[Date Prev][Date Next]
[Chronological]
[Thread]
[Top]
Re: translucent overlay add an attribute to all users in a OU and subtree
- To: openldap-technical@openldap.org
- Subject: Re: translucent overlay add an attribute to all users in a OU and subtree
- From: Nicolas RENAULT <nicolas_renault@yahoo.fr>
- Date: Mon, 20 Oct 2014 11:33:37 +0200
- Dkim-signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yahoo.fr; s=s2048; t=1413797621; bh=Q/GyYXOMNIc4SwZy3OcpioF8RdMwuIzllRNP2RogdcM=; h=Date:From:To:Subject:References:In-Reply-To:From:Subject; b=AEchrSoVZ8MMs+ftgqaq0onvQ9SGBc74HzSBuYtO+3lb5p7hVlwABpX7N/HL1UWi44OGYIuPZ7nAir8DIJnBIXMHJvXAgWU6a/GfXTiQcprQE9RuQ2PDBWpRH47nNNUvwDWQY+l5E8GksmvupIeFRDqfrtiav9M/oXKaW3qNeQJlpftBJ5r7U31zfr4g0zX4gJ2Ff/xT+MIGYPxw1k8aMcZ1fsr6Z2u2mFmZfqH0XVY3uJ0k7/VVdzYL7n/M3hFydv2LGCkBW2g5nL+HZL7Sbstj6xBC+av3ZXxayfjF+MTGioTXA0JAB6x3n1WgHG3RuO35gYJ6u+SPC3kXhqlnow==
- Dkim-signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yahoo.fr; s=s1024; t=1413797621; bh=Q/GyYXOMNIc4SwZy3OcpioF8RdMwuIzllRNP2RogdcM=; h=X-Yahoo-Newman-Id:X-Yahoo-Newman-Property:X-YMail-OSG:X-Yahoo-SMTP:Message-ID:Date:From:User-Agent:MIME-Version:To:Subject:References:In-Reply-To:Content-Type:Content-Transfer-Encoding; b=aKrCEL3mVH3QJKoBgSPjh5rDQSzJH+P9qAHk2gjkRW8Cpcx2xKQUVesNMNNoIp28Q0bWF/PgjTbd9gO3zY9wTNiHCDf3Mn6zy7UAxBD9ALMF9EvDN6leC2g/nunxP6dLYuamOSWi1f27166GfrKvDLxRaTWVosRJwNSsjOCDfyY=
- Domainkey-signature: a=rsa-sha1; q=dns; c=nofws; s=s2048; d=yahoo.fr; b=fEsFiG4yaLIkazvLJc8lwtAYVE2LQVEJEhJHu5e9umTQkXltQkkyMXtWVZTo1n6imfbb28hylPVo5nYtQrvkdypr4sx7ZYu7UPpEcpjPI5jHFrDqbplL9bGybItcL9MqaG9Tas9lcR57KbDDZkhe5Xo7k2aUPzfcIIpeamaJib6DRzs+FX1aa/qW2OVtVQ/Qgj+xKo9XVgbCWU65EI56Z2ypeW2m/xDH8yVhJksTOKQQhDgkRoJwqyhTYyBIpsfQWIOHm6DH1BUZcxoMk7TUmuVpZ7aY1BL4bZURRaQQscCO2aAmWc+JcuWh3+4EAPhi/zC5p68LO2WEn3YSn1p4+A==;
- In-reply-to: <20141017230218.6c3b59fa@pink.avci.de>
- References: <53E0F6B2.9030302@yahoo.fr> <53E180E9.10005@symas.com> <53E254C7.8030801@yahoo.fr> <20140807090922.3b375d91@pink.avci.de> <543D1935.3090708@yahoo.fr> <20141014171717.09bd5dee@pink.avci.de> <543E22F0.7080208@yahoo.fr> <54413864.3030905@yahoo.fr> <20141017230218.6c3b59fa@pink.avci.de>
- User-agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0
Le 17/10/2014 23:02, Dieter Klünter a écrit :
Am Fri, 17 Oct 2014 17:40:20 +0200
schrieb Nicolas RENAULT <nicolas_renault@yahoo.fr>:
[...]
@(#) $OpenLDAP: slapd 2.4.40 (Oct 17 2014 15:08:43) $
root@linux-nn6c.site:/root/openldap-2.4.40/servers/slapd
Included static overlays:
accesslog
auditlog
collect
constraint
dds
deref
dyngroup
dynlist
memberof
ppolicy
pcache
refint
retcode
rwm
seqmod
sssvlv
syncprov
translucent
unique
valsort
Included static backends:
config
ldif
monitor
bdb
hdb
ldap
mdb
meta
relay
as you can see i build with a lot of overlay and backend (maybe to
much )
I take the slapd.conf from the server I used.
[...]
modulepath /usr/lib/openldap/modules/
moduleload back_ldap
moduleload back_meta
moduleload rwm
moduleload valsort
#moduleload accesslog
moduleload memberof
moduleload dynlist
moduleload sssvlv
#moduleload pcache
moduleload collect
overlay sssvlv
....
overlay collect
collectinfo cn=office,dc=example,dc=fr l,street
These are not valid module names, thus no module will be included.
Search /usr/lib/openldap/modules for proper module names.
-Dieter
hello,
thank for reply, in debug mode slapd say :
5444c2fd module_load: (rwm) already present (static)
5444c2fd line 18 (moduleload valsort)
5444c2fd module_load: (valsort) already present (static)
5444c2fd line 20 (moduleload memberof)
5444c2fd module_load: (memberof) already present (static)
5444c2fd line 21 (moduleload dynlist)
So I remove all moduleload directives , after that when i start openldap
and test if rwm , memberof , dynlist, ... works, all is good except the
collect overlay.
as I say on the last post, when I try to add this ldif :
-------------------
dn: cn=office,dc=example,dc=fr
objectClass: subentry
objectClass: extensibleObject
objectClass: collectiveAttributeSubentry
cn: office
subtreeSpecification: {base "ou=SOME_OU" minimum 2}
c-l: Berlin
c-street: Main Street
--------------------------
the result is :
adding new entry "cn=office,dc=example,dc=fr"
ldap_add: Object class violation (65)
additional info: objectClass: value #2 invalid per syntax
so I suppose that "objectClass: collectiveAttributeSubentry" as to be
declare in the schema. Y/N ?
if I look in RFC3671, I find this objectclass declaration :
objectclass ( 2.5.17.2 NAME
'collectiveAttributeSubentry' AUXILIARY)
As I can't find it in any .schema file (even in collective.schema), I
try to add it from a file (exemple.schema) ,
now when I try to add de ldif :
ldap_add: Object class violation (65)
additional info: 'c-l' can only appear in collectiveAttributeSubentry
--------------------------------------
any idea ?
ask me if you want that I post some part of slapd.conf or others log part.
And sorry for bad english.
Regards,
--
Nicolas