Univention Bugzilla – Full Text Bug Listing |
Summary: | Traceback after re-initializing the s4-connector | ||
---|---|---|---|
Product: | UCS | Reporter: | Arvid Requate <requate> |
Component: | S4 Connector | Assignee: | Arvid Requate <requate> |
Status: | CLOSED FIXED | QA Contact: | Felix Botner <botner> |
Severity: | normal | ||
Priority: | P5 | CC: | best, gohmann, requate, roman.terescenko, scheinig |
Version: | UCS 4.1 | ||
Target Milestone: | UCS 4.1-4-errata | ||
Hardware: | Other | ||
OS: | Linux | ||
See Also: | https://forge.univention.org/bugzilla/show_bug.cgi?id=44276 | ||
What kind of report is it?: | Bug Report | What type of bug is this?: | 4: Minor Usability: Impairs usability in secondary scenarios |
Who will be affected by this bug?: | 1: Will affect a very few installed domains | How will those affected feel about the bug?: | 2: A Pain – users won’t like this once they notice it |
User Pain: | 0.046 | Enterprise Customer affected?: | |
School Customer affected?: | ISV affected?: | ||
Waiting Support: | Flags outvoted (downgraded) after PO Review: | ||
Ticket number: | Bug group (optional): | ||
Max CVSS v3 score: | |||
Bug Depends on: | 43368, 44517 | ||
Bug Blocks: |
Description
Arvid Requate
2017-04-04 16:35:44 CEST
Package rebuilt with backported patch. Advisory: univention-s4-connector.yaml the search filter seems to be broken samaccount_dn_mapping: search in s4 for (&(objectclass=group)(samaccountname=Printer-Admins)(samaccountname=Print Operators)) 02.05.2017 17:00:47,935 LDAP (INFO ): samaccount_dn_mapping: newdn: cn=Printer-Admins,cn=groups,dc=w2k12,dc=test 02.05.2017 17:00:47,935 LDAP (INFO ): samaccount_dn_mapping: newdn for key dn: 02.05.2017 17:00:47,935 LDAP (INFO ): samaccount_dn_mapping: olddn: cn=Printer-Admins,cn=groups,dc=w2k12,dc=test 02.05.2017 17:00:47,936 LDAP (INFO ): samaccount_dn_mapping: newdn: cn=Printer-Admins,cn=groups,dc=w2k12,dc=test 02.05.2017 17:00:47,936 LDAP (INFO ): samaccount_dn_mapping: check newdn for key olddn: 02.05.2017 17:00:47,937 LDAP (INFO ): _ignore_object: Do not ignore cn=Printer-Admins,cn=groups,DC=w2k12,DC=test 02.05.2017 17:00:47,939 LDAP (INFO ): __sync_file_from_ucs: finished mapping 02.05.2017 17:00:47,939 LDAP (INFO ): sync_from_ucs: sync object: cn=Printer-Admins,cn=groups,DC=w2k12,DC=test 02.05.2017 17:00:47,939 LDAP (PROCESS): sync from ucs: [ group] [ add] cn=Printer-Admins,cn=groups,DC=w2k12,DC=test ... 02.05.2017 17:00:47,952 LDAP (PROCESS): sync_from_ucs: error during add, searching for conflicting deleted object in S4 02.05.2017 17:00:47,953 LDAP (INFO ): sync_from_ucs: search filter: (&(sAMAccountName=Print Operators)(objectSid=S-1-5-32-550)(isDeleted=TRUE)) 02.05.2017 17:00:47,954 LDAP (PROCESS): sync_from_ucs: no conflicting deleted object found search for (samaccountname=Printer-Admins) OR (samaccountname=Print Operators) Search filter adjusted, package rebuilt and advisory updated. I'm not sure if this bug or Bug #44291 is the root cause but the S4 connector tests fail since April 18th. See http://jenkins.knut.univention.de:8080/job/UCS-4.1/job/UCS-4.1-4/job/AutotestJoin/SambaVersion=s4connector,Systemrolle=master/168/ ----------------------------------------------------------------------- 02.05.2017 18:06:58,613 LDAP (PROCESS): sync from ucs: [ group] [ add] cn=denied rodc password replication group,cn=groups,DC=autotest091c,DC=local 02.05.2017 18:06:58,684 LDAP (PROCESS): sync from ucs: [ group] [ modify] cn=denied rodc password replication group,cn=groups,DC=autotest091c,DC=local 02.05.2017 18:06:58,748 LDAP (PROCESS): sync from ucs: [ group] [ add] cn=administrators,cn=builtin,DC=autotest091c,DC=local 02.05.2017 18:06:58,749 LDAP (PROCESS): Unable to sync cn=administrators,cn=builtin,DC=autotest091c,DC=local (GUID: 161b30e8-cafa-4bb6-9482-775aa4ff8943). The object is currently locked. 02.05.2017 18:07:28,784 MAIN (------ ): DEBUG_INIT 02.05.2017 18:07:28,889 LDAP (PROCESS): Building internal group membership cache 02.05.2017 18:07:28,892 LDAP (PROCESS): Internal group membership cache was created 02.05.2017 18:07:29,329 LDAP (PROCESS): sync from ucs: [ group] [ add] cn=administrators,cn=builtin,DC=autotest091c,DC=local 02.05.2017 18:07:29,330 LDAP (PROCESS): Unable to sync cn=administrators,cn=builtin,DC=autotest091c,DC=local (GUID: 161b30e8-cafa-4bb6-9482-775aa4ff8943). The object is currently locked. 02.05.2017 18:07:59,368 MAIN (------ ): DEBUG_INIT ----------------------------------------------------------------------- The current tests look good. OK - univention-s4-connector OK - latest jenkins connector tests OK - YAML |