From 9a4fd254ff69bc34c6d14b2255d49c3297380231 Mon Sep 17 00:00:00 2001 From: Rob Crittenden Date: Thu, 13 Oct 2011 15:46:58 -0400 Subject: Work around limits not being updatable in 389-ds. The bug to fix updates, BZ 741744, isn't working. For the short term add the attributes we want to update to the REPLACE whitelist so rather than using an ADD and DEL operation it will use a REPLACE. https://fedorahosted.org/freeipa/ticket/1888 --- ipaserver/ipaldap.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/ipaserver/ipaldap.py b/ipaserver/ipaldap.py index 5477417ac..74cfbfda9 100644 --- a/ipaserver/ipaldap.py +++ b/ipaserver/ipaldap.py @@ -505,7 +505,7 @@ class IPAdmin(SimpleLDAPObject): # Some attributes, like those in cn=config, need to be replaced # not deleted/added. - FORCE_REPLACE_ON_UPDATE_ATTRS = ('nsslapd-ssl-check-hostname',) + FORCE_REPLACE_ON_UPDATE_ATTRS = ('nsslapd-ssl-check-hostname', 'nsslapd-lookthroughlimit', 'nsslapd-idlistscanlimit') modlist = [] old_entry = ipautil.CIDict(old_entry) -- cgit