Bug 1748355 - LDAPI and Autobind configuration should have a warning
Summary: LDAPI and Autobind configuration should have a warning
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Directory Server
Classification: Red Hat
Component: cockpit-389-ds
Version: 11.0
Hardware: Unspecified
OS: Unspecified
unspecified
unspecified
Target Milestone: ---
: dirsrv-11.1
Assignee: mreynolds
QA Contact: RHDS QE
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2019-09-03 12:23 UTC by Viktor Ashirov
Modified: 2020-04-29 08:04 UTC (History)
6 users (show)

Fixed In Version: 389-ds-base-1.4.2.7-1.module+el8dsrv+5547+8be68086
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2020-04-29 08:04:40 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHBA-2020:1961 0 None None None 2020-04-29 08:04:48 UTC

Description Viktor Ashirov 2019-09-03 12:23:54 UTC
Description of problem:
LDAP and Autobind configuration should have a warning, that disabling 

Version-Release number of selected component (if applicable):
389-ds-base-1.4.1.6-2.module+el8dsrv+3912+aa2ce078.x86_64


How reproducible:
always

Steps to Reproduce:
1. Server settings -> LDAPI & Autobind Settings
2. Disable LDAP or Autobind.
3.

Actual results:
WebUI happily allows disabling LDAP and Autobind without a warning to the user.

Expected results:
A warning should be displayed that disabling these settings will render WebUI unusable.

Additional info:

Comment 1 Viktor Ashirov 2019-09-10 11:02:52 UTC
Build tested: 389-ds-base-1.4.1.7-1.module+el8dsrv+4200+233a821d

With the latest build I see the warning when I try to disable LDAPI and Autobind.

But if I change the socket path, I don't see the warning. But this breaks UI anyway, because we have a hardcoded path to socket everywhere: 

let cmd = ["dsconf", "-j", "ldapi://%2fvar%2frun%2fslapd-" + this.props.serverId + ".socket",

Comment 3 Viktor Ashirov 2019-09-27 13:26:44 UTC
Builds tested:                                                                                                                                                 
389-ds-base-1.4.1.9-1.module+el8dsrv+4243+ba0eb3c6.x86_64                                                                                                      
cockpit-389-ds-1.4.1.9-1.module+el8dsrv+4243+ba0eb3c6.noarch

LDAPI & Autobind configuration is read only now, which is good.

Input fields for nsslapd-ldapifilepath and nsslapd-ldapimaprootdn are marked with 'readonly' attribute, but it gives an impression that they should be editable. Instead we should use 'disabled' attribute for these input fields.

Moving to ASSIGNED.

Comment 5 mreynolds 2019-11-08 22:04:43 UTC
https://pagure.io/389-ds-base/issue/50696

Comment 7 Viktor Ashirov 2020-02-17 13:23:54 UTC
Build tested: 389-ds-base-1.4.2.7-1.module+el8dsrv+5547+8be68086.x86_64
Same issue as in comment #3.

Comment 8 Viktor Ashirov 2020-02-18 15:45:33 UTC
Build tested: cockpit-389-ds-1.4.2.7-1.module+el8dsrv+5547+8be68086.noarch

Fields are disabled, marking as VERIFIED.

Comment 10 errata-xmlrpc 2020-04-29 08:04:40 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHBA-2020:1961


Note You need to log in before you can comment on or make changes to this bug.