Bug 692937

Summary: Replica install fails after step for "enable GSSAPI for replication"
Product: [Retired] 389 Reporter: Rich Megginson <rmeggins>
Component: Replication - GeneralAssignee: Rich Megginson <rmeggins>
Status: CLOSED CURRENTRELEASE QA Contact: Viktor Ashirov <vashirov>
Severity: urgent Docs Contact:
Priority: high    
Version: 1.2.8CC: dpal, nsoman, rcritten
Target Milestone: ---   
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: 692469 Environment:
Last Closed: 2015-12-07 17:09:16 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Bug Depends On:    
Bug Blocks: 639035, 656390, 692469, 694571    
Attachments:
Description Flags
0001-Bug-692937-Replica-install-fails-after-step-for-enab.patch nhosoi: review+

Comment 1 Rich Megginson 2011-04-01 18:51:44 UTC
Created attachment 489440 [details]
0001-Bug-692937-Replica-install-fails-after-step-for-enab.patch

Comment 2 Rich Megginson 2011-04-01 19:25:34 UTC
To ssh://git.fedorahosted.org/git/389/ds.git
   bb02e98..27ff25d  master -> master
commit 27ff25d8d928dc788b56ee614535f91dcf5f7f6f
Author: Rich Megginson <rmeggins>
Date:   Fri Apr 1 12:44:23 2011 -0600
To ssh://git.fedorahosted.org/git/389/ds.git
   428efff..de41307  389-ds-base-1.2.8 -> 389-ds-base-1.2.8
commit de4130733cfe32d29f5e1c60d22a067346c55a53
Author: Rich Megginson <rmeggins>
Date:   Fri Apr 1 12:44:23 2011 -0600

    Reviewed by: nhosoi (Thanks!)
    Branch: master
    Fix Description: Allow the deletion of the nsds5replicabinddn and
    nsds5replicacredentials attributes from the replication agreement.  These
    are not needed for SASL/EXTERNAL or SASL/GSSAPI.  NOTE: the agreement code
    will not warn that nsds5replicabinddn and nsds5replicacredentials are needed
    for simple and other bind methods.  It is the responsibility of the user
    to make sure these are specified.
    If the modify code executed in such a way that the transportinfo was set
    before bindmethod, the code would report an error that ldaps or tls cannot
    be used with SASL/GSSAPI.  There is no clean way to check to see if the
    state of the agreement is consistent after applying all mods, so we just
    remove this check.  With recent versions of the server, you can mix
    ssl/tls with sasl/gssapi.
    Platforms tested: RHEL6 x86_64
    Flag Day: no
    Doc impact: no

Comment 3 Jenny Severance 2011-05-16 16:49:49 UTC
Marking bug Verified.  Original bug (this is a clone) was verified.