[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: ldapi socket permissions



On 6 February 2004, Tony Earnshaw <tonye@billy.demon.nl> wrote:
> tor, 05.02.2004 kl. 17.09 skrev Dieter Kluenter:
> 
> > Can I now with 2.2.x pass a permission parameter to slapd at startup 
> > and how is that done?
> 
> I use ldapi - when possible - with 2.2.5.
> 
> The following worked with 2.1.25, in my startup script (o.k., it's
> actually a bit otherwise, but this is it essentially):
> 
> slapd -u ldap -h 'ldap:/// ldaps:///
> ldapi://%2Fusr%2Flocal%2Fvar%2Fldapi/????x-mod=0777'
> 
> But it don't work no more with 2.2.5,

    It works if you run "umask 0" before slapd.

> - seems to be broken in that respect.
>
> So I just force it; in the same startup script, after the above line:
>
> /bin/chmod 4777 /usr/local/var/ldapi
>
> Easy as that.
>
> Mind you, the thought of that 4777 socket is nauseous at the least,
> but there you go,

    Regards,

    Liviu Daia

-- 
Dr. Liviu Daia
Institute of Mathematics of the Romanian Academy