Re: [Fedora-directory-users] FDS and OpenLDAP integration

2007-09-11 Thread Del
Pierangelo Masarati wrote: Richard Megginson wrote: Great! I've added this information here - http://directory.fedoraproject.org/wiki/Howto:OpenldapIntegration Rich, I've cleaned up that entry, please check. That entry would make more sense if it began with: There are ways to sync data fr

Re: [Fedora-directory-users] ssh login fail

2007-09-11 Thread Richard Megginson
Steven Jones wrote: ldapsearch -x -b "dc=vuw,dc=ac,dc=nz" |more shows, # People, vuw.ac.nz dn: ou=People, dc=vuw,dc=ac,dc=nz objectClass: top objectClass: organizationalunit ou: People 8><-- # jonesst1, People, vuw.ac.nz dn: uid=jonesst1,ou=People, dc=vuw,dc=ac,dc=nz uid: jonesst1 givenNa

Re: [Fedora-directory-users] ssh login fail

2007-09-11 Thread Richard Megginson
Steven Jones wrote: I am getting things like this, but I did not enter them, so these are some sort of defaults? Yes. By default, Fedora DS setup will create some organizational entries for you. If you do not want to do this, you can run setup in Custom mode and tell it to not add these en

Re: [Fedora-directory-users] FDS and OpenLDAP integration

2007-09-11 Thread Richard Megginson
Del wrote: Pierangelo Masarati wrote: Richard Megginson wrote: Great! I've added this information here - http://directory.fedoraproject.org/wiki/Howto:OpenldapIntegration Rich, I've cleaned up that entry, please check. That entry would make more sense if it began with: There are ways to

Re: [Fedora-directory-users] ssh login fail

2007-09-11 Thread Richard Megginson
Steven Jones wrote: looking in the wrong place would be my guess, based on the err=32 in the previous logs you posted. I seem to have been able to stop the err=32 by reconfiguring ldap.conf a bit and cleaning out FDS and I assume putting the user in the right place but still no login.

RE: [Fedora-directory-users] ssh login fail

2007-09-11 Thread Steve Rigler
On Tue, 2007-09-11 at 14:44 +1200, Steven Jones wrote: > ldapsearch -x -b "dc=vuw,dc=ac,dc=nz" |more > > shows, > > # People, vuw.ac.nz > dn: ou=People, dc=vuw,dc=ac,dc=nz > objectClass: top > objectClass: organizationalunit > ou: People > > 8><-- > > # jonesst1, People, vuw.ac.nz > dn: uid

Re: [Fedora-directory-users] Fedora DS 1.0.4 build on Solaris 10?

2007-09-11 Thread Rob Crittenden
Scott Ding wrote: Has anyone built Fedora DS 1.0.4 on Solaris 10 (SPARC 32bit)? In theory this should work ok. I spent a little time many months ago to try to build it on Solaris 10 x86 and nearly got there before running out of time and I never got back to it because I needed to reclaim th

RE: [Fedora-directory-users] Fedora DS 1.0.4 build on Solaris 10?

2007-09-11 Thread Scott Ding
Thanks for the tips! I will give it a try. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Rob Crittenden Sent: Tuesday, September 11, 2007 7:25 AM To: General discussion list for the Fedora Directory server project. Subject: Re: [Fedora-directory-users] F

RE: [Fedora-directory-users] ssh login fail

2007-09-11 Thread Steven Jones
Thanks, Comments as below Steven Jones Senior Linux/Unix/San/Vmware System Administrator APG -Technology Integration Team Victoria University of Wellington Phone: +64 4 463 6272 -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Richard Megginson Sent:

Re: [Fedora-directory-users] ssh login fail

2007-09-11 Thread Richard Megginson
Steven Jones wrote: Thanks, Comments as below Steven Jones Senior Linux/Unix/San/Vmware System Administrator APG -Technology Integration Team Victoria University of Wellington Phone: +64 4 463 6272 -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Ri

RE: [Fedora-directory-users] Fedora DS 1.0.4 build on Solaris 10?

2007-09-11 Thread Scott Ding
Rob, We got the FDS compiled on Solaris 10 with NET-SNMP 5.4.1. The compiled result contains the following files: LICENSE.txt README.txt disktune slapd.tar.gz After I untar slapd.tar.gz, I got the following: alias manual shared bin - slapd - admin - server - install

Re: [Fedora-directory-users] Fedora DS 1.0.4 build on Solaris 10?

2007-09-11 Thread Richard Megginson
Scott Ding wrote: Rob, We got the FDS compiled on Solaris 10 with NET-SNMP 5.4.1. The compiled result contains the following files: LICENSE.txt README.txt disktune slapd.tar.gz After I untar slapd.tar.gz, I got the following: alias manual shared bin - slapd - admin - server

RE: [Fedora-directory-users] ssh login fail

2007-09-11 Thread Steven Jones
RE: FDS Wiki ~ I write stuff on my web site so I can refer to my notes from anywhere...I have no issue on doing/posting a FDS wiki pageonce I have a set of notes I am happy with, I will get back to you regards Steven Jones Senior Linux/Unix/San/Vmware System Administrator APG -Technolog

RE: [Fedora-directory-users] ssh login fail

2007-09-11 Thread Steven Jones
B*gger me # jonesst1, People, vuw.ac.nz dn: uid=jonesst1, ou=People, dc=vuw,dc=ac,dc=nz uid: jonesst1 givenName: steven objectClass: top objectClass: person objectClass: organizationalPerson objectClass: inetorgperson objectClass: posixAccount sn: jones cn: steven jones uidNumber: 500 gidNumbe

[Fedora-directory-users] FDS crash - happened after adding views

2007-09-11 Thread Dave Augustus
Hello all, On Centos 5 x86_64, we have fedora-ds-1.0.4-1.FC6.x86_64 installed. We are in the painful process of migrating from OpenLDAP to FDS. After adding around 40 views. The server crashed and won't restart. Running slapd-server -d 1 provides no clues until the last statement: [11/Sep/2007:

Re: [Fedora-directory-users] FDS crash - happened after adding views

2007-09-11 Thread Dave Augustus
On Tue, 2007-09-11 at 17:10 -0500, Dave Augustus wrote: > Hello all, > > On Centos 5 x86_64, we have fedora-ds-1.0.4-1.FC6.x86_64 installed. > > We are in the painful process of migrating from OpenLDAP to FDS. After > adding around 40 views. The server crashed and won't restart. > > Running slap

RE: [Fedora-directory-users] Fedora DS 1.0.4 build on Solaris 10?

2007-09-11 Thread Scott Ding
I got the FDS installed on Solaris 10 by calling ds_newinst.pl with a inf file. However, when I tried to start the FDS, I got the following error. It looks like I did not set up SSL correctly. Can anyone help? [11/Sep/2007:16:05:13 -0700] - SSL alert: Security Initialization: NSS initialization fa

[Fedora-directory-users] failover works but very slow.

2007-09-11 Thread Hai Wu
Hi, We are using fedora 1.0.4, When the first ldap server dies and does not ping, the clients can still bind to second server but it is very slow to do anything on clients, opening a terminal or listing a dir takes a few seconds. I find when ldap service is down on the first server but server it

Re: [Fedora-directory-users] failover works but very slow.

2007-09-11 Thread George Holbert
This is just the way it is with pam/nss_ldap as bundled in RHEL3 and RHEL4. There is no easy fix. If you like, you can reduce bind_timelimit to something very small. But this still isn't much of a solution, since clients will definitely notice when the primary is down. It's possible that newer

Re: [Fedora-directory-users] failover works but very slow.

2007-09-11 Thread Hai Wu
Thanks for your quick reply, it is hard to believe Redhat's Fedora DS has such problem on their OS. I tried to reduce bind_timelimit from 3 to 1 and it almost reduced the delay to an acceptable(but still noticeable) level, I think we will do this if there is no side effect to have such a small bin

Re: [Fedora-directory-users] failover works but very slow.

2007-09-11 Thread George Holbert
Thanks for your quick reply, it is hard to believe Redhat's Fedora DS has such problem on their OS. Actually this is more related to the pam and nss_ldap libraries from PADL, which RedHat (and pretty much everyone else) bundles with their Linux. It's unlikely that recent improvements to PADL's

Re: [Fedora-directory-users] Fedora DS 1.0.4 build on Solaris 10?

2007-09-11 Thread Richard Megginson
Scott Ding wrote: I got the FDS installed on Solaris 10 by calling ds_newinst.pl with a inf file. However, when I tried to start the FDS, I got the following error. It looks like I did not set up SSL correctly. Can anyone help? [11/Sep/2007:16:05:13 -0700] - SSL alert: Security Initialization: N

Re: [Fedora-directory-users] FDS crash - happened after adding views

2007-09-11 Thread Richard Megginson
Dave Augustus wrote: On Tue, 2007-09-11 at 17:10 -0500, Dave Augustus wrote: Hello all, On Centos 5 x86_64, we have fedora-ds-1.0.4-1.FC6.x86_64 installed. We are in the painful process of migrating from OpenLDAP to FDS. After adding around 40 views. The server crashed and won't restart. R

RE: [Fedora-directory-users] Fedora DS 1.0.4 build on Solaris 10?

2007-09-11 Thread Scott Ding
/home/dings/fds/alias does exist. I am starting FDS by using start-slapd as root user. /home/dings/fds/alias is writable by the server. It looks like start-slapd is looking for some certificate under /home/dings/fds/alias. I checked the content under /home/dings/alias. It contains only one file: li

Re: [Fedora-directory-users] failover works but very slow.

2007-09-11 Thread Hai Wu
I just want to add that our SUSE 10 clients do not have this problem at all. On 9/11/07, George Holbert <[EMAIL PROTECTED]> wrote: > > > > Thanks for your quick reply, it is hard to believe Redhat's Fedora DS > > has such problem on their OS. > > Actually this is more related to the pam and nss_ld