Fw: Can not add or modify users with RH8

"Paolo Marini" <[email protected]>
Newsgroups gmane.network.directoryadmin
Organization Prisma Engineering srl
Message-ID <005901c35ff4$bb52f1a0$230d0dc3@Athlon>
OK,
solved the question, may be the information is of some use to the developers
...

Under RH8, it was needed to to set the EXTENDED_SCHEMA to 1 in order for DA
to be usable in the migrate_common perl script needed to migrate the NIS to
LDAP. May be I have not found it on the documentation. Or may be it is not
on the documentation.

Also the kerberos schema on my RH8 machine does not work (I do not have
kerberos, by the way ...). I have commented out the Default Kerberos Realm
lines also on the migrate_common.ph scripts.

Hoping these information are of some use for RH users,

Thank to all

Paolo


----- Original Message -----
From: "Paolo Marini" <[email protected]>
To: "Directory Administrator List"
<[email protected]>
Sent: Tuesday, July 15, 2003 2:22 PM
Subject: Can not add or modify users with RH9


> Hi,
> I have set up a master and a replica LDAP servers, migrating NIS and SAMBA
> users succesfully (I can authenticate on the replica server both Linux and
> Samba) on two RH8 servers with openldap 2.1.21. Everything, comprising the
> replica, works fine.
>
> I have recompiled and installed Directory Administrator 1.5.1 on an RH9
> client machime. I have already read the mail regarding can not add new
user.
>
> I have the same problem: while browsing a user is fine, when I try a
> modification (e.g., I take user paolo which am I and try to change the
> password), I get an error popup: "Error, Cannot modify object class". On
the
> command line shell that started directory administrator, I can read:
>
> Fetching uid=paolo,ou=People,dc=prisma,dc=com from directory
> Entry was modified. Changes follow:
> LDAP_MOD_DELETE objectclass
> account
> LDAP_MOD_ADD objectclass
> organizationalPerson
> inetOrgPerson
> LDAP_MOD_REPLACE givenname
> Paolo
> LDAP_MOD_REPLACE sn
> Marini
>
> Fetching uid=paolo,ou=People,dc=prisma,dc=com from directory
> Entry was modified. Changes follow:
> LDAP_MOD_DELETE objectclass
> account
> LDAP_MOD_ADD objectclass
> organizationalPerson
> inetOrgPerson
> LDAP_MOD_REPLACE givenname
> Paolo
> LDAP_MOD_REPLACE sn
> Marini
>
> Somethine similar happens also when adding a new user.
>
> What can I do to get your wonderful (at least, looking at the interface !)
> tool working ? Am I alone getting these problems ?
>
>
> My slapd.conf file looks like this:
>
> # $OpenLDAP: pkg/ldap/servers/slapd/slapd.conf,v 1.8.8.7 2001/09/27
20:00:31
> kurt Exp $
> #
> # See slapd.conf(5) for details on configuration options.
> # This file should NOT be world readable.
> #
> include /etc/openldap/schema/core.schema
> include /etc/openldap/schema/cosine.schema
> include /etc/openldap/schema/inetorgperson.schema
> include /etc/openldap/schema/nis.schema
> include /etc/openldap/schema/redhat/rfc822-MailMember.schema
> include /etc/openldap/schema/redhat/autofs.schema
> #include /etc/openldap/schema/redhat/kerberosobject.schema
> include /etc/openldap/schema/samba.schema
>
> pidfile /var/run/slapd.pid
> #argsfile /var/run/slapd.args
>
> loglevel 256
>
> # Allow LDAPv2 client connections. This is NOT the default.
> allow bind_v2
>
> # Create a replication log in /var/lib/ldap for use by slurpd.
> replogfile /var/lib/ldap/master-slapd.replog
>
> TLSCipherSuite HIGH
> TLSCACertificateFile /etc/openldap/cacert.pem
> TLSCertificateFile /etc/openldap/thor-cert.pem
> TLSCertificateKeyFile /etc/openldap/thor-key.pem
> security tls=128,update_tls=128
>
> access to attrs=userPassword
> by self write
> by * auth
> access to attrs=lmPassword,ntPassword
> by self write
> by * auth
> access to *
> by read
>
> #######################################################################
> # bdb database definitions
> #######################################################################
> database bdb
> suffix "dc=prisma,dc=com"
> rootdn "cn=Manager,dc=prisma,dc=com"
> rootpw {SSHA}XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
> directory /var/lib/ldap
>
> # Indices to maintain
> index cn,uid eq
> index uidNumber eq
> index gidNumber eq
>
> # Replicas to which we should propagate changes
> replica host=steiner.prisma:389
> suffix "dc=prisma,dc=com"
> binddn "cn=Manager,dc=prisma,dc=com"
> credentials=xxxxx
> bindmethod=simple
> tls=yes
>
> Thank you
>
> Paolo
>



-------------------------------------------------------
This SF.Net email sponsored by: Free pre-built ASP.NET sites including
Data Reports, E-commerce, Portals, and Forums are available now.
Download today and enter to win an XBOX or Visual Studio .NET.
http://aspnet.click-url.com/go/psa00100003ave/direct;at.aspnet_072303_01/01
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.