Red Hat Directory Server version 8 with subtree password policy changes and "Operation not allowed on RDN" error 67

Solution Verified - Updated -

Issue

In some specific case, editing a subtree or user level fine grained password policy in Red Hat Directory Server 8 may create an error like below.
Error example using the command line:

"cn="cn=nsPwPolicyEntry,ou=people,dc=example,dc=com",cn=nsPwPolicyContainer,ou=people,dc=example,dc=com"
ldap_modify: Operation not allowed on RDN (67)

Error example using the Directory Server Console, popup window with title:

"Error Updating Directory"

With message

"Operation not allowed on RDN - OK"

Environment

  • Red Hat Enterprise Linux 5
  • Red Hat Directory Server 8
    redhat-ds-8.1.0-1.el5dsrv.x86_64
    redhat-ds-base-8.1.0-0.14.el5dsrv.x86_64
    redhat-ds-console-8.1.0-5.el5dsrv.noarch
    redhat-idm-console-1.0.1-1.el5idm.x86_64
    

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.

Current Customers and Partners

Log in for full access

Log In
Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.