Bug 841600 - Referential integrity plug-in does not work when update interval is not zero
Referential integrity plug-in does not work when update interval is not zero
Product: Red Hat Enterprise Linux 6
Classification: Red Hat
Component: 389-ds-base (Show other bugs)
Unspecified Unspecified
medium Severity unspecified
: rc
: ---
Assigned To: Rich Megginson
Sankar Ramalingam
Depends On:
  Show dependency treegraph
Reported: 2012-07-19 10:17 EDT by Rich Megginson
Modified: 2013-02-21 03:20 EST (History)
3 users (show)

See Also:
Fixed In Version: 389-ds-base-
Doc Type: Bug Fix
Doc Text:
Cause: Using the Referential Integrity plugin with a delay time greater than 0, and doing an LDAP RENAME operation on a user entry where that user's entry DN is specified by one or more groups under the scope of the Referential Integrity plugin. Consequence: The group entries still have the old user entry DN, not the new one. Fix: The code was writing the literal string "NULL" instead of an empty field to the referential integrity changelog in the newsuperior field. The fix is to write an empty field when there is no newsuperior. Result: LDAP RENAME operations work when Referential Integrity is enabled with delay time > 0.
Story Points: ---
Clone Of:
Last Closed: 2013-02-21 03:20:09 EST
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---

Attachments (Terms of Use)

  None (edit)
Description Rich Megginson 2012-07-19 10:17:50 EDT
This bug is created as a clone of upstream ticket:

When the referential integrity plugin is enabled by default (with nsslapd-pluginarg0: 0) it seems to work fine for simple modrdn operations.

However when i put a delay of nsslapd-pluginarg0: 30 (or some other value) it does not work or works incorrectly (case-sensitivity or even the resulting DN cut down after the update to smth like "ou=Users,(null)").

I think it has something to do with how the plugin writes the DNs and changes to the file and how it treats these values afterwards.

Tested with (from SVN) on CentOS 5.8 x86_64. When the rpm will be available i'll be able to make some simple test cases (this time i have tested on our production data).
Comment 1 Rich Megginson 2012-07-19 10:30:26 EDT
Sending        mbo/acceptance/mboModRdn.sh
Sending        mbo/acceptance/mboScen
Sending        mbo/libs/mboLib.sh
Transmitting file data ...
Committed revision 6737.

r6737 | rmeggins@REDHAT.COM | 2012-07-19 08:29:00 -0600 (Thu, 19 Jul 2012) | 4 lines

Bug 841600 - Referential integrity plug-in does not work when update interval is not zero
added refint tests that run the refint_small and refint_large tests with
a delay time
Comment 3 Amita Sharma 2013-01-29 01:57:09 EST
Mbo startup     100% (3/3)            
MemberOf run     100% (75/75)            
MemberOf cleanup     100% (1/1)
All tests passed in the acceptance with 389-ds-base.x86_64 0:
build on rhel64.

Hence marking bug as VERIFIED.
Comment 4 errata-xmlrpc 2013-02-21 03:20:09 EST
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.


Note You need to log in before you can comment on or make changes to this bug.