[Freeipa-users] Migration works on 3 but not 4?

Martin Kosek mkosek at redhat.com
Wed Aug 27 07:14:58 UTC 2014


On 08/27/2014 07:47 AM, Kat wrote:
> Hi all...
>
> Migrating from Open LDAP and it works fine to FreeIPA to 3.x but 4.x I get
> migration errors?
>
> /Constraint violation: invalid password syntax - passwords with storage scheme
> are not allowed/
>
> I did find one reference to this in the archives, but it references 389-ds
> 1.3.2.20 and i am running 1.3.2.22, so am I missing something?
>
> ~K

Hello Kat,

You are exactly on spot. This problem is caused by 389-ds-base not allowing 
hashed password, you can find details in

https://fedorahosted.org/freeipa/ticket/4450

This *was* fixed with DS 1.3.2.20. Unfortunately, there was a security update 
in the DS and it had to be based on 1.3.2.19 again and versioned 1.3.2.22 (i.e. 
without the fix for 4450).

Noriko, what are the time plans regarding a release of the DS based on 1.3.2.20 
+ the security update?

Thanks,
Martin




More information about the Freeipa-users mailing list