[Fedora-directory-users] Infinite loop during installation process

Graham Leggett minfrin at sharp.fm
Mon Nov 6 22:52:30 UTC 2006


Richard Megginson wrote:

> 1) edit admin-serv/config/console.conf and change NSSEngine from "on" to 
> "off"
> 2) find the cn=configuration entry for the admin server:
> ldapsearch -x -D "cn=directory manager" -w password -s sub -b 
> o=netscaperoot "nsserversecurity=on"
> 3) If this returns the config entry for the admin server, use ldapmodify 
> to turn security off:
> ldapmodify -x -D "cn=directory manager" -w password
> dn: dn returned above
> changetype: modify
> replace: nsServerSecurity
> nsServerSecurity: off
> 
> 4) restart admin server - restart-admin
> 
> This should cause admin server to use http instead of https.

In this case the admin server was already http.

I tried to switch the admin server SSL on, by manually editing the 
directory.

Now the admin server won't start at all, and no error message is logged 
to the console or error log.

A couple of questions at this point:

- How does the console know whether to contact the admin server using 
SSL or clear?

- How do you reset the state of the console entirely?

In the case of the admin server:

- Which files in the config directory can be edited by a human and have 
an actual effect?

- How do you refresh the files in the config directory, so that they 
reflect changes you've made in the directory itself?

- How do you completely and entirely flush a server out of the directory 
and the console so that you can start the process from scratch yet again?

Regards,
Graham
--




More information about the Fedora-directory-users mailing list