https://bugzilla.novell.com/show_bug.cgi?id=881364
https://bugzilla.novell.com/show_bug.cgi?id=881364#c1
Michael Hieb changed:
What |Removed |Added
----------------------------------------------------------------------------
CC| |michael.hieb@celoso.net
--- Comment #1 from Michael Hieb 2014-06-05 08:00:40 UTC ---
Inspired by the bug reported in 874083, I attempted to manually add the schemas
suse-mailserver.schema and dnszone.schema. Specifically I used the script
/usr/sbin/schema2ldif to generate ldif files and then ldapadd to load the
resulting ldap files:
pacaya:~ # /usr/sbin/schema2ldif /etc/openldap/schema/dnszone.schema >
/tmp/dnszone.ldif
pacaya:~ # /usr/sbin/schema2ldif /etc/openldap/schema/suse-mailserver.schema
/tmp/suse-mailserver.ldif
pacaya:~ # ldapadd -f /tmp/dnszone.ldif -H ldaps://pacaya.celoso.net -D
"cn=Administrator,dc=celoso,dc=net" -W &> /tmp/ldapadd.txt
pacaya:~ # ldapadd -f /tmp/suse-mailserver.ldif -H ldaps://pacaya.celoso.net -D
"cn=Administrator,dc=celoso,dc=net" -W &> /tmp/ldapadd.txt
I get a permissioning error:
pacaya:~ # less /tmp/ldapadd.txt
Enter LDAP Password:
ldap_add: Insufficient access (50)
adding new entry "cn=suse-mailserver,cn=schema,cn=config"
When I examine the zero database there does not seem to be a password recorded
for cn=config:
pacaya:~ # slapcat -n0 | grep olcRoot
olcRootDN: cn=config
olcRootDN: cn=Administrator,dc=celoso,dc=net
olcRootPW:: SOMEPASSWORD
olcRootDN: cn=Administrator,dc=avenidasur,dc=com
olcRootPW:: SOMEPASSWORD
olcRootDN: cn=Administrator,dc=velvet-ewe,dc=com
olcRootPW:: SOMEPASSWORD
olcRootDN: cn=Administrator,dc=diana-mercedes,dc=com
olcRootPW:: SOMEPASSWORD
dn: olcDatabase={0}config,cn=config
objectClass: olcDatabaseConfig
olcDatabase: {0}config
olcRootDN: cn=config
structuralObjectClass: olcDatabaseConfig
entryUUID: 19aeba18-7c88-1033-925a-2b8d247a501a
creatorsName: cn=config
createTimestamp: 20140530205247Z
entryCSN: 20140530205247.552123Z#000000#000#000000
modifiersName: cn=config
modifyTimestamp: 20140530205247Z
Examining the output from slapcat -n0 however, it does appear that both dnszone
and suse-mailserver are loaded as reported by yast2.
pacaya:~ # slapcat -n0 > /tmp/slapcat-n0.txt
[snip...]
dn: cn={5}suse-mailserver,cn=schema,cn=config
objectClass: olcSchemaConfig
cn: {5}suse-mailserver
olcObjectIdentifier: {0}MailOC 1.3.6.1.4.1.7057.10.4.1
olcObjectIdentifier: {1}MailAT 1.3.6.1.4.1.7057.10.4.2
olcAttributeTypes: {0}( MailAT:1 NAME ( 'suseMailAcceptAddress' 'mailAcceptAdd
ress' ) DESC 'RFC 822 email address' EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.
121.1.26{256} )
olcAttributeTypes: {1}( MailAT:2 NAME ( 'suseMailRejectAddress' 'mailRejectAdd
ress' ) DESC 'RFC 822 email address' EQUALITY caseIgnoreIA5Match
SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.
121.1.26{256} )
olcAttributeTypes: {2}( MailAT:3 NAME ( 'suseVirtualAddress' 'virtualAddress'
) DESC 'virtual address' EQUALITY caseIgnoreIA5Match OBSOLETE
SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.26{256} )
olcAttributeTypes: {3}( MailAT:4 NAME ( 'suseMailAlias' 'mailAlias' ) DE
SC 'email alias' EQUALITY caseIgnoreIA5Match OBSOLETE SUBSTR case
IgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256} )
[snip...]
dn: cn={6}dnszone,cn=schema,cn=config
objectClass: olcSchemaConfig
cn: {6}dnszone
olcAttributeTypes: {0}( 1.3.6.1.4.1.2428.20.0.0 NAME 'dNSTTL' DESC 'An intege
r denoting time to live' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.27 )
olcAttributeTypes: {1}( 1.3.6.1.4.1.2428.20.0.1 NAME 'dNSClass' DESC 'The clas
s of a resource record' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.26 )
olcAttributeTypes: {2}( 1.3.6.1.4.1.2428.20.0.2 NAME 'zoneName' DESC 'The name
of a zone, i.e. the name of the highest node in the zone' EQUALITY caseIgnor
eIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121
.1.26 )
olcAttributeTypes: {3}( 1.3.6.1.4.1.2428.20.0.3 NAME 'relativeDomainName' DESC
'The starting labels of a domain name' EQUALITY caseIgnoreIA5Match SUBSTR ca
seIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
[snip...]
--
Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.