Thank you Quanah for the response! Makes sense.
One more question: under: /opt/symas/etc/openldap/schema/README It says that ppolicy is ppolicy.schema Password Policy Schema (work in progress)
If i'm not mistaken, this would be the new ppolicy10 , yes? https://datatracker.ietf.org/doc/html/draft-behera-ldap-password-policy-10
Thanks!
On Wed, Aug 25, 2021 at 1:27 PM Quanah Gibson-Mount quanah@symas.com wrote:
--On Wednesday, August 25, 2021 2:17 PM -0400 Dave Macias davama@gmail.com wrote:
Without doing any configuration, I attempted to start the slapd but /opt/symas/etc/openldap/slapd.conf did not exist, since it was /opt/symas/etc/openldap/slapd.conf.default . Which was an easy name change. After that the slapd service started without issues.
My question is, why are the pkg files now under /opt?
Two reasons:
a) It preserves the installation paths of the Symas OpenLDAP Gold product b) Installation paths are identical regardless of host OS. While RHEL8 has dropped OpenLDAP server support, other OSes have not. Additionally, RedHat has not stopped shipping the 2.4 libldap, so we still need isolation at that level.
Regards, Quanah
--
Quanah Gibson-Mount Product Architect Symas Corporation Packaged, certified, and supported LDAP solutions powered by OpenLDAP: http://www.symas.com
--On Wednesday, August 25, 2021 2:33 PM -0400 Dave Macias davama@gmail.com wrote:
Thank you Quanah for the response! Makes sense.
One more question: under: /opt/symas/etc/openldap/schema/README It says that ppolicy is ppolicy.schema Password Policy Schema (work in progress)
If i'm not mistaken, this would be the new ppolicy10 , yes? https://datatracker.ietf.org/doc/html/draft-behera-ldap-password-policy-10
Actually that should be deleted from the README, thanks. But yes, the ppolicy shipped with OpenLDAP 2.5 is based on draft 10, as documented in the man page.
--Quanah
--
Quanah Gibson-Mount Product Architect Symas Corporation Packaged, certified, and supported LDAP solutions powered by OpenLDAP: http://www.symas.com
openldap-technical@openldap.org