The problem is that the version of OpenLDAP is too strict for the the version of OpenCA. I am trying to find a version of OpenLDAP now that is less strict, but still compiles on the later system I have.

Chris...

[EMAIL PROTECTED] wrote:
Guys, I know that 0.9.1.7 is old, but my production systems are running
that version... I am moving one of them to a new server with new OS
(Fedora Core3) and the latest version of OpenLDAP installed from sources.
I have backed up my old system and restored it to the new box.

Has there been a big change to the 0.9.1 series affecting LDAP ?

All seems to be fine apart from when I use the screens to poulate the LDAP
directory, here is the output (I have enabled DEBUG in ldap-utils.lib) :

Checking for a special DN where to store CA-certificates ...
There is no special DN specified.
Adding valid CA-certificates to the LDAP server ...Information of the Object:
dn serialNumber=3,CN=CA Name,OU=OU Name,O=O Name,C=GB
cn CA Name
serID 3
email
ou ARRAY(0x9d290cc)
o OU Name
l
st
c GB
End of the information of the Object.
element of baseDN: o=O Name
element of baseDN: c=GB
element of the inserted DN: serialNumber=3
element of the inserted DN: CN=CA Name
element of the inserted DN: OU=OU Name
element of the inserted DN: O=O Name
element of the inserted DN: C=GB
Checking RootDN of Certificate ...
Inserted DN BaseDN
h_basedn: GB
h_dn: GB
h_basedn_attribute: c
h_dn_attribute: C
h_basedn: O Name
h_dn: O Name
h_basedn_attribute: o
h_dn_attribute: O
Checking the length of the DN of the Certificate ...
Building the missing nodes of the LDAP-tree ...
Try to add o=O Name, c=GB ...
LDAP Schema DN: o=O Name, c=GB
node doesn't exist
Attributes for the insertion:
o = O Name
authorityRevocationList;binary =
certificateRevocationList;binary =
cACertificate;binary =
objectclass = ARRAY(0x9d9472c)
Must setup a CA-cert
The resultcode of the nodeinsertion was 21.

Certificate 3 FAILED (error 32: No such object)


I am worried about the ARRAY.

Any ideas ?

Chris...


------------------------------------------------------- SF email is sponsored by - The IT Product Guide Read honest & candid reviews on hundreds of IT Products from real users. Discover which products truly live up to the hype. Start reading now. http://ads.osdn.com/?ad_id=6595&alloc_id=14396&op=click _______________________________________________ Openca-Users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/openca-users



-------------------------------------------------------
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_id=6595&alloc_id=14396&op=click
_______________________________________________
Openca-Users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to