Chapter 19. Directory Server in Red Hat Enterprise Linux

IdM schema replications from Red Hat Enterprise Linux 7 to 6.9 fail

Identity Management (IdM) in Red Hat Enterprise Linux 6.9 uses a different schema definition in the nsEncryptionConfig object class than IdM on Red Hat Enterprise Linux 7.3. Because the schema learning mechanism is unable to merge definitions, schema replications between servers fail. As a consequence, mechanisms relying on the schema can fail. For example, schema violations and plug-in failures can occur, replication can fail, and access control instructions (ACI) can be ignored. In an upcoming Red Hat Enterprise Linux 7.3 update, the nsTLS10, nsTLS11, and nsTLS12 attributes will be added to the list of allowed attributes in the nsEncryptionConfig object class, and as a consequence, mechanisms relying on the schema no longer fails in the described scenario. (BZ#1404443)