[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: samba-computer record at OpenLdap



On Thursday 23 November 2006 12:43, Roman Yushin wrote:
> Hello.
> I have an old server with openldap-server-2.0.27_3 (+ samba schema),
> samba-3.0.8,1 as PDC

It looks more like 2.2.x (or 3.0.x with the legacy schema).

> All information stored at LDAP: domain-computers, domain-users
>
> So, i have a record for computer:
>
> dn: uid=ws01$,ou=People,o=campus,c=ru
> uidNumber: 2000
> gidNumber: 553
> homeDirectory: /dev/null
> loginShell: /bin/false
> objectClass: top
> objectClass: posixAccount
> objectClass: sambaAccount
> uid: ws01$
> logonTime: 0
> logoffTime: 2147483647
> kickoffTime: 2147483647
> pwdMustChange: 2147483647
> displayName: ws01$
> cn: ws01$
> description: Computer
> rid: 5000
> primaryGroupID: 2107
> acctFlags: [W          ]
> creatorsName: cn=Manager,o=campus,c=ru
> createTimestamp: 20060324104820Z
> pwdCanChange: 1162105007
> ntPassword: A49B017193432C718AA03C008C681836
> pwdLastSet: 1162105007
> modifiersName: cn=Manager,o=campus,c=ru
> modifyTimestamp: 20061029065647Z
>
> I am commented lines "creatorsName, createTimestamp, modifiersName,
> modifyTimestamp" and obtained ldiff-record to add it to another ldap
> server.
>
> The problem is that i could not add domain-computers to new server with
> openldap-server-2.3.30!
> All users were added from old ldap to new, but i have a problem with
> computers!
> Here is the error
>
> adding new entry "uid=ws01$,ou=People,o=campus,c=ru"
> ldap_add: Internal (implementation specific) error (80)
>         additional info: no structuralObjectClass operational attribute
>


2.0.x didn't enforce the requirement for a structuralObjectclass. 2.1 and 
later do (you're a bit behind everyone else upgrading).

So, you will need to add a structural objectclass, account may be sufficient, 
inetOrgPerson is another option (but will require additional attributes).

Regards,
Buchan

-- 
Buchan Milne
ISP Systems Specialist - Monitoring/Authentication Team Leader
B.Eng,RHCE(803004789010797),LPIC-2(LPI000074592)

Attachment: pgp782AUHasOz.pgp
Description: PGP signature