My desktop works fine, but I haven't rebuilt too many desktop apps yet.
BTW, I will investigate the auxiliary objectclass account which is in
pam_ldap, and see what can be done about getting in into openldap (I would
guess it should go back into the schema file it was in for 2.0.x).
Ok, got the 2.1.20 rpms installed & configured. (All appears to be working on the ldap side.)
I tried to use the migrate scripts for shadow & got error on import. I removed objectclass: account from the ldif, and everything imported fine. Did some digging, and found this (same error I got):
http://www.openldap.org/lists/openldap-software/200207/msg00685.html
I'm still learning, so unsure where SUP top STRUCTURAL fits in. (Is this just a configuration issue?)
What happens now:
- As root, when passwords are changed, the ldap password is updated, but the system password (/etc/shadow) is not being updated.
- As a user, password change fails with:
passwd: Authentication token manipulation error
Thanks,
S
