[Fedora-directory-users] referential integrity checks for disactivated users

Richard Megginson rmeggins at redhat.com
Mon May 1 15:21:43 UTC 2006


Mikael Kermorgant wrote:
> Hello,
>
> I'm interested by the Referential Integrity plugin for updating groups
> when a user is disactivated.
>
> My problem is that disactivated users are not deleted but moved from
> "ou=People" to "ou=disabled".
What is the process by which a user is "moved" from ou=people to 
ou=disabled?  If you do an LDAP delete (from ou=people) followed by an 
LDAP add (from ou=disabled), then the group cleanup will be performed 
during the LDAP delete process by the referential integrity checking.  
Note that Fedora DS does not support "moving" a "leaf" entry from one 
container to another, so there is no other way to accomplish this move 
process over LDAP using Fedora DS.
>
> Would you have an idea of how to use Referential Integrity with this
> way of handling users ?
>
> Thanks,
>
> -- 
> Mikael Kermorgant
>
> -- 
> Fedora-directory-users mailing list
> Fedora-directory-users at redhat.com
> https://www.redhat.com/mailman/listinfo/fedora-directory-users
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3178 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://listman.redhat.com/archives/fedora-directory-users/attachments/20060501/ef2dab97/attachment.bin>


More information about the Fedora-directory-users mailing list