[Samba] LDAP errors with v3.0.34 using the LDAP schema file with Sun DS 5.2

Rob Mottishaw mottrobe at isu.edu
Thu Aug 20 11:22:17 MDT 2009


Receive the following errors when users authenticate with LDAP schema 
file included with Sun DS 5.2:

ERROR<5897> - Schema  - conn=-1 op=-1 msgId=-1 - User error:  Entry 
"sambaDomainName=????????,??=???,??=???", attribute 
"sambapwdhistorylength" is not allowed
ERROR<5897> - Schema  - conn=-1 op=-1 msgId=-1 - User error:  Entry 
"sambaDomainName=????????,??=???,??=???", attribute 
"sambalockoutthreshold" is not allowed
ERROR<5897> - Schema  - conn=-1 op=-1 msgId=-1 - User error:  Entry 
"sambaDomainName=????????,??=???,??=???", attribute "sambamaxpwdage" is 
not allowed

The authentication is succdessful, yet these errors are logged multiple 
times.  Checked in the schema file for SAMBA 3.0.x sent with Sun DS 5.2, 
and indeed, the attributes sambapwdhistorylength, sambalockoutthreshold, 
and sambamaxpwdage are not among those listed in the schema file for 
SAMBA 3.0.x.  Is there an updated schema file or a way to configure the 
authentication to remove the verification of these attributes?

Thank you,
Rob Mottishaw


More information about the samba mailing list