Re: FDS and OpenLDAP integration

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Richard Megginson wrote:

I have see that the structuralobjectclass is not defined in the attributes available in FDS.... how can resolve the probem?
I suggest adding an operational attribute called 'structuralObjectClass' to Fedora DS. Maybe you can just copy the definition of it from openldap.

Since the structuralObjectClass attribute is supposed to have a very special meaning for the DSA (RFC 4512), just adding it as a user attribute seems to me quite a broken approach. Provided you're running a decent version of OpenLDAP, you should be able to filter out undesired attributes from the replication process. For example, in slapd.conf (from slapd.conf(5) man page of OpenLDAP 2.3, but the feature exists since OpenLDAP 2.1, I think)

replica [...]
	attr!=structuralObjectClass

will prevent slurpd from replicating the negated attribute list.

p.



Ing. Pierangelo Masarati
OpenLDAP Core Team

SysNet s.r.l.
via Dossi, 8 - 27100 Pavia - ITALIA
http://www.sys-net.it
---------------------------------------
Office:  +39 02 23998309
Mobile:  +39 333 4963172
Email:   pierangelo.masarati@xxxxxxxxxx
---------------------------------------


--
Fedora-directory-users mailing list
Fedora-directory-users@xxxxxxxxxx
https://www.redhat.com/mailman/listinfo/fedora-directory-users

[Index of Archives]     [Fedora Directory Users]     [Fedora Directory Devel]     [Fedora Announce]     [Fedora Legacy Announce]     [Kernel]     [Fedora Legacy]     [Share Photos]     [Fedora Desktop]     [PAM]     [Red Hat Watch]     [Red Hat Development]     [Big List of Linux Books]     [Gimp]     [Yosemite News]

  Powered by Linux