openca-users  

Re: [Openca-Users] 0.9.1-7 problems with LDAP

Michael Bell
Tue, 17 Feb 2004 00:00:07 -0800

Chris Covell wrote:
Hello there !

I have just upgraded my test service from 0.9.1-1 to 0.9.1-7. All looked good until I was testing the LDAP. I now get an error when importing my certs:

Certificate 3 FAILED (error 65: LDAP-add failed: unrecognized objectClass 'pkiCA')

I have stopped the directory and completely cleared it down, then started it again.

Looking back through the list there seems to have been quite a bit of work done on the LDAP utils, btu I have also checked the schema in the directory and I do not have an objectClass of pkiCA. Do I need to change the schema that is loaded by the directory at start time ?

pkiCA and pkiUser are standard classes. Please see OPENCASRC/contrib/openldap/*.schema. If they are not in your directory schema definitions then please add it to the OpenCA schema definition. Modern directories already include these two classes so that we don't include them by default to avoid errormessages from directory servers during startup because of duplicate definitions.


Michael
--
-------------------------------------------------------------------
Michael Bell                   Email: [EMAIL PROTECTED]
ZE Computer- und Medienservice            Tel.: +49 (0)30-2093 2482
(Computing Centre)                        Fax:  +49 (0)30-2093 2704
Humboldt-University of Berlin
Unter den Linden 6
10099 Berlin                   Email (private): [EMAIL PROTECTED]
Germany                                       http://www.openca.org



-------------------------------------------------------
SF.Net is sponsored by: Speed Start Your Linux Apps Now.
Build and deploy apps & Web services for Linux with
a free DVD software kit from IBM. Click Now!
http://ads.osdn.com/?ad_id=1356&alloc_id=3438&op=click
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users