Re: syncrepl and memberof do not work well together

2015-05-18 Thread John Alex.
Indeed, I removed "memberOf" from "exattrs" and I can no longer reproduce the issue. I will file an ITS on this. When was the issue with "memberOf" replication fixed? ITS#7400 is still open. On 05/18/2015 02:54 PM, Michael Ströder wrote: > John Alex. wrote: >

Re: syncrepl and memberof do not work well together

2015-05-18 Thread John Alex.
="/etc/certs/ca.pem" dn: olcOverlay={0}memberof,olcDatabase={1}mdb,cn=config objectClass: olcMemberOf objectClass: olcOverlayConfig objectClass: olcConfig objectClass: top olcOverlay: {0}memberof On 05/18/2015 01:45 PM, Michael Ströder wrote: > John Alex. wrote: >> I have a provi

syncrepl and memberof do not work well together

2015-05-18 Thread John Alex.
I am not sure if this is by design or a bug so I am posting here first. I have a provider-consumer configuration (both at version 2.4.40) where the consumer uses simple syncrepl (no delta sync). I am using the memberof overlay in the provider, and, having read the slapo-memberof manpage and ITS#

Re: accesslog search filter using reqAttr

2014-09-08 Thread John Alex.
This appears to be a bug, filed an ITS (#7934) On 09/02/2014 12:58 PM, John Alex. wrote: > Hi all, > > Is anyone using "reqAttr" of accesslog overlay to find ldap requests for > specific attributes? > > Our accesslog db contains some entries like fo

accesslog search filter using reqAttr

2014-09-02 Thread John Alex.
Hi all, Is anyone using "reqAttr" of accesslog overlay to find ldap requests for specific attributes? Our accesslog db contains some entries like for example: dn: reqStart=20140902092840.01Z,cn=accesslog objectClass: auditSearch reqStart: 20140902092840.01Z reqEnd: 20140902092840.02

Re: ACL inconsistency

2014-06-04 Thread John Alex.
pletely from the configuration, and everything is back to normal. Regards, John On 02/06/2014 04:59 μμ, John Alex. wrote: > Hi all, > > I use the following rules in my configuration: > > olcAccess: {0}to * by dn.base="gidNumber=0+uidNumber=0,cn=peercred,cn=extern > al,cn=auth&

ACL inconsistency

2014-06-02 Thread John Alex.
Hi all, I use the following rules in my configuration: olcAccess: {0}to * by dn.base="gidNumber=0+uidNumber=0,cn=peercred,cn=extern al,cn=auth" manage by * break olcAccess: {1}to dn.one="ou=people,dc=xmpl,dc=co" filter="(pwdReset=TRUE)" a ttrs=userPassword by * none olcAccess: {2}to dn.subtree=