[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: slurpd with kerberos working config



>>>>> "Lally," == Lally, Keith R <lally@bnl.gov> writes:

    Lally,> Turbo, I put in the patch and rebuilt/tested cyrus-sasl
    Lally,> successfully.  The replication is now working and the
    Lally,> sasl-bind shows MY.REALM.  My remaining problem is if I
    Lally,> uncomment the updatedn line on the slave slurpd fails with
    Lally,> a "no object found" error.  With the updatedn line removed
    Lally,> and permissions restricted to write only for the
    Lally,> replicator.\+realm=MY.REALM it works fine.  I've tried
    Lally,> various types of updatedn lines and added by * read as
    Lally,> well but it still fails.  Since I've got it working this
    Lally,> isn't quite as critical but do you have any ideas on why
    Lally,> updatedn would cause this?

You did run Kerberos and SASL, right? Do you get a ticket before
starting slapd?
        http://www.bayour.com/LDAPv3-HOWTO.html#3.5.5.4.Automatically getting a ticket before starting slurpd|outline

The init script:
        http://www.bayour.com/openldap/slapd.txt

The backup's ACLs:
        http://www.bayour.com/openldap/slapd.access.backup.txt

The backup's config file:
        http://www.bayour.com/openldap/slapd.conf.backup.txt


(since you've been reading my HOWTO, you should have seen these, but
just incase you haven't gotten this faar yet :)


Other than that, I don't know. 'Works for me'... :)

-- 
 Turbo     __ _     Debian GNU     Unix _IS_ user friendly - it's just 
 ^^^^^    / /(_)_ __  _   ___  __  selective about who its friends are 
         / / | | '_ \| | | \ \/ /    Debian Certified Linux Developer  
  _ /// / /__| | | | | |_| |>  <  Turbo Fredriksson   turbo@bayour.com
  \\\/  \____/_|_| |_|\__,_/_/\_\         Gothenburg/Sweden