[Fedora-directory-users] NSS/SSL oddities

Richard Megginson rmeggins at redhat.com
Fri Jan 6 15:20:34 UTC 2006


Mark McLoughlin wrote:

>On Fri, 2006-01-06 at 07:57 -0700, Richard Megginson wrote:
>
>  
>
>>> - Unless /opt/fedora-ds/alias is owned by nobody:nobody you get 
>>>
>>>[05/Jan/2006:17:43:40 +0000] - SSL alert: Security Initialization: NSS initialization failed (Netscape Portable Runtime error -8192 - An I/O error occurred during security authorization.): path: /opt/fedora-ds/alias/, certdb prefix: slapd-foo-, keydb prefix: slapd-foo-.
>>>[05/Jan/2006:17:43:40 +0000] - ERROR: NSS Initialization Failed.
>>>
>>>   Couldn't we not make the directory owned by nobody:nobody by 
>>>   default in the RPM? root:root doesn't seem like a useful default.
>>> 
>>>
>>>      
>>>
>>Yes, and it should be nobody:nobody - the setup script for FDS 1.0.1 
>>should be setting that directory to be owned by nobody:nobody.  Did you 
>>run setup after installing FDS 1.0.1? 
>>    
>>
>
>	No, I'm not using the setup script.
>  
>
Ah, that explains it.

>  
>
>>We're currently revamping the RPM installation.
>>    
>>
>
>	Excellent; is the work-in-progress available anywhere for people to
>poke at?
>  
>
No, not yet.  We're still climbing the mountain of dependent components 
- nspr, nss, svrcore, ldapsdk, ldapjdk, etc. etc.

>Cheers,
>Mark.
>
>--
>Fedora-directory-users mailing list
>Fedora-directory-users at redhat.com
>https://www.redhat.com/mailman/listinfo/fedora-directory-users
>  
>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3178 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://listman.redhat.com/archives/fedora-directory-users/attachments/20060106/18d496f1/attachment.bin>


More information about the Fedora-directory-users mailing list