Re: Does "Users" in acl only goes for simple binds and not with sasl/gssapi?

2005-06-30 Thread Kurt D. Zeilenga
At 10:56 PM 6/30/2005, jay alvarez wrote: >And as you've said... > >> As far as your question regarding "users", >> slapd-access(5) >> says: >>The keyword users means access is granted to >>authenticated clients. > >so, when I'm using sasl/gssapi for authentication, it >goes without saying

RE: Multimaster replication problem

2005-06-30 Thread Mandeep Chadha
Thanks for the reply. http://www.openldap.org/lists/openldap-software/200204/msg00681.html Does anybody got multimaster working as per the procedure described in the above message ? Regards, Mandeep -Original Message- From: Pierangelo Masarati [mailto:[EMAIL PROTECTED] Sent: Thu 6/30/20

Re: Multimaster replication problem

2005-06-30 Thread Pierangelo Masarati
Mandeep Chadha wrote: We are having problem making multimaster replication work. Any help would be greatly appreciated. Enabled multimaster support as per howto document. I'm not aware of any howto document for multimaster; if there's any, it's unofficial, so you should ask the Author. So ca

Re: Does "Users" in acl only goes for simple binds and not with sasl/gssapi?

2005-06-30 Thread jay alvarez
-- "Kurt D. Zeilenga" <[EMAIL PROTECTED]> wrote: > Your description here implies that slapd(8) is > logging some sort of error due to a bad DN in > slapd.conf(5). But if that was so, you'd > never get as far as: > > >I get this: > > > >ldap_sasl_interactive_bind_s: No such object (32) > > My

Re: Multimaster replication problem

2005-06-30 Thread Kurt D. Zeilenga
At 10:25 PM 6/30/2005, Mandeep Chadha wrote: >We are having problem making multimaster replication work. Not surprising. See http://www.openldap.org/faq/index.cgi?file=1240

Multimaster replication problem

2005-06-30 Thread Mandeep Chadha
Hi All, We are having problem making multimaster replication work. Any help would be greatly appreciated. Enabled multimaster support as per howto document. Not able to add entries on either server if in slapd.conf updatedn line is added. If we add updatedn line in slapd.conf we observe the

Re: trouble in installing openldap: configure: error: Could not locate TLS/SSL package

2005-06-30 Thread Sameer N Ingole
Yoginee Bhagwat wrote: Hi , I am trying to install openldap2.2.26 on linux. I have installed openssl0.9.8-beta6 and BerkeleyDB4.3 Here is how I am running config : env CPPFLAGS="-I/usr/local/ssl/include -I/usr/local/ssl/include/openssl -I/usr/kerberos/include -I/usr/local/BerkeleyDB.4.3/inc

Re: Does "Users" in acl only goes for simple binds and not with sasl/gssapi?

2005-06-30 Thread Kurt D. Zeilenga
At 08:49 PM 6/30/2005, jay alvarez wrote: >Good day, >I'm just trying to create a simple read access to >everyone to "ou=staff,dc=preginet" , and yet slapd >keeps on complaining that this is a bad DN. Your description here implies that slapd(8) is logging some sort of error due to a bad DN in slap

Does "Users" in acl only goes for simple binds and not with sasl/gssapi?

2005-06-30 Thread jay alvarez
Good day, I'm just trying to create a simple read access to everyone to "ou=staff,dc=preginet" , and yet slapd keeps on complaining that this is a bad DN. Here are the access list I have tested: access to dn.children="ou=staff,dc=preginet" by * read or access to dn.subtree="ou=staff,dc

Re: Many 'Can't contact LDAP server' errors

2005-06-30 Thread John Duino
Just to follow up on my findings on this. After a lot of reading, searching and postulating the culprit turned out to be the DEBUG! As soon as I turned debugging/logging off, all the problems went away. I guess the DEBUG I/O was either hanging the system or just the software, in either case, it was

Re: slapd 2.2.26 DOS

2005-06-30 Thread Andreas Hasenack
Em Quinta 30 Junho 2005 14:59, juliano escreveu: > ldapsearch -b 'dc=xxx,dc=yyy' kills the slapd process. > I just compiled with --enable-ldbm > No errors reported when compiling... I do make test after and its okay too. > What i did wrong ? > > do_sasl_bind: dn () mech DIGEST-MD5 > SASL [conn=1]

Re: OpenLDAP power failure crash

2005-06-30 Thread Enric Font
--- Samuel Tran <[EMAIL PROTECTED]> escribió: > On Thu, 2005-06-30 at 23:18 +0200, Enric Font wrote: > > > > Hi! > > > > > > > > I've my OpenLDAP running on my debian sarge > server > > > and > > > > I've a little problem. > > > > > > > > I can modify the database, but when openldap > > > cras

Re: OpenLDAP power failure crash

2005-06-30 Thread Samuel Tran
On Thu, 2005-06-30 at 23:18 +0200, Enric Font wrote: > > > Hi! > > > > > > I've my OpenLDAP running on my debian sarge server > > and > > > I've a little problem. > > > > > > I can modify the database, but when openldap > > crashes > > > (for example due to a power failure), when it > > > restart

Re: trouble in installing openldap: configure: error: Could not locate TLS/SSL package

2005-06-30 Thread Quanah Gibson-Mount
--On Thursday, June 30, 2005 1:34 PM -0700 Yoginee Bhagwat <[EMAIL PROTECTED]> wrote: Hi , I am trying to install openldap2.2.26 on linux. I have installed openssl0.9.8-beta6 and BerkeleyDB4.3 Here is how I am running config : env CPPFLAGS="-I/usr/local/ssl/include -I/usr/local/ssl/incl

Re: slapd/slurpd sporadic replication

2005-06-30 Thread Quanah Gibson-Mount
--On Thursday, June 30, 2005 5:26 PM -0400 Brent Franks <[EMAIL PROTECTED]> wrote: On 6/29/05, Quanah Gibson-Mount <[EMAIL PROTECTED]> wrote: --On Wednesday, June 29, 2005 12:39 PM -0400 Brent Franks <[EMAIL PROTECTED]> wrote: > I have noticed something very strange however with the repl

Re: Overlay module accesslog on 2.3.4 - events not catched

2005-06-30 Thread Howard Chu
Ettore Simone wrote: Hi guys, I would like to integrate OpenLDAP in a mixed metadirectory environment (iPlanet, eDirectory, Oracle Internet Directory) using the changelog method described in Netscape IETF drafts draft-good-ldap-changelog-xx.txt. I'm trying to use (or extend it if needed) the ac

Re: slapd/slurpd sporadic replication

2005-06-30 Thread Brent Franks
On 6/29/05, Quanah Gibson-Mount <[EMAIL PROTECTED]> wrote: > > > --On Wednesday, June 29, 2005 12:39 PM -0400 Brent Franks > <[EMAIL PROTECTED]> wrote: > > > I have noticed something very strange however with the replication > > process. When I issue a modification to the master server, for abo

Re: OpenLDAP power failure crash

2005-06-30 Thread Enric Font
> > Hi! > > > > I've my OpenLDAP running on my debian sarge server > and > > I've a little problem. > > > > I can modify the database, but when openldap > crashes > > (for example due to a power failure), when it > > restarts, the database is the same that some > months > > ago! > > > > Anyone

trouble in installing openldap: configure: error: Could not locate TLS/SSL package

2005-06-30 Thread Yoginee Bhagwat
Hi , I am trying to install openldap2.2.26 on linux. I have installed openssl0.9.8-beta6 and BerkeleyDB4.3 Here is how I am running config : env CPPFLAGS="-I/usr/local/ssl/include -I/usr/local/ssl/include/openssl -I/usr/kerberos/include -I/usr/local/BerkeleyDB.4.3/include" LDFLAGS="-R/usr/loc

Re: slurpd trouble

2005-06-30 Thread Peter Marschall
Hi, On Thursday 30 June 2005 18:09, Leigh Porter wrote: > I have a similar problem but when I run the slave slapd with -d1 this is > what I see: > > /usr/local/etc/openldap/slapd.conf: line 74: unknown directive > "updatepw" inside backend database definition (ignored) > > So obviously I get a cre

Re: Comparing slapcat output

2005-06-30 Thread Hallvard B Furuseth
Howard Chu writes: >Pierangelo Masarati wrote: uidnumber=0+gidnumber=0,cn=peercred,cn=external,cn=auth (...) >>> But why aren't slapd's DN normalization routines being used here >>> considering it is slapd which adds that? > (...) > slapd is hardcoded to generate DNs in this form for SASL

slapd 2.2.26 DOS

2005-06-30 Thread juliano
ldapsearch -b 'dc=xxx,dc=yyy' kills the slapd process. I just compiled with --enable-ldbm No errors reported when compiling... I do make test after and its okay too. What i did wrong ? do_sasl_bind: dn () mech DIGEST-MD5 SASL [conn=1] Debug: DIGEST-MD5 server step 2 => ldap_dn2bv(16) ldap_err2str

Re: slurpd trouble

2005-06-30 Thread Leigh Porter
Hiya, I have a similar problem but when I run the slave slapd with -d1 this is what I see: /usr/local/etc/openldap/slapd.conf: line 74: unknown directive "updatepw" inside backend database definition (ignored) So obviously I get a credntials error when using this. How come updatepw doesno

Overlay module accesslog on 2.3.4 - events not catched

2005-06-30 Thread Ettore Simone
Hi guys, I would like to integrate OpenLDAP in a mixed metadirectory environment (iPlanet, eDirectory, Oracle Internet Directory) using the changelog method described in Netscape IETF drafts draft-good-ldap-changelog-xx.txt. I'm trying to use (or extend it if needed) the accesslog overlay, but it

Re: OpenLDAP power failure crash

2005-06-30 Thread Samuel Tran
On Thu, 2005-06-30 at 15:47 +0200, Enric Font wrote: > Hi! > > I've my OpenLDAP running on my debian sarge server and > I've a little problem. > > I can modify the database, but when openldap crashes > (for example due to a power failure), when it > restarts, the database is the same that some mo

OpenLDAP power failure crash

2005-06-30 Thread Enric Font
Hi! I've my OpenLDAP running on my debian sarge server and I've a little problem. I can modify the database, but when openldap crashes (for example due to a power failure), when it restarts, the database is the same that some months ago! Anyone know what happens? How can I fix it? Thanks! Xavi

Re: slurpd trouble

2005-06-30 Thread Scott Mayo
Quanah Gibson-Mount wrote: --On Wednesday, June 29, 2005 4:01 PM -0500 Scott Mayo <[EMAIL PROTECTED]> wrote: How do I do this? I can do a 'ldapsearch -x -b "dc=bes-serve,dc=bloomfield.k12.mo.us" "(objectclass=*)" and I get all of the information. ldapsearch -x -h -b "" -D "" -W It s