Quoting Ben Lutgens (blutgens at sistina.com):
> In the process of getting SASL enabled, kerberos aware openldap, I've
> come to the conclusion that the openldap server that ships with RH-7.2
> isn't kerberos aware due to the following error:
> 
> $ ldapsearch -H ldaps://tyr.sistina.com  -I -b "" -s base -LLL
> supportedSASLMechanisms
> 
> ldap_sasl_interactive_bind_s: Unknown authentication method

Check your SASL config.
-- 
Minneapolis St. Paul Twin Cities MN        | Phone : (952)943-8700
http://www.mn-linux.org Minnesota Linux    | Fax   : (952)943-8500
Key fingerprint =  6C E9 51 4F D5 3E 4C 66 62 A9 10 E5 35 85 39 D9