http%3A%2F%2Fapache-guacamole-general-user-mailing-list.2363388.n4.nabble.com%2Ftemplate%2FNamlServlet.jtp%3Fmacro%3Dmacro_viewer%26id%3Dinstant_html%2521nabble%253Aemail.naml%26base%3Dnabble.naml.namespaces.BasicNamespace-nabble.view.web.template.NabbleNamespace-nabble.view.web.template.NodeNamespace%26breadcrumbs%3Dnotify_subscribers%2521nabble%253Aemail.naml-instant_emails%2521nabble%253Aemail.naml-send_instant_email%2521nabble%253Aemail.naml&data=01%7C01%7CRajesh.Mohan%40infosys.com%7C60ad713cbb1f47c2b06508d5f6fa4fa8%7C63ce7d592f3e42cda8ccbe764cff5eb6%7C1&sdata=iigxAyYUxfhGqifaDJSOdNNfSc0OME6uvCk47QGdXJc%3D&reserved=0>

Re: LDAP Authentication was not working in Guacamole 0.9.14

Posted by Nick Couchman <vn...@apache.org>.
On Tue, Jul 31, 2018 at 6:43 AM Rajesh Mohan <Ra...@infosys.com>
wrote:

> Hi Team,
>
>
>
> I am facing an issue when I login to the web console of Apache Guacamole
> using our AD Account .
>
>
>
> I am facing the below mentioned error message in my catalina.out logs. Can
> you please sort it out what was the issue .
>
>
>
> ERROR MESSAGES.
>
>
>
> Jul 31, 2018 2:56:33 PM org.apache.catalina.loader.WebappClassLoaderBase
> clearReferencesThreads
>
> SEVERE: The web application [/guacamole] appears to have started a thread
> named [com.google.injecttil.$Finalizer] but has failed to stop it. This is
> very likely to create a memory leak.
>
>
I do not believe this error has anything to do with why LDAP logins are not
working.  Please post more of the catalina.out file - I would recommend
starting a "tail -f catalina.out" and then attempting the login to see what
messages are posted.  You also might want to put the Guacamole Client into
debug mode by creating a custom logback.xml file, as described, here:

http://guacamole.apache.org/doc/gug/configuring-guacamole.html#webapp-logging


>
>
> *Please find the guacamole. Properties file:*
>
>
>
> guacd-hostname: localhost
>
> guacd-port:    4822
>
>
>
> #Location to read the .jar FILE for ldap Authentication
>
> lib-directory:
> /usr/local/apache-tomcat-7.0.88/webapps/guacamole/WEB-INF/lib
>
> #lib-directory: /var/lib/tomcat6/webapps/
>

I don't think these properties are valid, anymore, and were deprecated and
then removed several versions ago.  Your extensions need to be located in
the "extensions/" subdirectory of the GUACAMOLE_HOME folder.  See the
manual for more information on GUACAMOLE_HOME:

http://guacamole.apache.org/doc/gug/configuring-guacamole.html#guacamole-home

You definitely do not want your extensions located within the deploy
directory of the guacamole WAR file - if you do this, they are likely to
get wiped out when you re-deploy the application.


>
>
> ldap-hostname:           usdlinfgdc01
>
> ldap-port:               389
>
> ldap-encryption-method:  none
>
> ldap-user-base-dn:      <REDACTED>
>
> ldap-search-bind-dn:    <REDACTED>
>
> ldap-search-bind-password:     <REDACTED>
>
> ldap-username-attribute: uid
>

These look fine, so probably just an issue with either the LDAP module not
being loaded or some issues querying the tree.

-Nick

>