Red Hat Directory Server and ldap_delete: Operation not allowed on non-leaf (66)
Issue
In some scenario, trying to delete a LDAP suffix or container fails the following error:
ldap_delete: Operation not allowed on non-leaf (66)
A similar issue was fixed with Red Hat Bugzilla number 947583, and subject "ldapdelete returns non-leaf entry error while trying to remove a leaf entry" at
https://bugzilla.redhat.com/show_bug.cgi?id=947583
The problem is the LDAP suffix or container appears empty, had some tombstone entries, and till, it cannot be deleted.
Environment
Red Hat Enterprise Linux 6
Red Hat Directory Server 9 with 389-ds-base-1.2.11
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.