On Tue, 2008-09-02 at 09:26 -0600, Rich Megginson wrote: > Craig White wrote: > > On Thu, 2008-08-28 at 13:53 -0700, Craig White wrote: > > > >> I have users personal address books as an ou under their accounts... > >> > >> ou=AddressBook,uid=craig,ou=People,ou=Accounts,dc=example,dc=com > >> > >> but when I try to add an entry, I am blocked... > >> > >> [28/Aug/2008:12:42:11 -0700] conn=18613 op=1 ADD > >> dn="cn=Test,ou=AddressBook,uid=craig,ou=People,ou=Accounts,dc=example,dc=com" > >> [28/Aug/2008:12:42:11 -0700] conn=18613 op=1 RESULT err=50 tag=105 > >> nentries=0 etime=0 > >> > >> I need an ACi that allows each uid account to read/write entries in OU's > >> under their own accounts and the only ACi's I have are the ones > >> inherited > >> > > ---- > > It would be great if I could get some help here. > > > The ACL Summary error log level can provide some clues. > http://directory.fedoraproject.org/wiki/FAQ#Troubleshooting ---- I've been all over that and I understand that err=50 is insufficient access and I've read all the pages I can find on the wiki and the 7.1 support pages but it's not helping. I hate to say this but I can do this so simply with OpenLDAP and I'm mystified why it is so difficult to do on Fedora-DS Craig