Community docs for OpenLDAPServer remove the rootdn from tree
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
openldap2.3 (Ubuntu) |
Invalid
|
Undecided
|
Unassigned |
Bug Description
The following Wiki page (immutable):
https:/
has a step saying to remove the existing tree/data using:
sudo rm -rf /var/lib/ldap/*
However, this is no good as you also removing the rootdn cn=admin,
Two suggestions to fix this:
- put the cn=admin,
dn: cn=admin,
objectClass: simpleSecurityO
objectClass: organizationalRole
cn: admin
description: LDAP administrator
- or, IMHO better, to not remove the initial tree at all but instead propose to run dpkg-reconfigure slapd. That makes it a bit more timeless as there are various steps in this procedure that might change. It's also more 'standard' so to say.. Then use ldap -xLLL to add the initial LDIF but with the -c (don't stop on errors).
Hope this helps.
Changed in openldap2.3: | |
status: | Unconfirmed → Rejected |
Odd, clicking a bit in the Wiki, and now I can edit it.
I'll try to fix it myself :)
Can be closed.