Prentice Bisbal wrote:
objectClass: account objectClass: krbPrincipal structuralObjectClass: account
I have googled my error and found many discussions for 'invalid structural object chain' on this list, but none of them seem to apply to this case.
That's what AUXILIARY object class 'krbPrincipalAux' is for.
If it's not present in your current schema you should grab a more recent version of the MIT Kerberos LDAP schema.
Ciao, Michael.