To answer your question: Do you have o=LLIC on a SUFFIX statement in DS CONF? --> yes
I removed the o=LLIC option from the adminDN parameter and the command worked. "I was doing what the book said to do, officer, honest." I'm a newb when it comes to LDAP stuff. Thanks for your help. onward . . . . Steve -----Original Message----- From: The IBM z/VM Operating System [mailto:ib...@listserv.uark.edu] On Behalf Of Alan Altmark Sent: Wednesday, November 11, 2009 12:58 PM To: IBMVM@LISTSERV.UARK.EDU Subject: Re: LDAP server On Wednesday, 11/11/2009 at 09:22 EST, "Gentry, Stephen" <stephen.gen...@lafayettelife.com> wrote: > Yes they match. > Server Configuration > adminDN: cn=llAdmin, o=LLIC > adminPW: *configured* > allowAnonymousBinds: on A possibility: You have o=LLIC on the AdminDN, but you didn't provide it on your ldapmodify. Do you have o=LLIC on a SUFFIX statement in DS CONF? I don't normally see suffixes on AdminDN definitions. Alan Altmark z/VM Development IBM Endicott