summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSimo Sorce <ssorce@redhat.com>2008-05-23 15:41:44 -0400
committerSimo Sorce <ssorce@redhat.com>2008-05-29 09:44:19 -0400
commita656329173e62784fd43c6139d92f6b44021d1b1 (patch)
treeba77c9a0b8456f1e8ffe35bc17071eda08721aa4
parent3beaba9b958d74f96d6a48f2bbdbadc2df8e1b39 (diff)
downloadfreeipa-a656329173e62784fd43c6139d92f6b44021d1b1.tar.gz
freeipa-a656329173e62784fd43c6139d92f6b44021d1b1.tar.xz
freeipa-a656329173e62784fd43c6139d92f6b44021d1b1.zip
Now that admin is in the common users tree make the nss_ldap
configuration look at the specific tree where users are and not search the full server.
-rw-r--r--contrib/RHEL4/ipa-client-setup4
-rw-r--r--ipa-client/ipa-install/ipa-client-install4
2 files changed, 4 insertions, 4 deletions
diff --git a/contrib/RHEL4/ipa-client-setup b/contrib/RHEL4/ipa-client-setup
index 26e9d84e..8e66ffdc 100644
--- a/contrib/RHEL4/ipa-client-setup
+++ b/contrib/RHEL4/ipa-client-setup
@@ -287,8 +287,8 @@ def main():
{'name':'ldap_version', 'type':'option', 'value':'3'},
{'name':'base', 'type':'option', 'value':ipasrv.getBaseDN()},
{'name':'empty', 'type':'empty'},
- {'name':'nss_base_passwd', 'type':'option', 'value':ipasrv.getBaseDN()+'?sub'},
- {'name':'nss_base_group', 'type':'option', 'value':ipasrv.getBaseDN()+'?sub'},
+ {'name':'nss_base_passwd', 'type':'option', 'value':'cn=users,cn=accounts,'+ipasrv.getBaseDN()+'?sub'},
+ {'name':'nss_base_group', 'type':'option', 'value':'cn=users,cn=accounts,'+ipasrv.getBaseDN()+'?sub'},
{'name':'nss_schema', 'type':'option', 'value':'rfc2307bis'},
{'name':'nss_map_attribute', 'type':'option', 'value':'uniqueMember member'},
{'name':'nss_initgroups_ignoreusers', 'type':'option', 'value':'root,dirsrv'},
diff --git a/ipa-client/ipa-install/ipa-client-install b/ipa-client/ipa-install/ipa-client-install
index 17dd15a5..b096d9b9 100644
--- a/ipa-client/ipa-install/ipa-client-install
+++ b/ipa-client/ipa-install/ipa-client-install
@@ -232,8 +232,8 @@ def main():
{'name':'ldap_version', 'type':'option', 'value':'3'},
{'name':'base', 'type':'option', 'value':cli_basedn},
{'name':'empty', 'type':'empty'},
- {'name':'nss_base_passwd', 'type':'option', 'value':cli_basedn+'?sub'},
- {'name':'nss_base_group', 'type':'option', 'value':cli_basedn+'?sub'},
+ {'name':'nss_base_passwd', 'type':'option', 'value':'cn=users,cn=accounts,'+cli_basedn+'?sub'},
+ {'name':'nss_base_group', 'type':'option', 'value':'cn=groups,cn=accounts,'+cli_basedn+'?sub'},
{'name':'nss_schema', 'type':'option', 'value':'rfc2307bis'},
{'name':'nss_map_attribute', 'type':'option', 'value':'uniqueMember member'},
{'name':'nss_initgroups_ignoreusers', 'type':'option', 'value':'root,dirsrv'},