Comment 1 for bug 243525

Revision history for this message
Mathias Gug (mathiaz) wrote : Re: [Bug 243525] [NEW] slapd needs apparmor changes for cn=config

On Fri, Jun 27, 2008 at 02:11:53PM -0000, Jeff Strunk wrote:
> Public bug reported:
>
> Binary package hint: slapd
>
> /usr/bin/slapd needs write access to /etc/ldap/slap.d if one is going to
> use the in tree configuration mechanism effectively.
>
> The following line needs to be added to /etc/apparmor.d/usr.sbin.slapd :
> /etc/ldap/slapd.d/* rw,
>
> It can go after the line:
> /etc/ldap/slapd.conf r,
>
> I found this bug on a Hardy server with slapd 2.4.9-0ubuntu0.8.04 which
> is made with the openldap2.3 source package. The solution was at
> http://ubuntuforums.org/showthread.php?t=808097
>
> The consequence of not doing this is that any changes made to the
> cn=config tree are not saved in /etc/ldap/slapd.d . This defeats the
> purpose of this new feature.

  status triaged
  importance medium

--
Mathias Gug
Ubuntu Developer http://www.ubuntu.com