occasional user entry being deleted

2015-01-20 Thread Al
at the normal loglevel. I'm running 2.4.39 on Redhat 6, x64 with mdb. Below is a snippet of my configuration from the specific database in question. Does anyone know why this might be occurring? Any idea on how to further troubleshoot this issue? Thanks in advance - Al dn: olcDatabase={1}mdb,cn=config

Mysql to Ldap

2013-12-05 Thread Burk Al
Hi, I am using mysql to store my users and mailbox information on my email server (postfix dovecot). And I am using Postfix Admin as my front end to manage domains, users and such. I want to replace mysql with ldap server. Somehow, I need to find a way to create the same or similar structure

Re: libpam-ldapd issue

2013-10-29 Thread Muhammad Bashir Al-Noimi
Thanks a lot guys, I fixed this issue by helping from: http://ubuntuforums.org/showthread.php?t=2183981p=12830319#post12830319 On Sun, Oct 27, 2013 at 3:20 PM, Muhammad Bashir Al-Noimi mbno...@gmail.com wrote: On 10/27/2013 01:45 PM, Michael Ströder wrote: I'd strongly recommend to follow

Used port

2013-10-29 Thread Muhammad Bashir Al-Noimi
Hello, As I know OpenLDAP uses by default 389. How can I be sure what if my server use it or not? -- Best Regards Muhammad Bashir Al-Noimi

Re: Used port

2013-10-29 Thread Muhammad Bashir Al-Noimi
Thanks guys I found out the solution: ps ax | grep slapd On Tue, Oct 29, 2013 at 2:16 PM, Muhammad Bashir Al-Noimi mbno...@gmail.com wrote: Hello, As I know OpenLDAP uses by default 389. How can I be sure what if my server use it or not? -- Best Regards Muhammad Bashir Al-Noimi

libpam-ldapd issue

2013-10-27 Thread Muhammad Bashir Al-Noimi
libpam-ldapd to enable Unix authentication, LDAP Authentication. How can I fix this issue? P.S. I'm still a newbie with LDAP so forgive me for silly question. I tried to use dpkg-reconfigure libpam-ldapd but it didn't ask me anything! -- Best Regards Muhammad Bashir Al-Noimi

Re: libpam-ldapd issue

2013-10-27 Thread Muhammad Bashir Al-Noimi
because my server connected on LAN. -- Best Regards, Muhammad Bashir Al-Noimi

index on attribute in acl filter

2013-05-09 Thread Al
be beneficial, but would it help for an acl filter? Does this seem like a reasonable approach? Thanks in advance, Al

replicating a special objectclass with a seperate syncrepl statement

2013-04-30 Thread Al
credentials=$PASSWD searchbase=$BASEDN type=refreshOnly interval=00:00:10:00 retry=5 5 300 5 timeout=1 filter=(objectclass=mygroup) Basically, I am interested in syncing certain groups occasionally (they have a custom objectclass), but everything else as quickly as possible. Thanks! Al

Re: Issue with delta-sync multimaster

2013-04-26 Thread Al
), this error occurs. Is this a candidate for an ITS? Thanks, Al

Issue with delta-sync multimaster

2013-04-25 Thread Al
might be able to offer. AL

Re: Issue with delta-sync multimaster

2013-04-25 Thread Al
After this error, the second server goes into refresh mode and gets a fresh copy. It would appear that this error relates to the ppolicy overlay as the entries in the access log at the time of error shows the pwdFailureTime being removed during a password reset. I do see the pwdFailureTime

MirrorMode, delta syncrepl and memberof issues

2013-01-07 Thread Al
schemachecking=on type=refreshAndPersist retry=60 + syncdata=accesslog olcMirrorMode: TRUE ... olcMemberOfRefInt: FALSE olcMemberOfGroupOC: groupOfUniqueNames olcMemberOfMemberAD: uniquemember Regards, Al

Re: dnMatch flooding logs and access blocked

2012-12-05 Thread Al Dispennette
, From: Al Dispennette al.dispenne...@clairmail.commailto:al.dispenne...@clairmail.com Date: Tue, 4 Dec 2012 10:32:40 -0800 To: openldap-technical@openldap.orgmailto:openldap-technical@openldap.org Subject: Re: dnMatch flooding logs and access blocked So I downloaded the openldap source

Re: dnMatch flooding logs and access blocked

2012-12-04 Thread Al Dispennette
output, but until this occurs again does anyone have any insight or knowledge that could help me. Thanks, Al Dispennette From: Al Dispennette al.dispenne...@clairmail.commailto:al.dispenne...@clairmail.com Date: Mon, 3 Dec 2012 14:35:44 -0800 To: openldap-technical@openldap.orgmailto:openldap

dnMatch flooding logs and access blocked

2012-12-03 Thread Al Dispennette
#011uid=item6,ou=users,dc=example,dc=com#012#011uid=user,ou=users,dc=example,dc=com Al Dispennette Sr. Software Engineer t: 415 526 7206 m: 309 868 1401 al.dispenne...@monitise.commailto:al.dispenne...@monitise.com [Description: Description: Description: http://mailmedia.monitisegroup.com

Re: getent passwd always return 1065 users

2011-07-08 Thread Al
? What is your sizelimit set to in slapd.conf? If I had to guess, your sizelimit is set to 1000 and you have 65 user accounts in /etc/passwd. Al

delta-syncrepl and N-Way Multi-Master

2011-04-19 Thread Al
Hi All, I am researching implementation options, and am not 100% clear on whether delta-syncrepl and N-Way Multi-Master are compatible. Can you confirm or deny? If so, have people found success using this? Thanks in advance, Al

Re: Large dynamic groups and performance

2011-04-11 Thread Al
arbitrary. I've been trying many different values and have yet to settle on any that work well. I'll gladly try any recommendations. Thanks again, I appreciate your response. Al

Problems with slapd and access rules

2010-07-19 Thread Licause, Al
openldap clients still expect to use /etc/ldap.conf as the one and only ldap configuration file and nothing else ? Al Licause

RE: Expired password allowed in via pwdGraceAuthNLimit w/o warning to user

2010-07-09 Thread Licause, Al
work for a support organization and can only use the Red Hat provided kits. So I'd like to get this working with these restrictions. Any help greatly appreciated Al -Original Message- From: openldap-technical-boun...@openldap.org [mailto:openldap-technical-boun...@openldap.org

RE: Expired password allowed in via pwdGraceAuthNLimit w/o warning to user

2010-07-08 Thread Licause, Al
or any other pam module ? Am I missing a module ? Do I need a later version of nss_ldap or some other component ? Al -Original Message- From: Buchan Milne [mailto:bgmi...@staff.telkomsa.net] Sent: Monday, July 05, 2010 4:56 AM To: openldap-technical@openldap.org Cc: Licause, Al Subject

RE: Expired password allowed in via pwdGraceAuthNLimit w/o warning to user

2010-07-08 Thread Licause, Al
messages other than Invalid login grace time and nothing from telnetd which is not all that surprising given it's age. Can I assume from this that we need a newer sshd component in order to see these grace period messages ? Al -Original Message- From: Buchan Milne [mailto:bgmi

RE: Expired password allowed in via pwdGraceAuthNLimit w/o warning to user

2010-07-06 Thread Licause, Al
Buchan, Thanks for the information.please see my responses inserted below. Al -Original Message- From: Buchan Milne [mailto:bgmi...@staff.telkomsa.net] Sent: Monday, July 05, 2010 4:56 AM To: openldap-technical@openldap.org Cc: Licause, Al Subject: Re: Expired password allowed

RE: Expired password allowed in via pwdGraceAuthNLimit w/o warning to user

2010-07-06 Thread Licause, Al
been removed from the /etc/ldap.conf: rootpw {SSHA}RHVddPmANdnsYDuMzFlM/D4D7aAH1yYG ppolicy_hash_cleartext ppolicy_use_lockout The ldap server has been restarted. Still no notification when the users password expires and pwdGraceAuthNLimit is greater than zero. Al -Original

Expired password allowed in via pwdGraceAuthNLimit w/o warning to user

2010-07-02 Thread Licause, Al
of the ldap or other system modules, we need to report this to Red Hat and have the problem corrected. Any help greatly appreciated. Al Licause