directory-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Nikola Goran Cutura (JIRA)" <j...@apache.org>
Subject [jira] Commented: (DIRSERVER-715) Unable to match entry by X.509 certificate
Date Mon, 04 Sep 2006 19:10:24 GMT
    [ http://issues.apache.org/jira/browse/DIRSERVER-715?page=comments#action_12432537 ] 
            
Nikola Goran Cutura commented on DIRSERVER-715:
-----------------------------------------------

I downloaded 1.0RC4 preview, executed LdapTest and I report the following:

when search filter is specifid as

ctx.search("ou=users,o=ActiveMQ,dc=example,dc=com", "usercertificate = {0}", new Object[]
{cert}, constraints);
or
ctx.search("ou=users,o=ActiveMQ,dc=example,dc=com", "usercertificate;binary = {0}", new Object[]
{cert}, constraints);

nothing is returned and the test fails.

When search filter is specified as

ctx.search("ou=users,o=ActiveMQ,dc=example,dc=com", "usercertificate = {0}", new Object[]
{cert.getEncoded()}, constraints);

proper entry is returned and the test passes.

I can work with the latter though I believe the former is proper.

> Unable to match entry by X.509 certificate
> ------------------------------------------
>
>                 Key: DIRSERVER-715
>                 URL: http://issues.apache.org/jira/browse/DIRSERVER-715
>             Project: Directory ApacheDS
>          Issue Type: Bug
>          Components: ldap
>    Affects Versions: 1.0-RC3
>         Environment: Windows XP, Intel Pentium 4
>            Reporter: Nikola Goran Cutura
>         Assigned To: Alex Karasulu
>             Fix For: 1.1.0, 1.0-RC4
>
>         Attachments: LdapTest.java, no-binary.log, test-export.pem, test.ldif, with-binary.log
>
>
> There is an entry containing valid X.509 certificate. When I attempt to find that entry
by that certificate, search fails. There are two variants of search: one uses 'userCrtificate'
attribute name and the other uses 'userCrtificate;certificate' attribute name ('binary' may
be specified instead of 'certiifcate' - no change). Attached are log files produced in each
of the search attempts.
> Case 1:
> Java statement:
>         NamingEnumeration results = ctx.search("ou=users,o=ActiveMQ,dc=example,dc=com",
"userCertificate = {0}", new Object[] {cert}, constraints);
> produces log as in file ' no-binary.log'
> Case 2:
> Java statement:
>         NamingEnumeration results = ctx.search("ou=users,o=ActiveMQ,dc=example,dc=com",
"userCertificate;binary = {0}", new Object[] {cert}, constraints);
> produces log as in file 'with-binary.log'

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: http://issues.apache.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

Mime
View raw message