Re: [Freeipa-devel] [PATCH] 257 Enable ldapi in the management framework
Loris Santamaria wrote: El jue, 27-08-2009 a las 21:31 -0400, Rob Crittenden escribió: Loris Santamaria wrote: El mié, 26-08-2009 a las 14:13 -0400, Rob Crittenden escribió: This enables an ldapi listening socket in the LDAP server and configures the management framework to use it instead of ldap://localhost:389/ To disable this remove the ldap_uri line from /etc/default/ipa.conf. It will fall back to TCP/IP sockets. Hi, I think there is a small problem with the patch: In my system (389 DS 1.2.1) if I enable ldapi, the socket path is /var/run/dirsrv/slapd-INSTANCE.socket. There is no socket in /var/run/slapd-INSTANCE.socket. Strange. What version of IPA did you install? Is this an upgrade from a previous version of DS? It was first installed as fedora-ds-1.1.0, then updated with every new release... Ah, ok. The ldapi path changed (https://bugzilla.redhat.com/show_bug.cgi?id=436397) I'll have to add some code to set it to what we expect. Great catch, thanks! rob smime.p7s Description: S/MIME Cryptographic Signature ___ Freeipa-devel mailing list Freeipa-devel@redhat.com https://www.redhat.com/mailman/listinfo/freeipa-devel
Re: [Freeipa-devel] [PATCH] 257 Enable ldapi in the management framework
El jue, 27-08-2009 a las 21:31 -0400, Rob Crittenden escribió: > Loris Santamaria wrote: > > El mié, 26-08-2009 a las 14:13 -0400, Rob Crittenden escribió: > >> This enables an ldapi listening socket in the LDAP server and configures > >> the management framework to use it instead of ldap://localhost:389/ > >> > >> To disable this remove the ldap_uri line from /etc/default/ipa.conf. It > >> will fall back to TCP/IP sockets. > > > > Hi, I think there is a small problem with the patch: In my system (389 > > DS 1.2.1) if I enable ldapi, the socket path > > is /var/run/dirsrv/slapd-INSTANCE.socket. There is no socket > > in /var/run/slapd-INSTANCE.socket. > > Strange. What version of IPA did you install? Is this an upgrade from a > previous version of DS? It was first installed as fedora-ds-1.1.0, then updated with every new release... > On my system it is definitely in /var/run, though this is a fresh 389-ds > install. > > rob > -- Loris Santamaria linux user #70506 xmpp:lo...@lgs.com.ve Links Global Services, C.A.http://www.lgs.com.ve Tel: 0286 952.06.87 Cel: 0414 095.00.10 sip:1...@lgs.com.ve -O9 -omg-optimize -fomit-instructions smime.p7s Description: S/MIME cryptographic signature ___ Freeipa-devel mailing list Freeipa-devel@redhat.com https://www.redhat.com/mailman/listinfo/freeipa-devel
Re: [Freeipa-devel] [PATCH] 257 Enable ldapi in the management framework
Loris Santamaria wrote: El mié, 26-08-2009 a las 14:13 -0400, Rob Crittenden escribió: This enables an ldapi listening socket in the LDAP server and configures the management framework to use it instead of ldap://localhost:389/ To disable this remove the ldap_uri line from /etc/default/ipa.conf. It will fall back to TCP/IP sockets. Hi, I think there is a small problem with the patch: In my system (389 DS 1.2.1) if I enable ldapi, the socket path is /var/run/dirsrv/slapd-INSTANCE.socket. There is no socket in /var/run/slapd-INSTANCE.socket. Strange. What version of IPA did you install? Is this an upgrade from a previous version of DS? On my system it is definitely in /var/run, though this is a fresh 389-ds install. rob smime.p7s Description: S/MIME Cryptographic Signature ___ Freeipa-devel mailing list Freeipa-devel@redhat.com https://www.redhat.com/mailman/listinfo/freeipa-devel
Re: [Freeipa-devel] [PATCH] 257 Enable ldapi in the management framework
El mié, 26-08-2009 a las 14:13 -0400, Rob Crittenden escribió: > This enables an ldapi listening socket in the LDAP server and configures > the management framework to use it instead of ldap://localhost:389/ > > To disable this remove the ldap_uri line from /etc/default/ipa.conf. It > will fall back to TCP/IP sockets. Hi, I think there is a small problem with the patch: In my system (389 DS 1.2.1) if I enable ldapi, the socket path is /var/run/dirsrv/slapd-INSTANCE.socket. There is no socket in /var/run/slapd-INSTANCE.socket. -- Loris Santamaria linux user #70506 xmpp:lo...@lgs.com.ve Links Global Services, C.A.http://www.lgs.com.ve Tel: 0286 952.06.87 Cel: 0414 095.00.10 sip:1...@lgs.com.ve -O9 -omg-optimize -fomit-instructions smime.p7s Description: S/MIME cryptographic signature ___ Freeipa-devel mailing list Freeipa-devel@redhat.com https://www.redhat.com/mailman/listinfo/freeipa-devel
Re: [Freeipa-devel] [PATCH] 257 Enable ldapi in the management framework
Simo Sorce wrote: On Thu, 2009-08-27 at 00:41 -0400, Simo Sorce wrote: On Wed, 2009-08-26 at 14:13 -0400, Rob Crittenden wrote: This enables an ldapi listening socket in the LDAP server and configures the management framework to use it instead of ldap://localhost:389/ To disable this remove the ldap_uri line from /etc/default/ipa.conf. It will fall back to TCP/IP sockets. Ah thanks for this, nice to see we finally get to use ldapi. ACK! Simo. P.S: Shouldn't we enable ldapi also for the kerberos ldap driver ? pushed to master smime.p7s Description: S/MIME Cryptographic Signature ___ Freeipa-devel mailing list Freeipa-devel@redhat.com https://www.redhat.com/mailman/listinfo/freeipa-devel
Re: [Freeipa-devel] [PATCH] 257 Enable ldapi in the management framework
Simo Sorce wrote: On Thu, 2009-08-27 at 00:41 -0400, Simo Sorce wrote: On Wed, 2009-08-26 at 14:13 -0400, Rob Crittenden wrote: This enables an ldapi listening socket in the LDAP server and configures the management framework to use it instead of ldap://localhost:389/ To disable this remove the ldap_uri line from /etc/default/ipa.conf. It will fall back to TCP/IP sockets. Ah thanks for this, nice to see we finally get to use ldapi. ACK! Simo. P.S: Shouldn't we enable ldapi also for the kerberos ldap driver ? Bleh, I had meant to do that as well but forgot. It should be a one-liner, I'll work on a patch. rob smime.p7s Description: S/MIME Cryptographic Signature ___ Freeipa-devel mailing list Freeipa-devel@redhat.com https://www.redhat.com/mailman/listinfo/freeipa-devel
Re: [Freeipa-devel] [PATCH] 257 Enable ldapi in the management framework
On Thu, 2009-08-27 at 00:41 -0400, Simo Sorce wrote: > On Wed, 2009-08-26 at 14:13 -0400, Rob Crittenden wrote: > > This enables an ldapi listening socket in the LDAP server and > > configures > > the management framework to use it instead of ldap://localhost:389/ > > > > To disable this remove the ldap_uri line from /etc/default/ipa.conf. > > It > > will fall back to TCP/IP sockets. > > Ah thanks for this, nice to see we finally get to use ldapi. > > ACK! > > Simo. P.S: Shouldn't we enable ldapi also for the kerberos ldap driver ? -- Simo Sorce * Red Hat, Inc * New York ___ Freeipa-devel mailing list Freeipa-devel@redhat.com https://www.redhat.com/mailman/listinfo/freeipa-devel
Re: [Freeipa-devel] [PATCH] 257 Enable ldapi in the management framework
On Wed, 2009-08-26 at 14:13 -0400, Rob Crittenden wrote: > This enables an ldapi listening socket in the LDAP server and > configures > the management framework to use it instead of ldap://localhost:389/ > > To disable this remove the ldap_uri line from /etc/default/ipa.conf. > It > will fall back to TCP/IP sockets. Ah thanks for this, nice to see we finally get to use ldapi. ACK! Simo. -- Simo Sorce * Red Hat, Inc * New York ___ Freeipa-devel mailing list Freeipa-devel@redhat.com https://www.redhat.com/mailman/listinfo/freeipa-devel
[Freeipa-devel] [PATCH] 257 Enable ldapi in the management framework
This enables an ldapi listening socket in the LDAP server and configures the management framework to use it instead of ldap://localhost:389/ To disable this remove the ldap_uri line from /etc/default/ipa.conf. It will fall back to TCP/IP sockets. rob freeipa-257-ldapi.patch Description: application/mbox smime.p7s Description: S/MIME Cryptographic Signature ___ Freeipa-devel mailing list Freeipa-devel@redhat.com https://www.redhat.com/mailman/listinfo/freeipa-devel