[389-users] 389 version and build number

2012-04-09 Thread Alberto Viana
I have a 389 DS (1.2.10.2), made a backup (using the option Back up Directory Server in the 389 ds console) and installed the lastest version (1.2.10.4). I used the option Restore Directory Server to restore all my configuration but after that in main 389 ds console windows, it shows me the old

Re: [389-users] Sync with active directory doubts

2012-05-18 Thread Alberto Viana
Hello all, I will modify my config. Thanks so much for the information. Alberto Viana On Fri, May 18, 2012 at 2:42 AM, Juan Carlos Camargo juan...@eprinsa.eswrote: Alberto, I had a 389ds server with more than 70 windows sync agreements (for a first user reconciliation). Each of them

[389-users] unhashed#user#password field

2012-05-18 Thread Alberto Viana
I have a 389 DS server replication agreement whith an AD Server and when I change the password in the windows side it replicates into 389 but via 389 console I can see this field unhashed#user#password in clear text. How can I encrypt this field? Is it possible? I tried the following

[389-users] Replication field doubt

2012-07-05 Thread Alberto Viana
and change it on the replication plugin? Thanks Alberto Viana -- 389 users mailing list 389-users@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/389-users

[389-users] SSL connection based on cert

2012-08-31 Thread Alberto Viana
Hi, I´m tyring to test a SSL connection from one server(linux) to 389DS using openssl: openssl s_client -connect MY_389_SERVER:636 -cert local_server.crt -key local_server.key -CAfile CA-AD.crt And I got this error on my 389DS log: [31/Aug/2012:14:04:57 -0300] conn=146531 Netscape Portable

[389-users] Allow to add a user (userpassword)

2012-09-13 Thread Alberto Viana
How Can allow a normal user from my directory (for example uid=my.appuid,ou=test,dc=test,dc=com ) to add an user entry in the tree? (Remebering that I dont want this user as a administrator, I just want that user to be able to add users into a specific subtree in my directory). Is that possible?

[389-users] console vs nsslapd-allow-anonymous-access

2013-04-09 Thread Alberto Viana
Hi all, Why when i set nsslapd-allow-anonymous-access to off, the ds console stop to work? (I cant login anymore at console) The error message is: Cannot connect to the directory server: netscape.ldap.LDAPException: error result(32) thanks Alberto Viana -- 389 users mailing list 389-users

[389-users] compiling 389 DS

2013-06-17 Thread Alberto Viana
argument of type âlong long unsigned intâ, but argument 3 has type âPRUint64â [-Wformat] Also tried 389-ds-base-1.3.0.3 and 389-ds-base-1.2.11.19 with the same error. Can anyone point me how to fix it? Thanks. Alberto Viana -- 389 users mailing list 389-users@lists.fedoraproject.org https

[389-users] Multi master replication problem (389 DS - AD)

2013-07-04 Thread Alberto Viana
the OPENLDAP. Any clue? Thanks Alberto Viana -- 389 users mailing list 389-users@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/389-users

Re: [389-users] Multi master replication problem (389 DS - AD)

2013-07-05 Thread Alberto Viana
e Pesq uisa,L=Rio de Janeiro,C=BR I already imported my certificates into 389 ds and windows 2008. I use win2008 as CA. Just to remeber that the same enviroment was working fine with my previous 389DS version. Do you need something more specific? Alberto Viana On Fri, Jul 5, 2013

Re: [389-users] Multi master replication problem (389 DS - AD)

2013-07-05 Thread Alberto Viana
Norkio, No, it's a new machine. I just rebuild everything. I'm using Ubuntu 12.04.2 LTS. Alberto Viana On Fri, Jul 5, 2013 at 2:50 PM, Noriko Hosoi nho...@redhat.com wrote: Alberto Viana wrote: I already imported my certificates into 389 ds and windows 2008. I use win2008 as CA. Just

Re: [389-users] Multi master replication problem (389 DS - AD)

2013-07-05 Thread Alberto Viana
you know. Alberto Viana On Fri, Jul 5, 2013 at 3:15 PM, Noriko Hosoi nho...@redhat.com wrote: Alberto Viana wrote: Norkio, No, it's a new machine. I just rebuild everything. When you switched to the new machine, you reuse the old server cert from the previous DS or renewed

Re: [389-users] Multi master replication problem (389 DS - AD)

2013-07-08 Thread Alberto Viana
Hi man, Where I can find the 1.3.1 source to download? I tried http://directory.fedoraproject.org/wiki/Source#Directory_Server_Source_Code, but it´s not available over there. Alberto Viana On Fri, Jul 5, 2013 at 3:24 PM, Alberto Viana alberto...@gmail.com wrote: No. It's a new server cert

Re: [389-users] Multi master replication problem (389 DS - AD)

2013-07-10 Thread Alberto Viana
/1.2.10.12B2012.210.1745 with this options checked. I also set nsslapd-errorlog-level to 16384, but it didn´t give me anything else. What could be? There´s anything else that I can provide to help to debug? Thanks Alberto Viana On Mon, Jul 8, 2013 at 5:38 PM, Noriko Hosoi nho...@redhat.com wrote

[389-users] userPassword attribute

2013-09-05 Thread Alberto Viana
389-Directory/1.3.1.3 B2013.193.1948 I set an ACI to specific user to add,read or modify everything on this OU: dn: ou=UFRGS,ou=RNP,dc=homolog,dc=rnp changetype: modify add: aci aci: (targetattr=*)(version 3.0;aci ufrgs add permission;allow (add,read,write,compare)

[389-users] upgrade 389ds from 1.2.10.12 to 1.3.1.8

2013-09-20 Thread Alberto Viana
-0300] - archive2db: Unable to restart 'NetscapeRoot' [20/Sep/2013:14:58:26 -0300] - Restore finished. Someone can point me what I'm doing wrong? Thanks Alberto Viana -- 389 users mailing list 389-users@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/389-users

Re: [389-users] setup-ds-admin.pl errors

2013-11-26 Thread Alberto Viana
Rich, Any clues? On Thu, Nov 21, 2013 at 3:19 PM, Alberto Viana alberto...@gmail.com wrote: $ ./configure --with-openldap I did not specify any CFLAGS. On Thu, Nov 21, 2013 at 3:09 PM, Rich Megginson rmegg...@redhat.comwrote: On 11/21/2013 09:55 AM, Alberto Viana wrote: Rich

Re: [389-users] setup-ds-admin.pl errors

2013-11-26 Thread Alberto Viana
Thanks, I will try it. On Tue, Nov 26, 2013 at 11:44 AM, Rich Megginson rmegg...@redhat.comwrote: On 11/26/2013 04:17 AM, Alberto Viana wrote: Rich, Any clues? Yes, fixed in 1.3.2.6. 1.3.2.7 is out now too. On Thu, Nov 21, 2013 at 3:19 PM, Alberto Viana alberto

[389-users] migrate-ds-admin.pl

2013-12-02 Thread Alberto Viana
Hi, I'm trying to migrate from old machine (389-Directory/1.2.10.12) to a new machine (389-Directory/1.3.2.6) using the migrate script and i'm getting the following errors: migrate-ds-admin.pl --oldsroot /opt/dirsrv.20131029/ --actualsroot /opt/dirsrv --instance slapd-RNP

Re: [389-users] migrate-ds-admin.pl

2013-12-02 Thread Alberto Viana
to start databases, err=-1 Unknown error: -1 +[02/Dec/2013:12:16:25 -0200] - Failed to start database plugin ldbm database Any clues? Thanks On Mon, Dec 2, 2013 at 10:48 AM, Alberto Viana alberto...@gmail.com wrote: Hi, I'm trying to migrate from old machine (389-Directory/1.2.10.12) to a new

[389-users] check hostname option

2013-12-05 Thread Alberto Viana
I have 2 389 running (389-Directory/1.3.2.6 and 389-Directory/1.3.1.3) with multiple master configuration. When I set the option check hostname against name in certificate for outbound SSL connections the agreement does not work and shows me this error: [05/Dec/2013:14:35:55 -0200]

[389-users] group issues

2013-12-12 Thread Alberto Viana
I have 2 389 DS with multimaster replicaton and one of them replicating (multimaster) with my AD server 389DS2 -- 389DS1 -- ADServer 389-Directory/1.2.10.12 AD Server 2008 R2 With 2 specific groups, for some reason that could not identify in my logs, all members are deleted (i'm not sure if

Re: [389-users] group issues

2013-12-12 Thread Alberto Viana
I found the root cause, it's happens when I change a user from one OU to another on my windows side. Is that an expected behavior? On Thu, Dec 12, 2013 at 3:47 PM, Alberto Viana alberto...@gmail.com wrote: I have 2 389 DS with multimaster replicaton and one of them replicating (multimaster

Re: [389-users] group issues

2013-12-13 Thread Alberto Viana
Rich, The behavior is a little bit different and I will try to explain: version: 389-Directory/1.2.11.25 B2013.347.1221 389DS -- Windows 2008 R2 Name of group: GSG_TESTE Included a lot of users on this group, including this user: DN of the user on windows: CN=Alberto Viana,OU=TESTE,DC=homolog

Re: [389-users] group issues

2013-12-18 Thread Alberto Viana
Rich, https://fedorahosted.org/389/ticket/47642 Thanks Alberto Viana On Fri, Dec 13, 2013 at 3:55 PM, Rich Megginson rmegg...@redhat.com wrote: On 12/13/2013 10:43 AM, Alberto Viana wrote: Rich, The behavior is a little bit different and I will try to explain: version: 389-Directory

[389-users] groups issues

2014-03-10 Thread Alberto Viana
Hello, I have the following scenario with multi master replication 389DS (389-Directory/1.3.2.13 B2014.066.1215) - AD (windows 2008R2) I'm having the following problem using groups on 389: What I DID Create a user test1 Added this user to group GROUP_TEST When I delete this user from 389DS

Re: [389-users] memberof plugin not working as expected

2014-07-10 Thread Alberto Viana
, Alberto Viana wrote: Noriko, = # fixup-memberof.pl -D cn=Directory Manager -w - -b OU=my,dc=mydc,dc=local Bind Password: Successfully added task entry cn=memberOf_fixup_2014_7_10_15_25_29, cn=memberOf task, cn=tasks, cn=config = It Removed all

Re: [389-users] memberof plugin not working as expected

2014-07-16 Thread Alberto Viana
Jonathan, That worked for me too so I just added all users into a group (any group) and all users received the memberof attribute for all groups. Noriko, This query returns all users on my LDAP (all users have inetuser class). Alberto Viana On Wed, Jul 16, 2014 at 2:46 PM, Jonathan

[389-users] Replication doubts

2014-08-04 Thread Alberto Viana
Hi, I want to enable a replication to a specific subtree on my directory, how do I proceed? For example: I have my root suffix dc=homolog,dc=rnp And just want do enable replication for ou=teste,dc=homolog,dc=rnp Is that possible? Thanks -- 389 users mailing list

Re: [389-users] Replication doubts

2014-08-04 Thread Alberto Viana
Mark, Thanks, I will do that. Alberto Viana On Mon, Aug 4, 2014 at 2:25 PM, Mark Reynolds marey...@redhat.com wrote: On 08/04/2014 01:19 PM, Alberto Viana wrote: Hi, I want to enable a replication to a specific subtree on my directory, how do I proceed? For example: I have my

Re: [389-users] import bulk

2014-08-13 Thread Alberto Viana
-YOURID/db/YOURBACKEND/id2entry.db# Thanks, --noriko Alberto Viana wrote: Rich, I have 9 users on this DN/OU, just this one gave me this error, I'm not sure that I understand what you're saying to me. On Tue, Aug 12, 2014 at 4:57 PM, Rich Megginson rmegg...@redhat.com wrote: On 08/12

[389-users] Re: Sync problems with AD 2012 R2

2016-05-17 Thread Alberto Viana
n my production environment I have:* *389-ds-base 1.3.2.19 + Windows 2008 r2* On Mon, May 16, 2016 at 6:02 PM, Noriko Hosoi <nho...@redhat.com> wrote: > On 05/16/2016 01:01 PM, Alberto Viana wrote: > > I'm trying to setup a new scenario with 389 and AD 2012 R2 (So far I'm > usi

[389-users] Re: Sync problems with AD 2012 R2

2016-05-17 Thread Alberto Viana
Megginson <rmegg...@redhat.com> wrote: > On 05/17/2016 08:01 AM, Alberto Viana wrote: > > Noriko, > > Just to let you know, after I replicated/created the exactly same OU > structure on both side, the replication seems to works fine. I'm still not > sure that is the e

[389-users] Re: Sync problems with AD 2012 R2

2016-05-17 Thread Alberto Viana
logdb/169ce382-1b9011e6-91ddc5b4-dc63c95a_55c88d9900c8.db On Tue, May 17, 2016 at 10:08 AM, Alberto Viana <alberto...@gmail.com> wrote: > Noriko, > > *Did you use the same version of 389-ds-base against AD on 2008 R2 and > 2012 R2?* > *389-Directory/1.3.4.8 <

[389-users] Re: Sync problems with AD 2012 R2

2016-05-17 Thread Alberto Viana
just in AD side with users: Full sync ok* *If you need any other info, please let me know.* On Tue, May 17, 2016 at 2:54 PM, Noriko Hosoi <nho...@redhat.com> wrote: > Thank you for your input, Alberto. > > On 05/17/2016 07:38 AM, Alberto Viana wrote: > > Rich, > &

[389-users] Sync problems with AD 2012 R2

2016-05-16 Thread Alberto Viana
I'm trying to setup a new scenario with 389 and AD 2012 R2 (So far I'm using with AD 2008 R2 and everything works fine). 389-Directory/1.3.4.8 B2016.063.1654 Windows 2012 R2 64bits After configure the AD replication and Initiate a full sync, it starts to do some entries and I got the

[389-users] Re: Password expiration doubts

2016-10-25 Thread Alberto Viana
Mark, Thanks, I will try on it. One more question, and what about changing password through winsync plugin? On Tue, Oct 25, 2016 at 1:21 PM, Mark Reynolds <marey...@redhat.com> wrote: > > > On 10/25/2016 11:10 AM, Mark Reynolds wrote: > > > > On 10/25/2016 10

[389-users] Re: Password expiration doubts

2016-10-25 Thread Alberto Viana
I already tested it, and works as expected, Thanks. On Tue, Oct 25, 2016 at 2:24 PM, Alberto Viana <alberto...@gmail.com> wrote: > Mark, > > Thanks, I will try on it. > > One more question, and what about changing password through winsync plugin? > > On Tue, Oc

[389-users] Re: subtree password policy problems

2016-11-16 Thread Alberto Viana
Hi, Anyone? I really need some help on this. Thanks On Fri, Nov 4, 2016 at 1:01 PM, Alberto Viana <alberto...@gmail.com> wrote: > Hi, > > Just to explain better what I need: > > Enforce a global password policy with password expiration but disable for > some spe

[389-users] Re: subtree password policy problems

2016-11-18 Thread Alberto Viana
-console, everything works fine. Analysing the nsPwPolicyContainer and nsPwTemplateEntry created by both methods I could not find any difference. The exactly same thing happens on 1.3.4.11, so is that a script problem? Should I file a ticket anyway? Thanks Alberto Viana On Wed, Nov 16, 2016 at 10

[389-users] Re: Get user password expiration date

2016-11-03 Thread Alberto Viana
I'm also working on it right now and using perl to do that, so I used filter (objectclass=ntUser) and requesting the passwordExpirationTime attribute like this: filter => "objectclass=ntUser", attrs => ["entrydn","mail","passwordExpirationTime"], ); In my case, I prefer rather than write

[389-users] Re: Get user password expiration date

2016-11-03 Thread Alberto Viana
Todor, Off course, but I started it today, so maybe I will finish in next week, please send a email directly to me so I can remember :) Cheers, Alberto Viana On Thu, Nov 3, 2016 at 10:16 AM, Todor Petkov <petkovpto...@gmail.com> wrote: > On Thu, Nov 3, 2016 at 2:13 PM, Alberto Viana

[389-users] subtree password policy problems

2016-11-04 Thread Alberto Viana
Hi, 389-ds: 1.3.4.11 What I Need: Enforce a global password policy but disable for some specifics OUs. Doc: https://access.redhat.com/documentation/en-US/Red_Hat_Directory_Server/10/html-single/Administration_Guide/index.html#User_Account_Management-Managing_the_Password_Policy Everything was

[389-users] Re: subtree password policy problems

2016-11-04 Thread Alberto Viana
Hi, Just to explain better what I need: Enforce a global password policy with password expiration but disable for some specifics OUs (just disable the password expiration). On Fri, Nov 4, 2016 at 12:54 PM, Alberto Viana <alberto...@gmail.com> wrote: > Hi, > > 389-ds: 1.3.

[389-users] No NetscapeRoot under Replication

2017-08-10 Thread Alberto Viana
Hi, I'm testing version 1.3.7.1: ~# ns-slapd -v 389 Project 389-Directory/1.3.7.1.20170714gitecd2588 B2017.195.1935 And using 389 console there is no NetscapeRoot option under Replication (ony userRoot), is it an expected behavior? Thanks ___

[389-users] Re: password replication

2017-07-10 Thread Alberto Viana
nk that is the same behavior of 389 plugin, am I right?) On Tue, Jul 4, 2017 at 9:10 PM, William Brown <wibr...@redhat.com> wrote: > On Mon, 2017-07-03 at 11:21 -0300, Alberto Viana wrote: > > I have a replication setup (389 and AD): > > > > > > 389-Directory/1.3

[389-users] compiling 389-ds 3.6(or newer) on ubuntu 16.04

2017-07-14 Thread Alberto Viana
(-levent), my workaround was to add it manually: LIBS=-levent ./configure I'm not sure if is an expected behavior, but anyway I just want to share my workaround. Cheers, Alberto Viana ___ 389-users mailing list -- 389-users@lists.fedoraproject.org

[389-users] Re: password replication

2017-07-21 Thread Alberto Viana
Anyone else that could point me why is this happening? On Tue, Jul 11, 2017 at 9:08 PM, William Brown <wibr...@redhat.com> wrote: > On Mon, 2017-07-10 at 16:39 -0300, Alberto Viana wrote: > > William, > > > > Yes, there's a flag on AD that forces users to reset the

[389-users] password replication

2017-07-03 Thread Alberto Viana
I have a replication setup (389 and AD): 389-Directory/1.3.2.19 B2014.201.1231 We are implementing password police on both side (and password expiration). When the account has expired on AD side (It means that on AD side I have the flag "user must change password" set on an user) , when I try

[389-users] Re: Replication strategy

2017-06-05 Thread Alberto Viana
at 10:33 PM, William Brown <wibr...@redhat.com> wrote: > On Fri, 2017-06-02 at 10:36 -0300, Alberto Viana wrote: > > William, > > > > I do nothing hehehehe, what I mean that I just ignore the errors :) > > > > Here's my agreement: > > >

[389-users] Replication strategy

2017-06-01 Thread Alberto Viana
I have been using 389 for a while and so far my replication strategy is: 389 <=> AD Replicating whole domain dc=my,dc=domain - OU=user -user1 -user2 - OU=people -user1 -user2 - OU=apps -user1 -user2 - OU=externos -user1 -user2 ... But this specific "OU=externos"

[389-users] Re: ACI help

2017-09-11 Thread Alberto Viana
Thanks a lot for you both. Cheers, Alberto Viana On Thu, Sep 7, 2017 at 5:30 AM, Ludwig Krispenz <lkris...@redhat.com> wrote: > > On 09/07/2017 02:25 AM, William Brown wrote: > > On Wed, 2017-09-06 at 16:55 -0300, Alberto Viana wrote: > > Hi Folks, > > 389-Directory/

[389-users] Re: LDAP: error code 19 - invalid password syntax - passwords with storage scheme are not allowed

2017-08-29 Thread Alberto Viana
Hi Kirk I think that in newer versions of 389 you need a special permission to adding already hashed passwords or change user password scheme: http://www.port389.org/docs/389ds/design/password-administrator.html Hope that helps you. Cheers, Alberto Viana On Tue, Aug 29, 2017 at 4:48 PM, Kirk

[389-users] Debug password check syntax

2018-06-12 Thread Alberto Viana
Hi Guys, I'm testing the password policy and want to debug it. Basically I'm trying so set a valid password (based on my password policy) and 389 returns to me "19: Constraint violation" What should be nsslapd-errorlog-level to debug it? Thanks ___

[389-users] password administrator

2018-02-20 Thread Alberto Viana
Hi Guys, Can I set multiple groups in passwordAdminDN? I know that I can set per policy (subtree or user), but there is any other way to specify more than one group globally? Thanks ___ 389-users mailing list -- 389-users@lists.fedoraproject.org To

[389-users] Re: 389 PassSync 1.1.7 and WIndows Server 2012R2

2017-12-21 Thread Alberto Viana
Hi, Did you try change the log level? HKEY_LOCAL_MACHINE\SOFTWARE\PasswordSync Change LogLevel to 1 (If Im not wrong, the default is 0). Restart the service and check de log again. Hope that helps. On Wed, Dec 20, 2017 at 6:28 PM, Geoff Hardin wrote: > We are

[389-users] Re: error moving an user

2018-03-21 Thread Alberto Viana
Anyone? Any clues? On Tue, Mar 20, 2018 at 2:15 PM, Alberto Viana <alberto...@gmail.com> wrote: > Hey Guys, > > 389 version: 389-Directory/1.3.7.4.20170912git26a9426 B2017.255.1330 > > I'm trying to move one of my users to another OU and I see this kind of > error: >

[389-users] error moving an user

2018-03-20 Thread Alberto Viana
Hey Guys, 389 version: 389-Directory/1.3.7.4.20170912git26a9426 B2017.255.1330 I'm trying to move one of my users to another OU and I see this kind of error: Error while moving entry - [LDAP: error code 1 - Operations Error] java.lang.Exception: [LDAP: error code 1 - Operations Error] at In

[389-users] Re: error moving an user

2018-03-23 Thread Alberto Viana
dn: cn=config > changetype: modify > replace: nsslapd-errorlog-level > nsslapd-errorlog-level: 16385 > EOF > > Thanks, > Simon > > - Original Message - > > From: "Alberto Viana" <alberto...@gmail.com> > > To: "General discussion list for

[389-users] Track constraint violation due password policy

2018-10-31 Thread Alberto Viana
Hi Guys, There's any way to log or track constraint violation reason? Once We have 2 environments I need to track when an user could change password on windows side but this password could not be replicated to 389 due to password policy . I can see this on passsync log: 10/30/18 18:43:38:

[389-users] Re: error moving an user

2018-10-02 Thread Alberto Viana
, Sep 28, 2018 at 4:00 PM Kreuzenstein, Luke (OIT) < luke.kreuzenst...@alaska.gov> wrote: > >>> From: "Alberto Viana" > >>> To: "General discussion list for the 389 Directory server project." > <389-users@lists.fedoraproject.org> >

[389-users] password policy

2018-09-26 Thread Alberto Viana
I have a password applied globally like this: dn: cn=cn\3DnsPwPolicyEntry\2CDC\3Dmy\2CDC\3Ddomain,cn=nsPwPolicyContainer,dc= my,dc=domain passwordLockout: off passwordGraceLimit: 50 passwordWarning: 86400 passwordInHistory: 3 passwordMinLength: 8 passwordMinCategories: 3 passwordStorageScheme:

[389-users] Re: password policy

2018-09-26 Thread Alberto Viana
d_administrators > > HTH, > > Mark > > On 09/26/2018 02:31 PM, Alberto Viana wrote: > > I have a password applied globally like this: > > dn: > cn=cn\3DnsPwPolicyEntry\2CDC\3Dmy\2CDC\3Ddomain,cn=nsPwPolicyContainer,dc= > my,dc=domain > passwordLockout: off > p

[389-users] Re: Referential Integrity and moving subtree to another parent fails

2019-02-27 Thread Alberto Viana
I'm facing a very similar problem, my version: 389-Directory/1.3.7.4.20170912git26a9426 So, it's probably you right, maybe It's a 1.3.x problem. In my case, I disabled the plugin until I can upgrade my 389 version. On Fri, Feb 22, 2019 at 1:07 AM William Brown wrote: > Okay, I did this with a

[389-users] Re: import userRoot: Skipping entry "XXXXXXXXXXX" which has no parent, ending at line 0 of file "(bulk import)"

2019-03-07 Thread Alberto Viana
Hi Guys, Recently I had the same issue and I copied the database backup from one server to another and used ldif2db.pl to import it and worked fine. After that, the replication works fine. Hope that helps you. On Wed, Mar 6, 2019 at 5:24 PM Jason Jenkins wrote: > Thanks. I'll give that a try.

[389-users] cockpit handlebars warning (npm)

2019-12-13 Thread Alberto Viana
This may allow attackers to crash the application or execute Arbitrary Code in specific conditions.", "recommendation": "Upgrade to version 4.5.3 or later.", I had to update package-lock.json pointing to the latest version of handlebars(4.5.3) in order to install it. Just

[389-users] cockpit plugin doubts

2019-12-13 Thread Alberto Viana
Hi Guys, In the old 389-console was possible to manage remote instances (installations in different machines) and what about in new UI? Should I install a cockpit plugin to each 389 machine in my environment? Any docs about it? Thanks Alberto Viana

[389-users] Re: cockpit problems

2019-12-12 Thread Alberto Viana
, Alberto Viana On Thu, Dec 12, 2019 at 1:29 PM Viktor Ashirov wrote: > Hi, > > > On Thu, Dec 12, 2019 at 5:18 PM Alberto Viana > wrote: > >> Hi Guys, >> >> I have installed 389 from source (389-Directory/1.4.2.4 B2019.344.19) >> >> Installed

[389-users] cockpit problems

2019-12-12 Thread Alberto Viana
---. 2 dirsrv dirsrv 155 Dec 9 17:25 ssca Also tried to disable selinux, but the behavior is the same. What am I missing? How can I debug it? Thanks Alberto Viana ___ 389-users mailing list -- 389-users@lists.fedoraproject.org To unsubscribe send a

[389-users] dsconf problems

2019-12-16 Thread Alberto Viana
Hi Guys, I'm trying to config and enable uniqueness attribute plugin: ~# dsconf RNP plugin attr-uniq add "uid-test" --attr-name uid Successfully created the cn=uid-test,cn=plugins,cn=config if I try to enable it: ~# dsconf RNP plugin attr-uniq enable uid-test Error: 'Namespace' object has no

[389-users] Re: dsconf problems

2019-12-16 Thread Alberto Viana
Hi Mark, No problems at all, the idea is to contribute to the project. Thanks!! Alberto Viana On Mon, Dec 16, 2019 at 12:19 PM Mark Reynolds wrote: > > On 12/16/19 10:13 AM, Alberto Viana wrote: > > Hi Guys, > > I'm trying to config and enable uniqueness attribute plugin:

[389-users] Re: selinux doubts

2019-12-19 Thread Alberto Viana
William, It's clear to me. I will try centos8 :) Thanks. Alberto VIana On Thu, Dec 19, 2019 at 2:50 AM William Brown wrote: > > > > On 19 Dec 2019, at 08:09, Alberto Viana wrote: > > > > Mark, > > > > Seems that's not going to be so easy hehehe:

[389-users] Re: selinux doubts

2019-12-18 Thread Alberto Viana
cense: MIT license May be am I missing this lib(python3-libselinux)? On Wed, Dec 18, 2019 at 5:39 PM Mark Reynolds wrote: > > On 12/18/19 3:21 PM, Alberto Viana wrote: > > Hi Guys, > > I compiled my 389 with selinux enabled (--with-selinux): > > configure:21564: check

[389-users] selinux doubts

2019-12-18 Thread Alberto Viana
on the system ~# getenforce Enforcing Centos7 # ns-slapd -v 389 Project 389-Directory/1.4.2.4 B2019.352.1557 What am I missing? Could not found any related doc at 389 or rhds pages. Thanks. Alberto Viana ___ 389-users mailing list -- 389-users

[389-users] Re: selinux doubts

2019-12-18 Thread Alberto Viana
://bugzilla.redhat.com/show_bug.cgi?id=1756015 https://bugzilla.redhat.com/show_bug.cgi?id=1719978 Seems to me there's no solution at this point, Am I right? Thanks On Wed, Dec 18, 2019 at 6:20 PM Mark Reynolds wrote: > > On 12/18/19 4:05 PM, Alberto Viana wrote: > > Mark,

[389-users] Re: cockpit doubt, or rebuild Cockpit plugin

2020-03-04 Thread Alberto Viana
wonder like William if there's no "smart" way to check if already has 389 in the system. Thanks anyway. Alberto Viana On Tue, Mar 3, 2020 at 9:32 PM William Brown wrote: > > > > On 4 Mar 2020, at 04:07, Mark Reynolds wrote: > > > > > > &g

[389-users] cockpit doubt

2020-03-03 Thread Alberto Viana
Hi Guys, I'm testing some versions of 389 and I realise that in newer versions, cockpit stopped to work to me: *There is no 389-ds-base package installed on this system. Sorry there is nothing to manage...* In my case (due to internal reasons) we compile our version of 389. Is this an expected

[389-users] Re: winsync password problems

2020-02-28 Thread Alberto Viana
Mark > On 2/19/20 8:01 AM, Alberto Viana wrote: > > WIlliam, > > Would be helpful if I provide to you guys a test environment? It's not > hard for me to do that. > > I'm really interesting in find out what is going on and some other > projects over here are depending on my

[389-users] Re: winsync password problems

2020-02-28 Thread Alberto Viana
Mark, Yes, it solves the problem. Can you explain what exactly that config does? It's suppose to be on? Found some old CVE about it and just want to be sure about what I'm doing. Thanks Alberto Viana On Fri, Feb 28, 2020 at 12:39 PM Mark Reynolds wrote: > Alberto, > > We m

[389-users] Re: winsync password problems

2020-01-29 Thread Alberto Viana
, the passync always intercepts the change and tries to send back the (same) password and it's not happening. Please let me know if you anything else. Thanks On Tue, Jan 28, 2020 at 9:31 PM William Brown wrote: > > > > On 29 Jan 2020, at 10:15, Alberto Viana wrote: > > &g

[389-users] Re: winsync password problems

2020-01-29 Thread Alberto Viana
king on event viewer. Another thing that when I used to change the password, the passync always intercepts the change and tries to send back the (same) password and it's not happening. Please let me know if you anything else. On Tue, Jan 28, 2020 at 9:40 PM Alberto Viana wrote: > Willia

[389-users] Re: winsync password problems

2020-01-29 Thread Alberto Viana
, the passync always intercepts the change and tries to send back the (same) password and it's not happening. Please let me know if you anything else. Thanks On Tue, Jan 28, 2020 at 9:31 PM William Brown wrote: > > > > On 29 Jan 2020, at 10:15, Alberto Viana wrote: > > &g

[389-users] Re: winsync password problems

2020-01-29 Thread Alberto Viana
Reynolds wrote: > > On 1/29/20 12:17 PM, Alberto Viana wrote: > > Mark, > > Already did that twice hehehehe > > Do you think that's about config once all attributes except password are > sync'ed to AD? If it's about config, the log does not suppose to show > something?

[389-users] Re: winsync password problems

2020-01-29 Thread Alberto Viana
> make sure you have everything setup correctly: > > > https://access.redhat.com/documentation/en-us/red_hat_directory_server/10/html/administration_guide/managing_the_password_policy-synchronizing_passwords > > HTH, > > Mark > On 1/29/20 10:22 AM, Alberto Viana wrote: >

[389-users] Re: winsync password problems

2020-01-29 Thread Alberto Viana
ing with same behavior, just the password is not sent from 389 to AD. In all versions, attributes are replicated(except password) from 389 to AD, and everything is working fine from AD to 389. Please let me know if need some more info. Thanks Alberto Viana On Wed, Jan 29, 2020 at 5:24 PM Mark Reyno

[389-users] cockpit ui problem

2020-01-23 Thread Alberto Viana
a ticket? Thanks Alberto Viana ___ 389-users mailing list -- 389-users@lists.fedoraproject.org To unsubscribe send an email to 389-users-le...@lists.fedoraproject.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List

[389-users] Re: healthcheck problems

2020-01-23 Thread Alberto Viana
Mark, # make -f rpm.mk rpms # cd dist/rpms Just like you (I think) hehehe For me, not a big deal anyway. Thanks Alberto Viana On Thu, Jan 23, 2020 at 4:34 PM Mark Reynolds wrote: > > On 1/23/20 1:17 PM, Alberto Viana wrote: > > Mark, > > I using pyth

[389-users] Re: winsync password problems

2020-01-28 Thread Alberto Viana
Hey Guys, Really lost here, don't know what else look or test, it's not working at all :/ Any help is appreciated Thanks On Tue, Jan 28, 2020 at 3:48 PM Alberto Viana wrote: > Hi Guys, > 389-Directory/1.4.3.2 > > > The password sync from 389 to windows(2012) is not working: &

[389-users] Re: winsync password problems

2020-01-28 Thread Alberto Viana
wrote: > > > > On 29 Jan 2020, at 09:24, Alberto Viana wrote: > > > > Hey Guys, > > > > Really lost here, don't know what else look or test, it's not working at > all :/ > > Hey there, > > Remember, the team is distributed around the world - I'm

[389-users] Re: winsync password problems

2020-01-28 Thread Alberto Viana
ot; Where should I do that? Do you need further information? Thanks Alberto Viana On Tue, Jan 28, 2020 at 9:09 PM William Brown wrote: > > > > On 29 Jan 2020, at 10:01, Alberto Viana wrote: > > > > WIlliam, > > > > Thanks, I put in my company's roadmap to t

[389-users] winsync password problems

2020-01-28 Thread Alberto Viana
2493302 -0300] - DEBUG - NSMMReplicationPlugin - ruv_update_ruv - Successfully committed csn 5e3079ed00040064 [28/Jan/2020:15:14:05.394086821 -0300] - DEBUG - NSMMReplicationPlugin - ruv_update_ruv - Rolled up to csn 5e3079ed00040064 [28/Jan/2020:15:14:05.395428297 -0300] - DEBUG - NSMMReplicationPlugin -

[389-users] Re: winsync password problems

2020-02-17 Thread Alberto Viana
Hi Guys, Setup another environment 389 1.4.1.14 + windows 2016, still not working, exactly the same behavior. :/ Cheers, Alberto Viana On Wed, Jan 29, 2020 at 8:19 PM Alberto Viana wrote: > William, > > Yes, *other* attributes are replicated to AD normally (in all versions > t

[389-users] Re: 389 centOS8 selinux issues

2020-01-08 Thread Alberto Viana
William, Build 389 by myself. Also created and loaded an selinux module allowing the needed permissions. I Just wonder if is the right/best way to do that and if is an expected behavior. Thanks Alberto Viana On Wed, Jan 8, 2020, 20:58 William Brown wrote: > > > > On 9 Jan 20

[389-users] Re: 389 centOS8 selinux issues

2020-01-09 Thread Alberto Viana
gt; On 9 Jan 2020, at 10:13, Alberto Viana wrote: > > > > William, > > > > Build 389 by myself. Also created and loaded an selinux module allowing > the needed permissions. I Just wonder if is the right/best way to do that > and if is an expected behavior. > > C

[389-users] healthcheck problems

2020-01-13 Thread Alberto Viana
ReferentialIntegrityPlugin ... Checking MonitorDiskSpace ... Checking Replica ... Checking Changelog5 ... Checking DSEldif ... Error: [Errno 2] No such file or directory: '/etc/dirsrv/slapd-{instance_name}/dse.ldif' Is that a bug? Thanks Alberto Viana ___ 389-users mailing

[389-users] Re: Attribute encryption issue

2020-01-13 Thread Alberto Viana
the installation) the 389 starts to show this error in log. Seems that 389 works fine even with this error in log and I didn't try anything to correct it. Cheers, Alberto Viana On Fri, Jan 10, 2020 at 8:55 PM Mark Reynolds wrote: > > On 1/10/20 6:48 PM, Iain Morgan wrote:

[389-users] Re: healthcheck problems

2020-01-13 Thread Alberto Viana
Mark, I'm installing it from source, to install lib389 I run: make lib389-install Am I missing something? Thanks Alberto Viana On Mon, Jan 13, 2020 at 4:36 PM Mark Reynolds wrote: > > On 1/13/20 2:24 PM, Alberto Viana wrote: > > Mark, > > Here's: > > INFO: Chec

[389-users] Re: healthcheck problems

2020-01-13 Thread Alberto Viana
Mark, Just to let you know, I'm cloning pagure repo and in /src/lib389 the VERSION file points me to this version: ~# cat VERSION 1.0.4 Thanks Alberto Viana On Mon, Jan 13, 2020 at 4:48 PM Alberto Viana wrote: > Mark, > > I'm installing it from source, to install lib389 I run: >

[389-users] Re: healthcheck problems

2020-01-13 Thread Alberto Viana
dError: [Errno 2] No such file or directory: '/etc/dirsrv/slapd-{instance_name}/dse.ldif' ERROR: Error: [Errno 2] No such file or directory: '/etc/dirsrv/slapd-{instance_name}/dse.ldif' Thanks. Alberto Viana On Mon, Jan 13, 2020 at 4:19 PM Mark Reynolds wrote: > > On 1/13/20 2:07

[389-users] Re: DB problems

2020-01-22 Thread Alberto Viana
the problem and maybe give you guys more logs (or trace it). Thanks Alberto Viana On Sun, Jan 19, 2020 at 9:43 PM William Brown wrote: > I'd like to confirm with you if you are able to check this machines memory > or filesystem as clean. This kind of corruption concerns me, and could have >

  1   2   >