NDSD cores in LDAP after upgrading to eDirectory 8.8 SP8 Patch 1 or 8.8 SP7 Patch 5

  • 7014591
  • 19-Feb-2014
  • 19-Feb-2014

Environment

NetIQ eDirectory 8.8 SP8 Patch 1
Novell Open Enterprise Server 11 (OES 11) Linux Support Pack 2
Novell Open Enterprise Server 11 (OES 11) Linux Support Pack 1
Novell ZENworks Configuration Management

Situation

NDSD is coring several times a day after upgrading\patching the server to one of the following:
- OES 11 SP2
- The latest patches from the OES 11 SP1 channel
- Patching a standalone (non-OES) eDirectory server to either eDirectory 8.8 SP8 Patch 1 or eDirectory 8.8 SP7 Patch 5
 
NDSD cores when browsing the user source in ZENWorks control center.

Resolution

This has been reported to Engineering.  eDirectory 8.8 SP7 Patch 5 has been removed from the OES11 SP1 channel. 
 
We are hopeful a hot fix will be released shortly.  As a workaround please select a non-patched server as the LDAP source until a fix is available.

Cause

NDSD is coring due to a LDAP search being performed that contains within its filter an empty or invalid GUID filter such as "guid=" or "guid=*"
Example:  ldapsearch -h x.x.x.x -D cn=admin,o=novell -x -w novell "(guid=)"
 
Other applications such as Oracle Essbase can generate these types of searches.