[Freeipa-users] hostMask attribute syntax issue in 60sudo.ldif

Dmitri Pal dpal at redhat.com
Fri Sep 24 16:30:45 UTC 2010


Brian LaMere wrote:
> the attribute "hostMask" attribute in the 60sudo.ldif schema def has a
> syntax of 1.3.6.1.4.1.1466.115.121.1.15 but it should be
> 1.3.6.1.4.1.1466.115.121.1.26...maybe?
>
> attributeTypes: (2.16.840.1.113730.3.8.7.11 NAME 'hostMask' DESC 'IP
> mask to identify a subnet.' EQUALITY caseIgnoreIA5Match ORDERING
> caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX
> 1.3.6.1.4.1.1466.115.121.1.15 X-ORIGIN 'IPA v2' )
>
> equality as IA5, but ordering and substr as regular strings? I'm
> tempted to think it should be IA5 across the board, as an IP.  Yes?
>   
Yes this is an inconsistency fixed by the patch on the list. After some
discussion we decided to treat it as a DirectoryString i.e. 15 and
remove the IA5 from the match rule.
Thanks ,
Dmitri

> ------------------------------------------------------------------------
>
> _______________________________________________
> Freeipa-users mailing list
> Freeipa-users at redhat.com
> https://www.redhat.com/mailman/listinfo/freeipa-users


-- 
Thank you,
Dmitri Pal

Engineering Manager IPA project,
Red Hat Inc.


-------------------------------
Looking to carve out IT costs?
www.redhat.com/carveoutcosts/




More information about the Freeipa-users mailing list