[Bug 243525] [NEW] slapd needs apparmor changes for cn=config

Jeff Strunk jstrunk at math.utexas.edu
Fri Jun 27 15:11:53 BST 2008


Public bug reported:

Binary package hint: slapd

/usr/bin/slapd needs write access to /etc/ldap/slap.d if one is going to
use the in tree configuration mechanism effectively.

The following line needs to be added to /etc/apparmor.d/usr.sbin.slapd :
  /etc/ldap/slapd.d/* rw,

It can go after the line:
  /etc/ldap/slapd.conf r,

I found this bug on a Hardy server with slapd 2.4.9-0ubuntu0.8.04 which
is made with the openldap2.3 source package. The solution was at
http://ubuntuforums.org/showthread.php?t=808097

The consequence of not doing this is that any changes made to the
cn=config tree are not saved in /etc/ldap/slapd.d . This defeats the
purpose of this new feature.

** Affects: openldap2.3 (Ubuntu)
     Importance: Undecided
         Status: New

-- 
slapd needs apparmor changes for cn=config
https://bugs.launchpad.net/bugs/243525
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openldap2.3 in ubuntu.



More information about the Ubuntu-server-bugs mailing list