[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: Comparing slapcat output



> My OpenLDAP 2.2.23 is rather quiescent at about 02:00 AM so
> I do a `slapcat' on each slave to check whether the output
> is identical to that of the master in order to check consistency.
>  I notice that entries which have been modified by Heimdal Kerberos
> over slapi differ for the modifiersName and creatorsName attribute
> types:
>
> | $ diff master.ldif slave.ldif
> | < modifiersName: uidnumber=0+gidnumber=0,cn=peercred,cn=external,cn=auth
> | ---
> | > modifiersName: gidNumber=0+uidNumber=0,cn=peercred,cn=external,cn=auth
> | 1257507c1257507
> | < creatorsName: uidnumber=0+gidnumber=0,cn=peercred,cn=external,cn=auth
> | ---
> | > creatorsName: gidNumber=0+uidNumber=0,cn=peercred,cn=external,cn=auth

Note: if this happened by using stock OpenLDAP software, it's a bug; I
suggest you use at least the latest 2.2 (2.2.27) or 2.3.4 to see if the
problem still occurs, and provide enough info to track that down (i.e.
more details about the SASL settings you're using, and possibly some
verbose log of the server where the "uidnumber=0+gidnumber=0..." form
occurred) via the ITS.

p.

-- 
Pierangelo Masarati
mailto:pierangelo.masarati@sys-net.it


    SysNet - via Dossi,8 27100 Pavia Tel: +390382573859 Fax: +390382476497