[Fedora-directory-users] use of dynamic groups from client applications
by Mikael Kermorgant
Hello,
I have recently discovered FDS and the use of dynamic groups.
As I had many groups that I generate by scripts on a regular basis, I
thought the use of dynamic groups would remove a certain amount of
complexity and administration from my current setup.
However, things do not work like I expected. I'm testing my dynamic
groups from a site built with Plone (which can find which groups the
user belongs to when authenticating) and group membership is not
found.
Do client applications have to support "dynamic groups" by using the
"memberurl" attribute to issue a search by their own ?
If that's the case, has the possibility to emulate a static group from
an external point of view (with a cache being refreshed after updates
on the directory) been envisaged ?
Thanks in advance,
--
Mikael Kermorgant
18 years
[Fedora-directory-users] Windows Console Problems
by Dan Hawker
Hi All,
Have managed to install a copy of FDS (1.0.2) on FC4 within a Xen guest.
All works and went pretty well. My only problem at the moment is getting
the console to load up. As you can appreciate, what with the host OS being
a Xen VM, I have no need for a GUI on the server and do all of my admining
via SSH, hence running the startconsole script to grab the script has
proven
I have tried following the instructions on the wiki, however whenever I
try and connect, I reeive the error:-
Exception in thread "main" java.lang.NoClassDefFoundError:
com/netscape/management/client/console/Console
I have had a search through the wiki and the archives, however as of yet
have turned up nothing. Has anybody any ideas???
Have checked that FDS is up and running using Softerras LDAPBrowser
software. All seems to be fine.
TIA
Dan
18 years
[Fedora-directory-users] Directory Server gateway over SSL
by Jason Russler
Hi all,
After sorting out my SSL problems for the admin server I've run into an
odd issue. The Directory server gateway runs very slowly and misses
page items (images, form fields, etc): the "Authentication" tab, for
instance, shows only the top menu bar and nothing else - the forms are
left out. "Advanced Search" shows only the drop-down for "is, is not
etc...". If I turn SSL off for the admin server and restart it, things
go back to working great. Turn it on, and it slows and breaks again.
Not sure what could cause this. The system is REH 3 with FDS 1.0.2.
Anyone else see this behavior?
-Jason
18 years
[Fedora-directory-users] Re: Fedora directory server 7.1 on CentOS
by Hariharan R
Hai,
Thanks for your help.
Finally i made the Fedora DS get working on CentOS 4.3 SMP kernal.
There is a problem in support for java by FDS. To configure the Fedora DS 7.1
on Multiprocessor kernal like CentOS 4.3 SMP we need to do the following,
1) By default FDS 7.1 uses IBM JRE which will not help the Admin Server to run
on Multiprocessor kernal
2) So Download the latest Sun Java(JDK V 1.5 or above) and install
3) Open the configuration file "/opt/fedora-ds/bin/https/bin/start_JVM"
4) Edit the file and update the NSES_JRE field with newly installed java
(jre)path.Accordingly update the NSES_JRE_RUNTIME field.
For Example:
-----------
NSES_JRE=/opt/jdk1.5.0_06/jre;export NSES_JRE
NSES_SERVER_HOME=/opt/fedora-ds; export NSES_SERVER_HOME
NSES_JRE_RUNTIME_LIBPATH=${NSES_JRE}/lib/i386/server:${NSES_JRE}/lib/i386:${NSES_JRE}/lib/i386/classic:${NSES_SERVER_HOME}/lib/i386/native_threads;
export NSES_JRE_RUNTIME_LIBPATH
5) Open the "/opt/fedora-ds/admin-serv/config/jvm12.conf" modify the
jvm.option field as "jvm.option=Xrs -server" remove all other entries below on
that file
6) Make sure directory server instance is running
7) Now start the Admin server (./start-admin).
It should work.
There is no problem in configuring the Fedora DS 7.1 in Uniprocessor Kernal.
Thanks a lot for all your support.
(Let me contact you all for further enquiries if i have any.)
Note: I kindly request the moderator to post this mail in the user
archive.This must be useful to fedora directory server users to configure
FDS 7.1 on CentOS and Multiprocessor systems.
----
Regards,
Hariharan.R
On Fri, 21 Apr 2006, Rob Crittenden wrote:
> Hariharan R wrote:
>> Hai,
>> By default Fedora DS 7.1 is configures to use the IBM JRE(in the
>> start_JVM file).In one mailing list they asked me to change to Sun
>> JRE.Because they told that that may be the reason for Admin server not
>> able to run.
>
> You mentioned that you had changed the JRE but didn't say what you changed
> it to. When 7.1 was released a LOT of users had this same problem and
> replacing the JRE fixed it for all of them.
>
> The other alternative is to try FDS 1.0.2 which uses a different web server
> so this problem goes away entirely.
>
> rob
>
>>
>> My FDS 7.1 is running perfectly on CentOS 4.2 uniprocessor kernal.But i
>> want this to get done in Multi Processor System Kernal(SMP),because i am
>> in a requirement to do that.
>>
>> Pls guide me.
>>
>>
>> Thanks.
>> ---
>> Regards,
>> Hariharan.R
>>
>> On Thu, 20 Apr 2006, Rob Crittenden wrote:
>>
>>> Hariharan R wrote:
>>>
>>>> Hai,
>>>>
>>>> Thanks for the reply.
>>>>
>>>> I tried to run the admin server after changing the JRE path in
>>>> "start_JVM" file and admin configuration file.But i am still not able
>>>> to run the admin server.I am getting the same error as i stated in my
>>>> previous posting.That is the server is seems to be running but it is
>>>> not actually.
>>>
>>>
>>> What do you mean you changed the JRE path? From what to what, and what
>>> JRE did you point to? Are you running an SMP kernel? Can you try a
>>> uniprocessor kernel?
>>>
>>>>
>>>> Is there any incompatability between FDS 7.1 and CentOS?
>>>> Is anybody tested Fedora DS 7.1 on either CentOS 4.2 or CentOS 4.3?
>>>
>>>
>>> We did no testing on CentOS.
>>>
>>> rob
>>>
>>>>
>>>> [I also attached <servroot>/admin-server/logs/error file in my
>>>> previous posting]
>>>>
>>>> Pls help me resolve the problem.
>>>>
>>>> Regards,
>>>> Hariharan R
>>>> ---------
>>>> Can any one pls guide me.
>>>>
>>>> http://directory.fedora.redhat.com/wiki/FAQ#Admin_Server_fails_to_start_o...
>>>> Is there a reason you aren't using FDS 1.0.2?
>>>>
>>>> rob
>>>> -------------
>>>> Thanks for your reply.
>>>>
>>>> As Jim summers said, i am running all the server instances as a same
>>>> user(root).But still i am not able to run my admin server.When i try
>>>> to run it it shows the following
>>>>
>>>> "server is ready to accept requests at 1800" suddenly the process
>>>> get detatched.There is no process listening on port 1800.
>>>>
>>>> I looked into the "/opt/fedora-ds/start-admin" script.There they
>>>> are running the following command
>>>>
>>>> "./uxwdog -d /opt/fedora-ds/admin-serv/config/ $@"
>>>>
>>>> I think this is the place the process get struck.
>>>>
>>>> My admin-server/log/error file has the following
>>>>
>>>> [19/Apr/2006:17:09:59] info ( 9431): successful server startup
>>>>
>>>> [19/Apr/2006:17:09:59] info ( 9431): Netscape-Enterprise/6.2
>>>> B04/18/2005 13:49 [19/Apr/2006:17:09:59] info ( 9431): Access Host
>>>> filter is: *.cs.iitm.ernet.in
>>>>
>>>> [19/Apr/2006:17:09:59] info ( 9431): Access Address filter is: *
>>>> [19/Apr/2006:17:09:59] info ( 9432): Installing a new configuration
>>>>
>>>> [19/Apr/2006:17:09:59] info ( 9432): [LS ls1]
>>>> http://lilac.cs.iitm.ernet.in, port 1800 ready to accept requests
>>>> [19/Apr/2006:17:09:59] info ( 9432): A new configuration was
>>>> successfully installed
>>>>
>>>>
>>>> Hai,
>>>> I am trying to install Fedora DS 7.1 on CentOS4.2.
>>>> At the End of the installation,the Admin server is not able to run.
>>>>
>>>>
>>>> After starting the console i tried to login using admin ID but i
>>>> am getting error like "URL not found or server not running"
>>>>
>>>> When I first started with FDS I hit this also. It seemed like the
>>>> suggestion that worked for me was to have all of the servers (dir and
>>>> admin) run as the same user.
>>>>
>>>> --
>>>> Fedora-directory-users mailing list
>>>> Fedora-directory-users redhat com
>>>> https://www.redhat.com/mailman/listinfo/fedora-directory-users
>>>>
>>>>
>>>> ---
>>>> Hariharan.R
>>>
>>>
>>>
>
>
18 years
[Fedora-directory-users] SSL directory server gateway
by Jason Russler
Hi all,
I'm pretty uncertain about the best way to go about configuring the
admin server to use SSL (FDS1.0.2) . All of the docs I'm finding are
pretty shaky. Ultimately, I want users to manage their passwords and
info via the web-based Directory Server Gateway over SSL. This would
appear to be the same thing as enabling SSL for the admin server. The
setupssl.sh script provided by the SSL howto, generates the keys/certs
for the admin server and imports them into the appropriate cert db (I
guess, I've performed the process by hand as well, based on RedHat's
docs and the script itself). This would imply to me that the admin
console would find the generated certs and present them in the admin
server's console (under the Configuration -> Encryption tab) in much the
same way that it does in the directory server's console. I can't tell
if something that's suppose to work isn't or if I'm misunderstanding
something. I'd like to know before I try to generate new SSL
certificates and import them.
Thanks much,
Jason
18 years
[Fedora-directory-users] access to console denied
by Mikael Kermorgant
Hello,
I made a mistake by removing the "Allowed hosts" entry in the management
console.
Having saved this action, I cannot start the console (HttpException, 401
Authorization required).
I've tried to run ./bin/admin/admconfig but it fails by not finding java on
line 55.
Is there anything I can do to restore access to the console ?
Thanks in advance,
--
Mikael Kermorgant
18 years
[Fedora-directory-users] Fedora directory server 7.1 on CentOS?
by Hariharan R
Hai,
Thanks for the reply.
I tried to run the admin server after changing the JRE path in "start_JVM"
file and admin configuration file.But i am still not able to run the admin
server.I am getting the same error as i stated in my previous posting.That
is the server is seems to be running but it is not actually.
Is there any incompatability between FDS 7.1 and CentOS?
Is anybody tested Fedora DS 7.1 on either CentOS 4.2 or CentOS 4.3?
[I also attached <servroot>/admin-server/logs/error file in my previous
posting]
Pls help me resolve the problem.
Regards,
Hariharan R
---------
Can any one pls guide me.
http://directory.fedora.redhat.com/wiki/FAQ#Admin_Server_fails_to_start_o...
Is there a reason you aren't using FDS 1.0.2?
rob
-------------
Thanks for your reply.
As Jim summers said, i am running all the server instances as a same
user(root).But still i am not able to run my admin server.When i try to
run it it shows the following
"server is ready to accept requests at 1800" suddenly the process get
detatched.There is no process listening on port 1800.
I looked into the "/opt/fedora-ds/start-admin" script.There they are
running the following command
"./uxwdog -d /opt/fedora-ds/admin-serv/config/ $@"
I think this is the place the process get struck.
My admin-server/log/error file has the following
[19/Apr/2006:17:09:59] info ( 9431): successful server startup
[19/Apr/2006:17:09:59] info ( 9431): Netscape-Enterprise/6.2
B04/18/2005 13:49 [19/Apr/2006:17:09:59] info ( 9431): Access Host filter
is: *.cs.iitm.ernet.in
[19/Apr/2006:17:09:59] info ( 9431): Access Address filter is: *
[19/Apr/2006:17:09:59] info ( 9432): Installing a new configuration
[19/Apr/2006:17:09:59] info ( 9432): [LS ls1]
http://lilac.cs.iitm.ernet.in, port 1800 ready to accept requests
[19/Apr/2006:17:09:59] info ( 9432): A new configuration was successfully
installed
Hai,
I am trying to install Fedora DS 7.1 on CentOS4.2.
At the End of the installation,the Admin server is not able to run.
After starting the console i tried to login using admin ID but i am
getting error like "URL not found or server not running"
When I first started with FDS I hit this also. It seemed like the
suggestion that worked for me was to have all of the servers (dir and
admin) run as the same user.
--
Fedora-directory-users mailing list
Fedora-directory-users redhat com
https://www.redhat.com/mailman/listinfo/fedora-directory-users
---
Hariharan.R
18 years
Re: [Fedora-directory-users] Bug in the console
by Thierry Lanfranchi
Happens to me to when I add attributes to a class and then tru to modify an
object belonging to that class.
Restarting the console is not needed, all you have to do is re-initiate a
login thru the Console/Login as new user... menu
The bug is a bit less annoying that way.
But if the console could re-load completly the schema upon schema
modification, it would indeed be great (although problem would persist if
someone else is modifying the schema from another console)
Thierry
----- Original Message -----
From: Jeff Applewhite <jeff.applewhite(a)motricity.com>
To: <fedora-directory-users(a)redhat.com>
Date: Thu, 20 Apr 2006 11:13:37 -0400
Subject: [Fedora-directory-users] Bug in the console
> Hi All,
>
> There appears to be a bug in the console such that new schema changes do not
> appear until the console is restarted.
>
> Here's what I did -- you should be able to reproduce it.
>
> Created a custom objectclass (a child of inetOrgPerson) and some custom
> optional attributes associated with it, then tried to add the objectclass to
> a user except the new custom objectclass does not appear in the scrollable
> list when I go into advanced view and attempt to add it to the
> abjectclasses. Once I restart the console all is well. Has anyone seen
> this or similar problems before?
>
> --
> Jeff Applewhite
> Systems Administration Lead
> P (919) 287-7392
> M (919) 491-4161
> jeff.applewhite(a)motricity.com
>
>
> NOTICE: This e-mail message is for the sole use of the intended
> recipient(s) and may contain confidential and privileged information of
> Motricity. Any unauthorized review, use, disclosure or distribution is
> prohibited. If you are not the intended recipient, please contact the
> sender by reply e-mail and destroy all copies of the original message.
>
>
>
> --
> Fedora-directory-users mailing list
> Fedora-directory-users(a)redhat.com
> https://www.redhat.com/mailman/listinfo/fedora-directory-users
>
>
>
18 years