Univention Bugzilla – Full Text Bug Listing |
Summary: | Password complexity check triggers error in s4connector and prevents user sync | ||
---|---|---|---|
Product: | UCS | Reporter: | Kevin Dominik Korte <korte> |
Component: | S4 Connector | Assignee: | Stefan Gohmann <gohmann> |
Status: | CLOSED FIXED | QA Contact: | Arvid Requate <requate> |
Severity: | critical | ||
Priority: | P1 | CC: | gohmann, jmm, requate |
Version: | UCS 3.2 | ||
Target Milestone: | UCS 3.2-1-errata | ||
Hardware: | Other | ||
OS: | Linux | ||
What kind of report is it?: | --- | What type of bug is this?: | --- |
Who will be affected by this bug?: | --- | How will those affected feel about the bug?: | --- |
User Pain: | Enterprise Customer affected?: | ||
School Customer affected?: | ISV affected?: | ||
Waiting Support: | Flags outvoted (downgraded) after PO Review: | ||
Ticket number: | Bug group (optional): | ||
Max CVSS v3 score: | |||
Attachments: |
Connector Logs
Samba Logs bug34478_password_complexity.patch |
Description
Kevin Dominik Korte
2014-04-04 22:06:44 CEST
Can you append the connector and samba log files? Created attachment 5852 [details]
Connector Logs
Created attachment 5853 [details]
Samba Logs
Logs are attached. The respective user is "testera" the password Uiaeo123snrt internally the systems are available at kkorte_samba4-test-* Created attachment 5854 [details] bug34478_password_complexity.patch Thanks for the logs. Does the attached patch fix the problem for you? patch -d /usr/share/pyshared/ -p 1 <bug34478_password_complexity.patch service univention-s4-connector restart Thanks for the fast patch. After applying the steps outlined, both rejected and new users are synchronized between S4 and OpenLDAP. Login works on both. Password change from the Windows, kpasswd and UMC as well. We just observed this again in a customer samba3->samba4 migration test. Maybe we should think about adding and using a univention-lib function to generate a password according to the password policy for a given DN. For another proposal see also Bug 34067. The patch has been applied: Code: r49469 YAML: r49471 I've also added a test case (r49470): 030_sync_with_activated_pwqualitycheck (In reply to Arvid Requate from comment #7) > We just observed this again in a customer samba3->samba4 migration test. > > Maybe we should think about adding and using a univention-lib function to > generate a password according to the password policy for a given DN. > For another proposal see also Bug 34067. Yes, that might be something for a later fix. Verified: * The password complexity is improved significantly. * The test case works * YAML advisory ok. |