https://bugs.openldap.org/show_bug.cgi?id=9944

          Issue ID: 9944
           Summary: Reverting an olcDbACLBind statement breaks proxied
                    write operations
           Product: OpenLDAP
           Version: 2.6.3
          Hardware: All
                OS: All
            Status: UNCONFIRMED
          Keywords: needs_review
          Severity: normal
          Priority: ---
         Component: slapd
          Assignee: b...@openldap.org
          Reporter: qua...@openldap.org
  Target Milestone: ---

On a system with olcDbIDAssertBind configured, and proxied authorizations
working correctly, an olcDbACLBind statement was added to the configuration for
lastbind support.  However an incorrect identity was in place for the authzid
in the ACL bind statement which caused proxy authorization to fail.  The change
was backed out (There was never any change to the olcDbIDAssertBind config
fragment) and after that, all write operations failed instead of being proxied,
with err=80.  Restarting slapd fixed the issue, which indicates an underlying
problem in the cn=config db in reverting to the original working state.

-- 
You are receiving this mail because:
You are on the CC list for the issue.

Reply via email to