Hi Rich, hi Robert, On 18/05/16 15:48, Rich Megginson wrote: > On 05/18/2016 07:35 AM, Robert Viduya wrote: >> I have no issues with that. > > Can you open a 389 ticket? https://fedorahosted.org/389/newticket > >> I’m a little concerned about the ldap message id, however. > > Me too. Developers, LDAP SMEs, please feel free to chime in. this is quite an interesting approach and it will probably work in the vast majority of cases. But instead of adding a separate LDAP _operation_ to the stream (where we cannot easily ensure uniqueness of the message id) we could implement the "LDAP Session Tracking Control" from http://tools.ietf.org/html/draft-wahl-ldap-session and only insert that _control_ into the first LDAP operation. There is already a 389 ticket for the server side functionality (https://fedorahosted.org/389/ticket/47873). On the F5 there is ASN1::element which makes construction of the control and adding it to the LDAP operation quite feasible. Regards, J. -- 389-users mailing list 389-users@xxxxxxxxxxxxxxxxxxxxxxx http://lists.fedoraproject.org/admin/lists/389-users@xxxxxxxxxxxxxxxxxxxxxxx