[Freeipa-devel] [PATCH] 984 fix anonlimits dn

Rob Crittenden rcritten at redhat.com
Mon Mar 12 21:58:05 UTC 2012


Martin Kosek wrote:
> On Wed, 2012-03-07 at 18:02 -0500, Rob Crittenden wrote:
>> The value of nsslapd-anonlimitsdn wasn't being set properly because it
>> wasn't quoted. This will fix it, replacing whatever is there with a
>> correct value.
>>
>> rob
>
> The IPA anonlimits DN is now set correctly. However anonlimits in
> cn=anonymous-limits,cn=etc,SUFFIX are still empty (nsSizeLimit and
> nsLookThroughLimit values defined in 10-config.update are not set).
>
> Martin
>

These are operational attributes, did you have them in the attribute 
list of your query?

$ ldapsearch -LLL -x -b cn=anonymous-limits,cn=etc,dc=example,dc=com 
nssizelimit nslookthroughlimit
dn: cn=anonymous-limits,cn=etc,dc=example,dc=com
nssizelimit: 5000
nslookthroughlimit: 5000

rob




More information about the Freeipa-devel mailing list