Re: Logging question

2006-06-14 Thread Howard Chu
matthew sporleder wrote: On 6/13/06, Ski Kacoroski [EMAIL PROTECTED] wrote: Hi, How do folks handle logging and debugging on a busy ldap server without being able to filter the logs into different files. In particular, I have a server that holds both machine and account data. The machine

Re: Logging question

2006-06-14 Thread Howard Chu
Ski Kacoroski wrote: Howard Chu wrote: matthew sporleder wrote: On 6/13/06, Ski Kacoroski [EMAIL PROTECTED] wrote: Or you could look into the access log overlay. :) That may be a good solution. Define two separate log databases, and separate the machine and user data into two databases,

Re: LDAP_DEPRECATED

2006-06-14 Thread Ralf Haferkamp
On Tuesday 13 June 2006 23:21, Jonathan Abbey wrote: On Thu, Jun 08, 2006 at 10:23:36AM +0200, Lise Didillon wrote: | Thank you very much, I've no more questions about ldap_deprecated. It's a | very good documentation How long have the functions that are guarded by LDAP_DEPRECATED been in

RE : Re: Trace the change on the directory

2006-06-14 Thread Eudes Leducq
Hi, I have upgraded my openLdap to 3.2.24, and auditlog work better now. The first time I did'nt see overlay auditlog in the list (config parameter), so I just added line auditlog /trace.log so thx now it's work . Aaron Richton [EMAIL PROTECTED] a écrit : Reporting that

Replicator access permissions

2006-06-14 Thread Giovanni Lovato
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi all! I have a replicated directory. The Replicator DN is: cn=Replicator,dc=example,dc=com and my policy directives are: access to dn.base= by * read access to dn.base=cn=Subschema by * read access to

Re: Logging question

2006-06-14 Thread Ski Kacoroski
Howard Chu wrote: matthew sporleder wrote: On 6/13/06, Ski Kacoroski [EMAIL PROTECTED] wrote: Or you could look into the access log overlay. :) That may be a good solution. Define two separate log databases, and separate the machine and user data into two databases, using subordinates to

Re: How to make binding on downward referral possible.

2006-06-14 Thread Sandeep A.S
Pierangelo Masarati wrote: Is there any way to make binding follow the referral in the case of downward referral ? In upward referral it works fine.(Ie slapd.conf entry of referral) But how I can make it with downward referral . My requirement is after serchng the entry,client should bind

component matching in 2.3.*

2006-06-14 Thread Norbert Klasen
Hi, what is the current status of component matching? The release announcement for 2.3.24 lists - LDAP Component Matching (requires OpenLDAP snacc) as a major enhancement. However, LDAP_COMP_MATCH is only defined in servers/slapd/slap.h if LDAP_DEVEL has been defined beforehand and

Re: Trace the change on the directo ry [auf Viren überprüft]

2006-06-14 Thread Hans Moser
Hi! Timur Izhbulatov schrieb: Is it possible on openLdap 2.3.18 to trace the change on the directory like the new entry or updated entry ? it's not for replication , I just want to build a change log file. See man slapo-accesslog I tried this and it works. databasebdb subordinate

Re: component matching in 2.3.*

2006-06-14 Thread Kurt D. Zeilenga
At 04:49 AM 6/14/2006, Norbert Klasen wrote: what is the current status of component matching? It's considered experimental... that is, it needs some work. Contributions welcomed. The release announcement for 2.3.24 lists - LDAP Component Matching (requires OpenLDAP snacc) as a

Re: How to make binding on downward referral possible.

2006-06-14 Thread Kurt D. Zeilenga
At 11:13 PM 6/13/2006, Sandeep A.S wrote: Pierangelo Masarati wrote: Is there any way to make binding follow the referral in the case of downward referral ? In upward referral it works fine.(Ie slapd.conf entry of referral) But how I can make it with downward referral . My requirement is

Re: Bind dn connection

2006-06-14 Thread Prachi Sonalkar
Hi kurt, Thanks for the reply, and suggestions. Following up on the same issue, is it possible that I can have more than one bind dns configured? Currently in slapd.conf, I have my rootdn as cn=Manager, dc=company, dc=com. Can I add another dn that can be used for authentication? ex:

Re: Trace the change on the directo ry [auf Viren überprüft]

2006-06-14 Thread Howard Chu
Hans Moser wrote: Hi! Timur Izhbulatov schrieb: Is it possible on openLdap 2.3.18 to trace the change on the directory like the new entry or updated entry ? it's not for replication , I just want to build a change log file. See man slapo-accesslog I tried this and it works. database

Re: Bind dn connection

2006-06-14 Thread Kurt D. Zeilenga
At 09:36 AM 6/14/2006, Prachi Sonalkar wrote: Following up on the same issue, is it possible that I can have more than one bind dns configured? Currently in slapd.conf, I have my rootdn as cn=Manager, dc=company, dc=com. Can I add another dn that can be used for authentication? While you can only

Chaining or Referral

2006-06-14 Thread David Damon
My company was bought out by another company and both companies maintain an OpenLDAP server for address and E-mail look-ups. We are not in full swing with merging the two companies together, but I have been tasked with providing an infrastructure for creating ldif deltas to both companies for

Re: Chaining or Referral

2006-06-14 Thread Kurt D. Zeilenga
At 04:03 PM 6/14/2006, David Damon wrote: My company was bought out by another company and both companies maintain an OpenLDAP server for address and E-mail look-ups. We are not in full swing with merging the two companies together, but I have been tasked with providing an infrastructure for