Re: rewrite rule in slapd.conf

2006-04-20 Thread Pierangelo Masarati
> Hi, all > > I need "rewrite rule". For example, when client try authorize as > uid=A,ou=all-users,o=org I want check this uid in two containers: > uid=A,ou=local-users,o=org and uid=A,ou=ext-users,o=org. Is it > possible? > > I read about referral and subordinate. But I want use it on one server

Re: Case (in)sensitivity in 'by set' ACL?

2006-04-20 Thread Pierangelo Masarati
> We have a number of ACLs, in production on OpenLDAP 2.2.26, which are of > the form: > >by set="user/eduPersonAffiliation* & [Faculty]" read > > where the case of the attribute value in a given entry matches the ACL > as shown, and the eduPersonAffiliation attribute is > caseIgnoreMatch/caseI

Re: Case (in)sensitivity in 'by set' ACL?

2006-04-20 Thread Pierangelo Masarati
> Pierangelo, > > I appreciate your taking the time to answer this. > > I was careful in my original mail not to be complaining that the > behavior had changed. I was just asking for the clarification of what > behavior I should expect now and in future, wrt the case I ran into. > You've provided

Re: Shell backend: read_and_send_results

2006-04-20 Thread Timur Izhbulatov
On Wed, Apr 19, 2006 at 09:34:19PM +0200, Hallvard B Furuseth wrote: > Timur Izhbulatov writes: > > > After some investigation it appeared that the problem is in the way > > how the str2result function (servers/slapd/result.c) works. It uses > > the luitl_atoix function (libraries/libutil/utils.c)

Re: Case (in)sensitivity in 'by set' ACL?

2006-04-20 Thread Matt Benjamin
Pierangelo, I appreciate your taking the time to answer this. I was careful in my original mail not to be complaining that the behavior had changed. I was just asking for the clarification of what behavior I should expect now and in future, wrt the case I ran into. You've provided that, at

Error with ldbm

2006-04-20 Thread Chechu .
Hey¡¡ I'm trying to make my final proyect for finish the university. I'm installin a server with a PDC (openldap+samba-tng...)and I found an error, everything works like in the howtos i reading but when i try to add an entry in the "base" i get an error, i use the next command: ldapadd -x -h

Re: Error with ldbm

2006-04-20 Thread matthew sporleder
> ldapadd -x -h localhost -p 389 -D "cn=admin,dc=atc,dc=unican,dc=es" -f > /usr/local/var/openldap-data/base.ldiff -W " > "ldap_bind: Can't contact LDAP server (-1)" > >Starting test002-populate ... > running defines.sh > Starting slapd on TCP/IP port 9011... > Using ldapsearch to check that sl

Re: Error with ldbm

2006-04-20 Thread Quanah Gibson-Mount
--On Thursday, April 20, 2006 2:16 PM +0200 "Chechu ." <[EMAIL PROTECTED]> wrote: Hey?? I'm trying to make my final proyect for finish the university. I'm installin a server with a PDC (openldap+samba-tng...)and I found an error, everything works like in the howtos i reading but when i try t

Error 80 during bind when IPSec is still initializing

2006-04-20 Thread Jeremiah Martell
Hello, When I do a bind with IPSec it will work perfectly. However the very first time I try to do a bind when I havent done any other network activity yet on my computer, the bind will fail with an error 80 (Internal (implementation specific) error). However, a few seconds later once IPSec has

How to increase max simultaneous connections supported by OpenLDAP

2006-04-20 Thread Safdar Kureishy
Hi, I have looked online regarding increasing the maximum number of simultaneous connections/sessions that OpenLDAP supports, and only found this posting: http://www.openldap.org/lists/openldap-software/25/msg00106.html According to this posting, we need to recompile the OpenLDAP server for t

syncrepl with tls (documentation addition request)

2006-04-20 Thread Terry L. Inzauro
list, i have a pair (one master one slave) that are configured and working fine, syncrepl is setup between the master and slave, but the updates are transmitted in plain text(no tls). as soon as i enable tls, i recieve the following error on the master: TLS certificate verification: Error, un