1 /* modrdn.c - bdb backend modrdn routine */
3 /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
5 * Copyright 2000-2006 The OpenLDAP Foundation.
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted only as authorized by the OpenLDAP
12 * A copy of this license is available in the file LICENSE in the
13 * top-level directory of the distribution or, alternatively, at
14 * <http://www.OpenLDAP.org/license.html>.
20 #include <ac/string.h>
25 bdb_modrdn( Operation *op, SlapReply *rs )
27 struct bdb_info *bdb = (struct bdb_info *) op->o_bd->be_private;
28 AttributeDescription *children = slap_schema.si_ad_children;
29 AttributeDescription *entry = slap_schema.si_ad_entry;
30 struct berval p_dn, p_ndn;
31 struct berval new_dn = {0, NULL}, new_ndn = {0, NULL};
34 EntryInfo *ei = NULL, *eip = NULL, *nei = NULL, *neip = NULL;
35 /* LDAP v2 supporting correct attribute handling. */
36 char textbuf[SLAP_TEXT_BUFLEN];
37 size_t textlen = sizeof textbuf;
38 DB_TXN *ltid = NULL, *lt2;
39 struct bdb_op_info opinfo = {0};
42 Entry *np = NULL; /* newSuperior Entry */
43 struct berval *np_dn = NULL; /* newSuperior dn */
44 struct berval *np_ndn = NULL; /* newSuperior ndn */
45 struct berval *new_parent_dn = NULL; /* np_dn, p_dn, or NULL */
47 int manageDSAit = get_manageDSAit( op );
50 DB_LOCK lock, plock, nplock;
54 LDAPControl **preread_ctrl = NULL;
55 LDAPControl **postread_ctrl = NULL;
56 LDAPControl *ctrls[SLAP_MAX_RESPONSE_CONTROLS];
61 int parent_is_glue = 0;
62 int parent_is_leaf = 0;
64 ctrls[num_ctrls] = NULL;
66 Debug( LDAP_DEBUG_TRACE, "==>" LDAP_XSTRING(bdb_modrdn) "(%s,%s,%s)\n",
67 op->o_req_dn.bv_val,op->oq_modrdn.rs_newrdn.bv_val,
68 op->oq_modrdn.rs_newSup ? op->oq_modrdn.rs_newSup->bv_val : "NULL" );
70 if ( !SLAP_SHADOW( op->o_bd ))
71 slap_mods_opattrs( op, &op->orr_modlist, 1 );
74 retry: /* transaction retry */
75 if ( dummy.e_attrs ) {
76 attrs_free( dummy.e_attrs );
80 bdb_unlocked_cache_return_entry_w(&bdb->bi_cache, e);
84 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, p);
88 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, np);
91 Debug( LDAP_DEBUG_TRACE, "==>" LDAP_XSTRING(bdb_modrdn)
92 ": retrying...\n", 0, 0, 0 );
94 rs->sr_err = TXN_ABORT( ltid );
97 op->o_do_not_cache = opinfo.boi_acl_cache;
98 if( rs->sr_err != 0 ) {
99 rs->sr_err = LDAP_OTHER;
100 rs->sr_text = "internal error";
103 if ( op->o_abandon ) {
104 rs->sr_err = SLAPD_ABANDON;
109 bdb_trans_backoff( ++num_retries );
112 /* begin transaction */
113 rs->sr_err = TXN_BEGIN( bdb->bi_dbenv, NULL, <id,
114 bdb->bi_db_opflags );
116 if( rs->sr_err != 0 ) {
117 Debug( LDAP_DEBUG_TRACE,
118 LDAP_XSTRING(bdb_modrdn) ": txn_begin failed: "
119 "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
120 rs->sr_err = LDAP_OTHER;
121 rs->sr_text = "internal error";
125 locker = TXN_ID ( ltid );
127 opinfo.boi_bdb = op->o_bd;
128 opinfo.boi_txn = ltid;
129 opinfo.boi_locker = locker;
131 opinfo.boi_acl_cache = op->o_do_not_cache;
132 op->o_private = &opinfo;
135 rs->sr_err = bdb_dn2entry( op, ltid, &op->o_req_ndn, &ei, 1,
138 switch( rs->sr_err ) {
142 case DB_LOCK_DEADLOCK:
143 case DB_LOCK_NOTGRANTED:
146 rs->sr_text = "ldap server busy";
149 rs->sr_err = LDAP_OTHER;
150 rs->sr_text = "internal error";
155 /* FIXME: dn2entry() should return non-glue entry */
156 if (( rs->sr_err == DB_NOTFOUND ) ||
157 ( !manageDSAit && e && is_entry_glue( e )))
160 rs->sr_matched = ch_strdup( e->e_dn );
161 rs->sr_ref = is_entry_referral( e )
162 ? get_entry_referrals( op, e )
164 bdb_unlocked_cache_return_entry_r( &bdb->bi_cache, e);
168 rs->sr_ref = referral_rewrite( default_referral, NULL,
169 &op->o_req_dn, LDAP_SCOPE_DEFAULT );
172 rs->sr_err = LDAP_REFERRAL;
173 send_ldap_result( op, rs );
175 ber_bvarray_free( rs->sr_ref );
176 free( (char *)rs->sr_matched );
178 rs->sr_matched = NULL;
183 if ( get_assert( op ) &&
184 ( test_filter( op, e, get_assertion( op )) != LDAP_COMPARE_TRUE ))
186 rs->sr_err = LDAP_ASSERTION_FAILED;
190 /* check write on old entry */
191 rs->sr_err = access_allowed( op, e, entry, NULL, ACL_WRITE, NULL );
192 if ( ! rs->sr_err ) {
193 switch( opinfo.boi_err ) {
194 case DB_LOCK_DEADLOCK:
195 case DB_LOCK_NOTGRANTED:
199 Debug( LDAP_DEBUG_TRACE, "no access to entry\n", 0,
201 rs->sr_text = "no write access to old entry";
202 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
207 rs->sr_err = bdb_cache_children( op, ltid, e );
208 if ( rs->sr_err != DB_NOTFOUND ) {
209 switch( rs->sr_err ) {
210 case DB_LOCK_DEADLOCK:
211 case DB_LOCK_NOTGRANTED:
214 Debug(LDAP_DEBUG_ARGS,
215 "<=- " LDAP_XSTRING(bdb_modrdn)
217 op->o_req_dn.bv_val, 0, 0);
218 rs->sr_err = LDAP_NOT_ALLOWED_ON_NONLEAF;
219 rs->sr_text = "subtree rename not supported";
222 Debug(LDAP_DEBUG_ARGS,
223 "<=- " LDAP_XSTRING(bdb_modrdn)
224 ": has_children failed: %s (%d)\n",
225 db_strerror(rs->sr_err), rs->sr_err, 0 );
226 rs->sr_err = LDAP_OTHER;
227 rs->sr_text = "internal error";
231 ei->bei_state |= CACHE_ENTRY_NO_KIDS;
234 if (!manageDSAit && is_entry_referral( e ) ) {
235 /* parent is a referral, don't allow add */
236 rs->sr_ref = get_entry_referrals( op, e );
238 Debug( LDAP_DEBUG_TRACE, LDAP_XSTRING(bdb_modrdn)
239 ": entry %s is referral\n", e->e_dn, 0, 0 );
241 rs->sr_err = LDAP_REFERRAL,
242 rs->sr_matched = e->e_name.bv_val;
243 send_ldap_result( op, rs );
245 ber_bvarray_free( rs->sr_ref );
247 rs->sr_matched = NULL;
251 if ( be_issuffix( op->o_bd, &e->e_nname ) ) {
252 #ifdef BDB_MULTIPLE_SUFFIXES
253 /* Allow renaming one suffix entry to another */
254 p_ndn = slap_empty_bv;
256 /* There can only be one suffix entry */
257 rs->sr_err = LDAP_NAMING_VIOLATION;
258 rs->sr_text = "cannot rename suffix entry";
262 dnParent( &e->e_nname, &p_ndn );
265 if ( p_ndn.bv_len != 0 ) {
266 /* Make sure parent entry exist and we can write its
269 eip = ei->bei_parent;
270 rs->sr_err = bdb_cache_find_id( op, ltid,
271 eip->bei_id, &eip, 0, locker, &plock );
273 switch( rs->sr_err ) {
277 case DB_LOCK_DEADLOCK:
278 case DB_LOCK_NOTGRANTED:
281 rs->sr_text = "ldap server busy";
284 rs->sr_err = LDAP_OTHER;
285 rs->sr_text = "internal error";
291 Debug( LDAP_DEBUG_TRACE, LDAP_XSTRING(bdb_modrdn)
292 ": parent does not exist\n", 0, 0, 0);
293 rs->sr_err = LDAP_OTHER;
294 rs->sr_text = "old entry's parent does not exist";
298 p = (Entry *)&slap_entry_root;
301 /* check parent for "children" acl */
302 rs->sr_err = access_allowed( op, p,
304 op->oq_modrdn.rs_newSup == NULL ?
305 ACL_WRITE : ACL_WDEL,
311 if ( ! rs->sr_err ) {
312 switch( opinfo.boi_err ) {
313 case DB_LOCK_DEADLOCK:
314 case DB_LOCK_NOTGRANTED:
318 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
319 Debug( LDAP_DEBUG_TRACE, "no access to parent\n", 0,
321 rs->sr_text = "no write access to old parent's children";
325 Debug( LDAP_DEBUG_TRACE,
326 LDAP_XSTRING(bdb_modrdn) ": wr to children "
327 "of entry %s OK\n", p_ndn.bv_val, 0, 0 );
329 if ( p_ndn.bv_val == slap_empty_bv.bv_val ) {
330 p_dn = slap_empty_bv;
332 dnParent( &e->e_name, &p_dn );
335 Debug( LDAP_DEBUG_TRACE,
336 LDAP_XSTRING(bdb_modrdn) ": parent dn=%s\n",
339 new_parent_dn = &p_dn; /* New Parent unless newSuperior given */
341 if ( op->oq_modrdn.rs_newSup != NULL ) {
342 Debug( LDAP_DEBUG_TRACE,
343 LDAP_XSTRING(bdb_modrdn)
344 ": new parent \"%s\" requested...\n",
345 op->oq_modrdn.rs_newSup->bv_val, 0, 0 );
347 /* newSuperior == oldParent? */
348 if( dn_match( &p_ndn, op->oq_modrdn.rs_nnewSup ) ) {
349 Debug( LDAP_DEBUG_TRACE, "bdb_back_modrdn: "
350 "new parent \"%s\" same as the old parent \"%s\"\n",
351 op->oq_modrdn.rs_newSup->bv_val, p_dn.bv_val, 0 );
352 op->oq_modrdn.rs_newSup = NULL; /* ignore newSuperior */
356 /* There's a BDB_MULTIPLE_SUFFIXES case here that this code doesn't
357 * support. E.g., two suffixes dc=foo,dc=com and dc=bar,dc=net.
358 * We do not allow modDN
362 * and we probably should. But since MULTIPLE_SUFFIXES is deprecated
363 * I'm ignoring this problem for now.
365 if ( op->oq_modrdn.rs_newSup != NULL ) {
366 if ( op->oq_modrdn.rs_newSup->bv_len ) {
367 np_dn = op->oq_modrdn.rs_newSup;
368 np_ndn = op->oq_modrdn.rs_nnewSup;
370 /* newSuperior == oldParent? - checked above */
371 /* newSuperior == entry being moved?, if so ==> ERROR */
372 if ( dnIsSuffix( np_ndn, &e->e_nname )) {
373 rs->sr_err = LDAP_NO_SUCH_OBJECT;
374 rs->sr_text = "new superior not found";
377 /* Get Entry with dn=newSuperior. Does newSuperior exist? */
379 rs->sr_err = bdb_dn2entry( op, ltid, np_ndn,
380 &neip, 0, locker, &nplock );
382 switch( rs->sr_err ) {
383 case 0: np = neip->bei_e;
386 case DB_LOCK_DEADLOCK:
387 case DB_LOCK_NOTGRANTED:
390 rs->sr_text = "ldap server busy";
393 rs->sr_err = LDAP_OTHER;
394 rs->sr_text = "internal error";
399 Debug( LDAP_DEBUG_TRACE,
400 LDAP_XSTRING(bdb_modrdn)
401 ": newSup(ndn=%s) not here!\n",
402 np_ndn->bv_val, 0, 0);
403 rs->sr_text = "new superior not found";
404 rs->sr_err = LDAP_NO_SUCH_OBJECT;
408 Debug( LDAP_DEBUG_TRACE,
409 LDAP_XSTRING(bdb_modrdn)
410 ": wr to new parent OK np=%p, id=%ld\n",
411 (void *) np, (long) np->e_id, 0 );
413 /* check newSuperior for "children" acl */
414 rs->sr_err = access_allowed( op, np, children,
415 NULL, ACL_WADD, NULL );
418 switch( opinfo.boi_err ) {
419 case DB_LOCK_DEADLOCK:
420 case DB_LOCK_NOTGRANTED:
424 Debug( LDAP_DEBUG_TRACE,
425 LDAP_XSTRING(bdb_modrdn)
426 ": no wr to newSup children\n",
428 rs->sr_text = "no write access to new superior's children";
429 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
433 if ( is_entry_alias( np ) ) {
434 /* parent is an alias, don't allow add */
435 Debug( LDAP_DEBUG_TRACE,
436 LDAP_XSTRING(bdb_modrdn)
437 ": entry is alias\n",
439 rs->sr_text = "new superior is an alias";
440 rs->sr_err = LDAP_ALIAS_PROBLEM;
444 if ( is_entry_referral( np ) ) {
445 /* parent is a referral, don't allow add */
446 Debug( LDAP_DEBUG_TRACE,
447 LDAP_XSTRING(bdb_modrdn)
448 ": entry is referral\n",
450 rs->sr_text = "new superior is a referral";
451 rs->sr_err = LDAP_OTHER;
458 /* no parent, modrdn entry directly under root */
459 if ( be_issuffix( op->o_bd, (struct berval *)&slap_empty_bv )
460 || be_isupdate( op ) ) {
461 np = (Entry *)&slap_entry_root;
463 /* check parent for "children" acl */
464 rs->sr_err = access_allowed( op, np,
465 children, NULL, ACL_WADD, NULL );
469 if ( ! rs->sr_err ) {
470 switch( opinfo.boi_err ) {
471 case DB_LOCK_DEADLOCK:
472 case DB_LOCK_NOTGRANTED:
476 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
477 Debug( LDAP_DEBUG_TRACE,
478 "no access to new superior\n",
481 "no write access to new superior's children";
487 Debug( LDAP_DEBUG_TRACE,
488 LDAP_XSTRING(bdb_modrdn)
489 ": wr to new parent's children OK\n",
492 new_parent_dn = np_dn;
495 /* Build target dn and make sure target entry doesn't exist already. */
496 if (!new_dn.bv_val) {
497 build_new_dn( &new_dn, new_parent_dn, &op->oq_modrdn.rs_newrdn, NULL );
500 if (!new_ndn.bv_val) {
501 struct berval bv = {0, NULL};
502 dnNormalize( 0, NULL, NULL, &new_dn, &bv, op->o_tmpmemctx );
503 ber_dupbv( &new_ndn, &bv );
506 Debug( LDAP_DEBUG_TRACE, LDAP_XSTRING(bdb_modrdn) ": new ndn=%s\n",
507 new_ndn.bv_val, 0, 0 );
509 /* Shortcut the search */
510 nei = neip ? neip : eip;
511 rs->sr_err = bdb_cache_find_ndn ( op, ltid, &new_ndn, &nei );
512 if ( nei ) bdb_cache_entryinfo_unlock( nei );
513 switch( rs->sr_err ) {
514 case DB_LOCK_DEADLOCK:
515 case DB_LOCK_NOTGRANTED:
520 rs->sr_err = LDAP_ALREADY_EXISTS;
523 rs->sr_err = LDAP_OTHER;
524 rs->sr_text = "internal error";
528 assert( op->orr_modlist != NULL );
530 if( op->o_preread ) {
531 if( preread_ctrl == NULL ) {
532 preread_ctrl = &ctrls[num_ctrls++];
533 ctrls[num_ctrls] = NULL;
535 if( slap_read_controls( op, rs, e,
536 &slap_pre_read_bv, preread_ctrl ) )
538 Debug( LDAP_DEBUG_TRACE,
539 "<=- " LDAP_XSTRING(bdb_modrdn)
540 ": post-read failed!\n", 0, 0, 0 );
545 /* nested transaction */
546 rs->sr_err = TXN_BEGIN( bdb->bi_dbenv, ltid, <2, bdb->bi_db_opflags );
548 if( rs->sr_err != 0 ) {
549 Debug( LDAP_DEBUG_TRACE,
550 LDAP_XSTRING(bdb_modrdn)
551 ": txn_begin(2) failed: %s (%d)\n",
552 db_strerror(rs->sr_err), rs->sr_err, 0 );
553 rs->sr_err = LDAP_OTHER;
554 rs->sr_text = "internal error";
559 rs->sr_err = bdb_dn2id_delete( op, lt2, eip, e );
560 if ( rs->sr_err != 0 ) {
561 Debug(LDAP_DEBUG_TRACE,
562 "<=- " LDAP_XSTRING(bdb_modrdn)
563 ": dn2id del failed: %s (%d)\n",
564 db_strerror(rs->sr_err), rs->sr_err, 0 );
565 switch( rs->sr_err ) {
566 case DB_LOCK_DEADLOCK:
567 case DB_LOCK_NOTGRANTED:
570 rs->sr_err = LDAP_OTHER;
571 rs->sr_text = "DN index delete fail";
575 /* copy the entry, then override some fields */
577 dummy.e_name = new_dn;
578 dummy.e_nname = new_ndn;
579 dummy.e_attrs = NULL;
582 rs->sr_err = bdb_dn2id_add( op, lt2, neip ? neip : eip, &dummy );
583 if ( rs->sr_err != 0 ) {
584 Debug(LDAP_DEBUG_TRACE,
585 "<=- " LDAP_XSTRING(bdb_modrdn)
586 ": dn2id add failed: %s (%d)\n",
587 db_strerror(rs->sr_err), rs->sr_err, 0 );
588 switch( rs->sr_err ) {
589 case DB_LOCK_DEADLOCK:
590 case DB_LOCK_NOTGRANTED:
593 rs->sr_err = LDAP_OTHER;
594 rs->sr_text = "DN index add failed";
598 dummy.e_attrs = e->e_attrs;
601 rs->sr_err = bdb_modify_internal( op, lt2, op->orr_modlist, &dummy,
602 &rs->sr_text, textbuf, textlen );
603 if( rs->sr_err != LDAP_SUCCESS ) {
604 Debug(LDAP_DEBUG_TRACE,
605 "<=- " LDAP_XSTRING(bdb_modrdn)
606 ": modify failed: %s (%d)\n",
607 db_strerror(rs->sr_err), rs->sr_err, 0 );
608 if ( ( rs->sr_err == LDAP_INSUFFICIENT_ACCESS ) && opinfo.boi_err ) {
609 rs->sr_err = opinfo.boi_err;
611 if ( dummy.e_attrs == e->e_attrs ) dummy.e_attrs = NULL;
612 switch( rs->sr_err ) {
613 case DB_LOCK_DEADLOCK:
614 case DB_LOCK_NOTGRANTED:
621 rs->sr_err = bdb_id2entry_update( op->o_bd, lt2, &dummy );
622 if ( rs->sr_err != 0 ) {
623 Debug(LDAP_DEBUG_TRACE,
624 "<=- " LDAP_XSTRING(bdb_modrdn)
625 ": id2entry failed: %s (%d)\n",
626 db_strerror(rs->sr_err), rs->sr_err, 0 );
627 switch( rs->sr_err ) {
628 case DB_LOCK_DEADLOCK:
629 case DB_LOCK_NOTGRANTED:
632 rs->sr_err = LDAP_OTHER;
633 rs->sr_text = "entry update failed";
637 if ( p_ndn.bv_len != 0 ) {
638 parent_is_glue = is_entry_glue(p);
639 rs->sr_err = bdb_cache_children( op, lt2, p );
640 if ( rs->sr_err != DB_NOTFOUND ) {
641 switch( rs->sr_err ) {
642 case DB_LOCK_DEADLOCK:
643 case DB_LOCK_NOTGRANTED:
648 Debug(LDAP_DEBUG_ARGS,
649 "<=- " LDAP_XSTRING(bdb_modrdn)
650 ": has_children failed: %s (%d)\n",
651 db_strerror(rs->sr_err), rs->sr_err, 0 );
652 rs->sr_err = LDAP_OTHER;
653 rs->sr_text = "internal error";
658 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, p);
662 if ( TXN_COMMIT( lt2, 0 ) != 0 ) {
663 rs->sr_err = LDAP_OTHER;
664 rs->sr_text = "txn_commit(2) failed";
668 if( op->o_postread ) {
669 if( postread_ctrl == NULL ) {
670 postread_ctrl = &ctrls[num_ctrls++];
671 ctrls[num_ctrls] = NULL;
673 if( slap_read_controls( op, rs, &dummy,
674 &slap_post_read_bv, postread_ctrl ) )
676 Debug( LDAP_DEBUG_TRACE,
677 "<=- " LDAP_XSTRING(bdb_modrdn)
678 ": post-read failed!\n", 0, 0, 0 );
684 if(( rs->sr_err=TXN_ABORT( ltid )) != 0 ) {
685 rs->sr_text = "txn_abort (no-op) failed";
687 rs->sr_err = LDAP_X_NO_OPERATION;
693 rc = bdb_cache_modrdn( bdb, e, &op->orr_nnewrdn, &dummy, neip,
696 case DB_LOCK_DEADLOCK:
697 case DB_LOCK_NOTGRANTED:
700 dummy.e_attrs = NULL;
701 new_dn.bv_val = NULL;
702 new_ndn.bv_val = NULL;
704 if(( rs->sr_err=TXN_COMMIT( ltid, 0 )) != 0 ) {
705 rs->sr_text = "txn_commit failed";
707 rs->sr_err = LDAP_SUCCESS;
712 op->o_private = NULL;
714 if( rs->sr_err != LDAP_SUCCESS ) {
715 Debug( LDAP_DEBUG_TRACE,
716 LDAP_XSTRING(bdb_modrdn) ": %s : %s (%d)\n",
717 rs->sr_text, db_strerror(rs->sr_err), rs->sr_err );
718 rs->sr_err = LDAP_OTHER;
723 Debug(LDAP_DEBUG_TRACE,
724 LDAP_XSTRING(bdb_modrdn)
725 ": rdn modified%s id=%08lx dn=\"%s\"\n",
726 op->o_noop ? " (no-op)" : "",
727 dummy.e_id, op->o_req_dn.bv_val );
729 if( num_ctrls ) rs->sr_ctrls = ctrls;
732 if ( dummy.e_attrs ) {
733 attrs_free( dummy.e_attrs );
735 send_ldap_result( op, rs );
737 if( rs->sr_err == LDAP_SUCCESS && bdb->bi_txn_cp ) {
738 TXN_CHECKPOINT( bdb->bi_dbenv,
739 bdb->bi_txn_cp_kbyte, bdb->bi_txn_cp_min, 0 );
742 if ( rs->sr_err == LDAP_SUCCESS && parent_is_glue && parent_is_leaf ) {
743 op->o_delete_glue_parent = 1;
747 if( new_dn.bv_val != NULL ) free( new_dn.bv_val );
748 if( new_ndn.bv_val != NULL ) free( new_ndn.bv_val );
750 /* LDAP v3 Support */
752 /* free new parent and reader lock */
753 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, np);
757 /* free parent and reader lock */
758 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, p);
763 bdb_unlocked_cache_return_entry_w( &bdb->bi_cache, e);
769 op->o_private = NULL;
771 if( preread_ctrl != NULL ) {
772 slap_sl_free( (*preread_ctrl)->ldctl_value.bv_val, op->o_tmpmemctx );
773 slap_sl_free( *preread_ctrl, op->o_tmpmemctx );
775 if( postread_ctrl != NULL ) {
776 slap_sl_free( (*postread_ctrl)->ldctl_value.bv_val, op->o_tmpmemctx );
777 slap_sl_free( *postread_ctrl, op->o_tmpmemctx );