[Fedora-directory-users] ACI help

Craig White craigwhite at azapple.com
Tue Sep 2 15:35:44 UTC 2008


On Tue, 2008-09-02 at 09:26 -0600, Rich Megginson wrote:
> Craig White wrote:
> > On Thu, 2008-08-28 at 13:53 -0700, Craig White wrote:
> >   
> >> I have users personal address books as an ou under their accounts...
> >>
> >> ou=AddressBook,uid=craig,ou=People,ou=Accounts,dc=example,dc=com
> >>
> >> but when I try to add an entry, I am blocked...
> >>
> >> [28/Aug/2008:12:42:11 -0700] conn=18613 op=1 ADD
> >> dn="cn=Test,ou=AddressBook,uid=craig,ou=People,ou=Accounts,dc=example,dc=com"
> >> [28/Aug/2008:12:42:11 -0700] conn=18613 op=1 RESULT err=50 tag=105
> >> nentries=0 etime=0
> >>
> >> I need an ACi that allows each uid account to read/write entries in OU's
> >> under their own accounts and the only ACi's I have are the ones
> >> inherited
> >>     
> > ----
> > It would be great if I could get some help here.
> >   
> The ACL Summary error log level can provide some clues.  
> http://directory.fedoraproject.org/wiki/FAQ#Troubleshooting
----
I've been all over that and I understand that err=50 is insufficient
access and I've read all the pages I can find on the wiki and the 7.1
support pages but it's not helping.

I hate to say this but I can do this so simply with OpenLDAP and I'm
mystified why it is so difficult to do on Fedora-DS

Craig




More information about the Fedora-directory-users mailing list