Am Mittwoch, 04. Januar 2017 21:07 CET, "Ralf Mattes" r.mattes@mh-freiburg.de schrieb:
Since this search fails to find an entry that's the place debugging should start. N.B.: It looks like this query is used by the athenticator to map the uid to a dn which would be needed for a user bind.
Quick followup: if the OP's transcript of 'ldapmodifyuser' is indeed complete than it's pretty obvious why the search fails - the user entry simply doesn't have a 'host' attribute.
Cheers, Ralf Mattes