(ITS#7483) back-mdb slapcat missing entries behavior
by ebackes@symas.com
Full_Name: Emily Backes
Version: RE24/HEAD
OS:
URL:
Submission from: (NULL) (98.155.30.248)
When given a database with missing entries, e.g. from slapadd of bad or
incomplete data, slapcat on back-bdb returned even the orphaned children.
Slapcat on back-mdb had inconsistent behavior, sometimes resulting in many more
missing entries and sometimes resulting in segv.
This is a problem only in slapcat, and should be fixed in
commit e4ec2be93d675b120f1bffbff497d9ed8628c2a6 Better handling of missing
entries
(Thanks Howard!)
10 years, 5 months
Re: (ITS#7481) nssov-pam-session ignored while db creation
by hyc@symas.com
molostoff(a)gmail.com wrote:
> Full_Name: Vasiliy molostov
> Version: 2.4.28-1.1ubuntu4.2
> OS: ubuntu 12.04.1
> URL: ftp://ftp.openldap.org/incoming/
> Submission from: (NULL) (95.31.14.8)
>
>
> Being placed into slapd.conf nssov-pam-session directive is ignored while db
> creation that can be observed in olcOverlay=nssov,olcDatabase=hdb,cn=config -
> attribute olcNssPamSession is not added and has no requested values, and as a
> result loginStatus doesnt work.
Thanks for the report, fixed now in git master.
PS: the version you're reporting against is already over a year old. You would
have needed to update anyway.
>
> Manual addition of olcNssPamSession into
> olcOverlay=nssov,olcDatabase=hdb,cn=config does this thing to work - loginStatus
> works fine.
--
-- Howard Chu
CTO, Symas Corp. http://www.symas.com
Director, Highland Sun http://highlandsun.com/hyc/
Chief Architect, OpenLDAP http://www.openldap.org/project/
10 years, 5 months
(ITS#7481) nssov-pam-session ignored while db creation
by molostoff@gmail.com
Full_Name: Vasiliy molostov
Version: 2.4.28-1.1ubuntu4.2
OS: ubuntu 12.04.1
URL: ftp://ftp.openldap.org/incoming/
Submission from: (NULL) (95.31.14.8)
Being placed into slapd.conf nssov-pam-session directive is ignored while db
creation that can be observed in olcOverlay=nssov,olcDatabase=hdb,cn=config -
attribute olcNssPamSession is not added and has no requested values, and as a
result loginStatus doesnt work.
Manual addition of olcNssPamSession into
olcOverlay=nssov,olcDatabase=hdb,cn=config does this thing to work - loginStatus
works fine.
10 years, 5 months
Re: (ITS#7477) ldapmodify core dumps
by hyc@symas.com
marco.pizzoli(a)gmail.com wrote:
> Full_Name: Marco Pizzoli
> Version: RE24 as of 2012/12/12
> OS: Linux x86_64
> URL: ftp://ftp.openldap.org/incoming/
> Submission from: (NULL) (194.11.209.11)
>
>
> I composed an erroneous ldif file to modify an entry, I executed the ldapmodify
> operation and the ldapmodify tool core dumped.
>
> I can't provide the core dump, I'm sorry.
Thanks for the report, fixed now in master.
>
>
> These are both the ldif and the cmdline I used:
>
> ------------------------
> dn: cn=my name,ou=my_ou,dc=mydc
> changetype: add
> add: objectClass
> objectClass: posixAccount
> -
> add: userPassword
> userPassword: {SASL}user(a)domain.dc
> -
> ------------------------
>
> ldapmodify -vvvv -x cn=my_admin -wpassword -h 127.0.0.1 -p 389 -f file.ldif
> ldap_initialize( ldap://127.0.0.1:389 )
> Segmentation fault (core dumped)
>
>
--
-- Howard Chu
CTO, Symas Corp. http://www.symas.com
Director, Highland Sun http://highlandsun.com/hyc/
Chief Architect, OpenLDAP http://www.openldap.org/project/
10 years, 5 months
(ITS#7477) ldapmodify core dumps
by marco.pizzoli@gmail.com
Full_Name: Marco Pizzoli
Version: RE24 as of 2012/12/12
OS: Linux x86_64
URL: ftp://ftp.openldap.org/incoming/
Submission from: (NULL) (194.11.209.11)
I composed an erroneous ldif file to modify an entry, I executed the ldapmodify
operation and the ldapmodify tool core dumped.
I can't provide the core dump, I'm sorry.
These are both the ldif and the cmdline I used:
------------------------
dn: cn=my name,ou=my_ou,dc=mydc
changetype: add
add: objectClass
objectClass: posixAccount
-
add: userPassword
userPassword: {SASL}user(a)domain.dc
-
------------------------
ldapmodify -vvvv -x cn=my_admin -wpassword -h 127.0.0.1 -p 389 -f file.ldif
ldap_initialize( ldap://127.0.0.1:389 )
Segmentation fault (core dumped)
10 years, 5 months
Re: (ITS#7309) [PATCH] contrib/slapd-modules: Unify the structure and usage of Makefile
by quanah@zimbra.com
--On Saturday, December 15, 2012 7:06 PM +0000 michael(a)stroeder.com wrote:
> This is a cryptographically signed message in MIME format.
>
> --------------ms020502020407040509060800
> Content-Type: text/plain; charset=ISO-8859-1
> Content-Transfer-Encoding: quoted-printable
>
> I've tested RE24 4aed59cafd4815ea9d849b0031ebab54a0d74536 with this build=
>
> patch applied and everything seems to work for me.
>
> (Actually the patch was applied to RE24 in
> 979d48625035d7ccd85f0021295fc8ee0f45e31d.)
Thanks Michael!
--Quanah
--
Quanah Gibson-Mount
Sr. Member of Technical Staff
Zimbra, Inc
A Division of VMware, Inc.
--------------------
Zimbra :: the leader in open source messaging and collaboration
10 years, 5 months
Re: (ITS#7309) [PATCH] contrib/slapd-modules: Unify the structure and usage of Makefile
by michael@stroeder.com
This is a cryptographically signed message in MIME format.
--------------ms020502020407040509060800
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable
I've tested RE24 4aed59cafd4815ea9d849b0031ebab54a0d74536 with this build=
patch applied and everything seems to work for me.
(Actually the patch was applied to RE24 in
979d48625035d7ccd85f0021295fc8ee0f45e31d.)
--------------ms020502020407040509060800
Content-Type: application/pkcs7-signature; name="smime.p7s"
Content-Transfer-Encoding: base64
Content-Disposition: attachment; filename="smime.p7s"
Content-Description: S/MIME Cryptographic Signature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==
--------------ms020502020407040509060800--
10 years, 5 months
(ITS#7474) memberOf and full syncreplication
by marco.pizzoli@gmail.com
Full_Name: Marco Pizzoli
Version: 2.4.33
OS: Linux
URL: ftp://ftp.openldap.org/incoming/
Submission from: (NULL) (194.11.209.11)
Hi,
I think this could be considered an RFE.
During a full syncreplication I can't populate the memberOf attribute of some
entries because they are not (yet) present in the replicated tree.
The error is quite clear by looking at the logs during the full
syncreplication.,
"conn=-1 op=0: memberof_value_modify DN=<my_user_DN> add memberOf=<my_group_DN>
failed err=32
The problem doesn't occur on all user entries, because some of them are
replicated before the group which include them (as member, of course).
I would like to be assured that a full sync-replication can go smooth by
populating the memberOf attribute on all entries.
Thanks in advance
Marco
10 years, 5 months