On 1/1/22 00:00, kevin martin wrote:
Pwdaccountlockedtime isn't an attribute that can be set in the database since ppolicy is now compiled into openldap as opposed to it being a schema that's pulled in and that attribute is not defined in the source code. I would say that, based on the man page, it's a bug.
No bug here. It works as expected. I've tested this with 2.6.0.
Indeed the schema is now hard-coded in servers/slapd/overlays/ppolicy.c but 'pwdAccountLockedTime' can be used in exactly the same way like before.
Ciao, Michael.