LDAP search matches deleted network address attributes

  • 3007011
  • 26-Jun-2006
  • 26-Apr-2012

Environment


Novell eDirectory 8.7.3.8 for All Platforms
Novell eDirectory 8.8 for All Platforms

Situation


Symptoms:

LDAP search incorrectly returns some user entries.
LDAP search incorrectly returns users that have logged out.
LDAP search incorrectly matches deleted network address attributes.

Resolution

This has been resolved in 8.7.2 SP9 and later. It has also been resolved in 8.8 SP2 and later

Status

Reported to Engineering

Bug Number

170841

Additional Information

These are the exact steps to duplicate the problem:
1. Using the Novell Client, login as user jimsc.novell
2. Verify that you can do an exact search on the network address
ldapsearch -b o=novell -D cn=admin,o=novell -w novell -Z -h 151.155.152.4
(|("networkaddress=1#\89\41\D4\A8")("networaddress=9#\00\00\89\41\D4\A8")) dn
(Just to state the obvious, substitute your IP address hex values for the ones
above.)
3. Logout jimsc.novell.
4. Even though network address has been flagged non-present, you can still do
an exact search on it. The search in #2 should still return cn=jimsc,o=novell.

Change Log

Added networkaddress=9#\00\00\89\41\D4\A8
The \00\00 is the port number