FAQ Search Today's Posts Mark Forums Read
» Video Reviews

» Linux Archive

Linux-archive is a website aiming to archive linux email lists and to make them easily accessible for linux users/developers.


» Sponsor

» Partners

» Sponsor

Go Back   Linux Archive > Redhat > Fedora Directory

 
 
LinkBack Thread Tools
 
Old 04-07-2011, 01:02 AM
Diego Woitasen
 
Default Windows Sync and UserAccountControl

I setup Windows Sync between 389DS and W2008r2. Worked fine. Now we had to downgrade the Windows server to 2003 and I don't know why I can't setup the Sync again. The only error that I see in the 389-console (there is nothing in the error log) is "operations error", after creating the agreement.

I sniffed the traffic between 389DS and W2003 and I saw an objectClass violation when 389 tried to add the userAccountControl atttr to a group. The group is created anyway.
I've searched in the web and it looks like userAccountControl is only for users, not for groups. Looking at the Windows Sync code it looks like 389 DS always add that attribute for both.

Regards,*Diego
--
Diego Woitasen


--
389 users mailing list
389-users@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/389-users
 
Old 04-07-2011, 01:08 AM
Rich Megginson
 
Default Windows Sync and UserAccountControl

On 04/06/2011 07:02 PM, Diego Woitasen wrote:
I setup Windows Sync between 389DS and W2008r2. Worked
fine. Now we had to downgrade the Windows server to 2003 and I
don't know why I can't setup the Sync again. The only error that I
see in the 389-console (there is nothing in the error log) is
"operations error", after creating the agreement.




I sniffed the traffic between 389DS and W2003 and I saw an
objectClass violation when 389 tried to add the
userAccountControl atttr to a group. The group is created
anyway.



I've searched in the web and it looks like userAccountControl
is only for users, not for groups. Looking at the Windows Sync
code it looks like 389 DS always add that attribute for both.

Sounds like a bug.* Please file a bug.* Thanks.





Regards,
*Diego


--

Diego Woitasen




--
389 users mailing list
389-users@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/389-users





--
389 users mailing list
389-users@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/389-users
 
Old 04-07-2011, 01:53 AM
Diego Woitasen
 
Default Windows Sync and UserAccountControl

On Wed, Apr 6, 2011 at 10:08 PM, Rich Megginson <rmeggins@redhat.com> wrote:








On 04/06/2011 07:02 PM, Diego Woitasen wrote:
I setup Windows Sync between 389DS and W2008r2. Worked
fine. Now we had to downgrade the Windows server to 2003 and I
don't know why I can't setup the Sync again. The only error that I
see in the 389-console (there is nothing in the error log) is
"operations error", after creating the agreement.




I sniffed the traffic between 389DS and W2003 and I saw an
objectClass violation when 389 tried to add the
userAccountControl atttr to a group. The group is created
anyway.



I've searched in the web and it looks like userAccountControl
is only for users, not for groups. Looking at the Windows Sync
code it looks like 389 DS always add that attribute for both.

Sounds like a bug.� Please file a bug.� Thanks.





Regards,
�Diego


--

Diego Woitasen



--
389 users mailing list
389-users@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/389-users






Ok. Filed:�https://bugzilla.redhat.com/show_bug.cgi?id=694336

--
Diego Woitasen


--
389 users mailing list
389-users@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/389-users
 

Thread Tools




All times are GMT. The time now is 01:20 AM.

VBulletin, Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO ©2007, Crawlability, Inc.
Copyright 2007 - 2008, www.linux-archive.org