1 /* modrdn.c - bdb backend modrdn routine */
3 /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
5 * Copyright 2000-2006 The OpenLDAP Foundation.
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted only as authorized by the OpenLDAP
12 * A copy of this license is available in the file LICENSE in the
13 * top-level directory of the distribution or, alternatively, at
14 * <http://www.OpenLDAP.org/license.html>.
20 #include <ac/string.h>
25 bdb_modrdn( Operation *op, SlapReply *rs )
27 struct bdb_info *bdb = (struct bdb_info *) op->o_bd->be_private;
28 AttributeDescription *children = slap_schema.si_ad_children;
29 AttributeDescription *entry = slap_schema.si_ad_entry;
30 struct berval p_dn, p_ndn;
31 struct berval new_dn = {0, NULL}, new_ndn = {0, NULL};
34 EntryInfo *ei = NULL, *eip = NULL, *nei = NULL, *neip = NULL;
35 /* LDAP v2 supporting correct attribute handling. */
36 char textbuf[SLAP_TEXT_BUFLEN];
37 size_t textlen = sizeof textbuf;
38 DB_TXN *ltid = NULL, *lt2;
39 struct bdb_op_info opinfo = {0};
42 Entry *np = NULL; /* newSuperior Entry */
43 struct berval *np_dn = NULL; /* newSuperior dn */
44 struct berval *np_ndn = NULL; /* newSuperior ndn */
45 struct berval *new_parent_dn = NULL; /* np_dn, p_dn, or NULL */
47 int manageDSAit = get_manageDSAit( op );
50 DB_LOCK lock, plock, nplock;
54 LDAPControl **preread_ctrl = NULL;
55 LDAPControl **postread_ctrl = NULL;
56 LDAPControl *ctrls[SLAP_MAX_RESPONSE_CONTROLS];
61 int parent_is_glue = 0;
62 int parent_is_leaf = 0;
64 ctrls[num_ctrls] = NULL;
66 Debug( LDAP_DEBUG_TRACE, "==>" LDAP_XSTRING(bdb_modrdn) "(%s,%s,%s)\n",
67 op->o_req_dn.bv_val,op->oq_modrdn.rs_newrdn.bv_val,
68 op->oq_modrdn.rs_newSup ? op->oq_modrdn.rs_newSup->bv_val : "NULL" );
70 if ( !SLAP_SHADOW( op->o_bd ))
71 slap_mods_opattrs( op, &op->orr_modlist, 1 );
74 retry: /* transaction retry */
75 if ( dummy.e_attrs ) {
76 attrs_free( dummy.e_attrs );
80 bdb_unlocked_cache_return_entry_w(&bdb->bi_cache, e);
84 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, p);
88 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, np);
91 Debug( LDAP_DEBUG_TRACE, "==>" LDAP_XSTRING(bdb_modrdn)
92 ": retrying...\n", 0, 0, 0 );
94 rs->sr_err = TXN_ABORT( ltid );
97 op->o_do_not_cache = opinfo.boi_acl_cache;
98 if( rs->sr_err != 0 ) {
99 rs->sr_err = LDAP_OTHER;
100 rs->sr_text = "internal error";
103 if ( op->o_abandon ) {
104 rs->sr_err = SLAPD_ABANDON;
109 ldap_pvt_thread_yield();
110 bdb_trans_backoff( ++num_retries );
113 /* begin transaction */
114 rs->sr_err = TXN_BEGIN( bdb->bi_dbenv, NULL, <id,
115 bdb->bi_db_opflags );
117 if( rs->sr_err != 0 ) {
118 Debug( LDAP_DEBUG_TRACE,
119 LDAP_XSTRING(bdb_modrdn) ": txn_begin failed: "
120 "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
121 rs->sr_err = LDAP_OTHER;
122 rs->sr_text = "internal error";
126 locker = TXN_ID ( ltid );
128 opinfo.boi_bdb = op->o_bd;
129 opinfo.boi_txn = ltid;
130 opinfo.boi_locker = locker;
132 opinfo.boi_acl_cache = op->o_do_not_cache;
133 op->o_private = &opinfo;
136 rs->sr_err = bdb_dn2entry( op, ltid, &op->o_req_ndn, &ei, 1,
139 switch( rs->sr_err ) {
143 case DB_LOCK_DEADLOCK:
144 case DB_LOCK_NOTGRANTED:
147 rs->sr_text = "ldap server busy";
150 rs->sr_err = LDAP_OTHER;
151 rs->sr_text = "internal error";
156 /* FIXME: dn2entry() should return non-glue entry */
157 if (( rs->sr_err == DB_NOTFOUND ) ||
158 ( !manageDSAit && e && is_entry_glue( e )))
161 rs->sr_matched = ch_strdup( e->e_dn );
162 rs->sr_ref = is_entry_referral( e )
163 ? get_entry_referrals( op, e )
165 bdb_unlocked_cache_return_entry_r( &bdb->bi_cache, e);
169 rs->sr_ref = referral_rewrite( default_referral, NULL,
170 &op->o_req_dn, LDAP_SCOPE_DEFAULT );
173 rs->sr_err = LDAP_REFERRAL;
174 send_ldap_result( op, rs );
176 ber_bvarray_free( rs->sr_ref );
177 free( (char *)rs->sr_matched );
179 rs->sr_matched = NULL;
184 if ( get_assert( op ) &&
185 ( test_filter( op, e, get_assertion( op )) != LDAP_COMPARE_TRUE ))
187 rs->sr_err = LDAP_ASSERTION_FAILED;
191 /* check write on old entry */
192 rs->sr_err = access_allowed( op, e, entry, NULL, ACL_WRITE, NULL );
193 if ( ! rs->sr_err ) {
194 switch( opinfo.boi_err ) {
195 case DB_LOCK_DEADLOCK:
196 case DB_LOCK_NOTGRANTED:
200 Debug( LDAP_DEBUG_TRACE, "no access to entry\n", 0,
202 rs->sr_text = "no write access to old entry";
203 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
208 rs->sr_err = bdb_cache_children( op, ltid, e );
209 if ( rs->sr_err != DB_NOTFOUND ) {
210 switch( rs->sr_err ) {
211 case DB_LOCK_DEADLOCK:
212 case DB_LOCK_NOTGRANTED:
215 Debug(LDAP_DEBUG_ARGS,
216 "<=- " LDAP_XSTRING(bdb_modrdn)
218 op->o_req_dn.bv_val, 0, 0);
219 rs->sr_err = LDAP_NOT_ALLOWED_ON_NONLEAF;
220 rs->sr_text = "subtree rename not supported";
223 Debug(LDAP_DEBUG_ARGS,
224 "<=- " LDAP_XSTRING(bdb_modrdn)
225 ": has_children failed: %s (%d)\n",
226 db_strerror(rs->sr_err), rs->sr_err, 0 );
227 rs->sr_err = LDAP_OTHER;
228 rs->sr_text = "internal error";
232 ei->bei_state |= CACHE_ENTRY_NO_KIDS;
235 if (!manageDSAit && is_entry_referral( e ) ) {
236 /* parent is a referral, don't allow add */
237 rs->sr_ref = get_entry_referrals( op, e );
239 Debug( LDAP_DEBUG_TRACE, LDAP_XSTRING(bdb_modrdn)
240 ": entry %s is referral\n", e->e_dn, 0, 0 );
242 rs->sr_err = LDAP_REFERRAL,
243 rs->sr_matched = e->e_name.bv_val;
244 send_ldap_result( op, rs );
246 ber_bvarray_free( rs->sr_ref );
248 rs->sr_matched = NULL;
252 if ( be_issuffix( op->o_bd, &e->e_nname ) ) {
253 #ifdef BDB_MULTIPLE_SUFFIXES
254 /* Allow renaming one suffix entry to another */
255 p_ndn = slap_empty_bv;
257 /* There can only be one suffix entry */
258 rs->sr_err = LDAP_NAMING_VIOLATION;
259 rs->sr_text = "cannot rename suffix entry";
263 dnParent( &e->e_nname, &p_ndn );
266 if ( p_ndn.bv_len != 0 ) {
267 /* Make sure parent entry exist and we can write its
270 eip = ei->bei_parent;
271 rs->sr_err = bdb_cache_find_id( op, ltid,
272 eip->bei_id, &eip, 0, locker, &plock );
274 switch( rs->sr_err ) {
278 case DB_LOCK_DEADLOCK:
279 case DB_LOCK_NOTGRANTED:
282 rs->sr_text = "ldap server busy";
285 rs->sr_err = LDAP_OTHER;
286 rs->sr_text = "internal error";
292 Debug( LDAP_DEBUG_TRACE, LDAP_XSTRING(bdb_modrdn)
293 ": parent does not exist\n", 0, 0, 0);
294 rs->sr_err = LDAP_OTHER;
295 rs->sr_text = "old entry's parent does not exist";
299 p = (Entry *)&slap_entry_root;
302 /* check parent for "children" acl */
303 rs->sr_err = access_allowed( op, p,
305 op->oq_modrdn.rs_newSup == NULL ?
306 ACL_WRITE : ACL_WDEL,
312 if ( ! rs->sr_err ) {
313 switch( opinfo.boi_err ) {
314 case DB_LOCK_DEADLOCK:
315 case DB_LOCK_NOTGRANTED:
319 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
320 Debug( LDAP_DEBUG_TRACE, "no access to parent\n", 0,
322 rs->sr_text = "no write access to old parent's children";
326 Debug( LDAP_DEBUG_TRACE,
327 LDAP_XSTRING(bdb_modrdn) ": wr to children "
328 "of entry %s OK\n", p_ndn.bv_val, 0, 0 );
330 if ( p_ndn.bv_val == slap_empty_bv.bv_val ) {
331 p_dn = slap_empty_bv;
333 dnParent( &e->e_name, &p_dn );
336 Debug( LDAP_DEBUG_TRACE,
337 LDAP_XSTRING(bdb_modrdn) ": parent dn=%s\n",
340 new_parent_dn = &p_dn; /* New Parent unless newSuperior given */
342 if ( op->oq_modrdn.rs_newSup != NULL ) {
343 Debug( LDAP_DEBUG_TRACE,
344 LDAP_XSTRING(bdb_modrdn)
345 ": new parent \"%s\" requested...\n",
346 op->oq_modrdn.rs_newSup->bv_val, 0, 0 );
348 /* newSuperior == oldParent? */
349 if( dn_match( &p_ndn, op->oq_modrdn.rs_nnewSup ) ) {
350 Debug( LDAP_DEBUG_TRACE, "bdb_back_modrdn: "
351 "new parent \"%s\" same as the old parent \"%s\"\n",
352 op->oq_modrdn.rs_newSup->bv_val, p_dn.bv_val, 0 );
353 op->oq_modrdn.rs_newSup = NULL; /* ignore newSuperior */
357 /* There's a BDB_MULTIPLE_SUFFIXES case here that this code doesn't
358 * support. E.g., two suffixes dc=foo,dc=com and dc=bar,dc=net.
359 * We do not allow modDN
363 * and we probably should. But since MULTIPLE_SUFFIXES is deprecated
364 * I'm ignoring this problem for now.
366 if ( op->oq_modrdn.rs_newSup != NULL ) {
367 if ( op->oq_modrdn.rs_newSup->bv_len ) {
368 np_dn = op->oq_modrdn.rs_newSup;
369 np_ndn = op->oq_modrdn.rs_nnewSup;
371 /* newSuperior == oldParent? - checked above */
372 /* newSuperior == entry being moved?, if so ==> ERROR */
373 if ( dnIsSuffix( np_ndn, &e->e_nname )) {
374 rs->sr_err = LDAP_NO_SUCH_OBJECT;
375 rs->sr_text = "new superior not found";
378 /* Get Entry with dn=newSuperior. Does newSuperior exist? */
380 rs->sr_err = bdb_dn2entry( op, ltid, np_ndn,
381 &neip, 0, locker, &nplock );
383 switch( rs->sr_err ) {
384 case 0: np = neip->bei_e;
387 case DB_LOCK_DEADLOCK:
388 case DB_LOCK_NOTGRANTED:
391 rs->sr_text = "ldap server busy";
394 rs->sr_err = LDAP_OTHER;
395 rs->sr_text = "internal error";
400 Debug( LDAP_DEBUG_TRACE,
401 LDAP_XSTRING(bdb_modrdn)
402 ": newSup(ndn=%s) not here!\n",
403 np_ndn->bv_val, 0, 0);
404 rs->sr_text = "new superior not found";
405 rs->sr_err = LDAP_NO_SUCH_OBJECT;
409 Debug( LDAP_DEBUG_TRACE,
410 LDAP_XSTRING(bdb_modrdn)
411 ": wr to new parent OK np=%p, id=%ld\n",
412 (void *) np, (long) np->e_id, 0 );
414 /* check newSuperior for "children" acl */
415 rs->sr_err = access_allowed( op, np, children,
416 NULL, ACL_WADD, NULL );
419 switch( opinfo.boi_err ) {
420 case DB_LOCK_DEADLOCK:
421 case DB_LOCK_NOTGRANTED:
425 Debug( LDAP_DEBUG_TRACE,
426 LDAP_XSTRING(bdb_modrdn)
427 ": no wr to newSup children\n",
429 rs->sr_text = "no write access to new superior's children";
430 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
434 if ( is_entry_alias( np ) ) {
435 /* parent is an alias, don't allow add */
436 Debug( LDAP_DEBUG_TRACE,
437 LDAP_XSTRING(bdb_modrdn)
438 ": entry is alias\n",
440 rs->sr_text = "new superior is an alias";
441 rs->sr_err = LDAP_ALIAS_PROBLEM;
445 if ( is_entry_referral( np ) ) {
446 /* parent is a referral, don't allow add */
447 Debug( LDAP_DEBUG_TRACE,
448 LDAP_XSTRING(bdb_modrdn)
449 ": entry is referral\n",
451 rs->sr_text = "new superior is a referral";
452 rs->sr_err = LDAP_OTHER;
459 /* no parent, modrdn entry directly under root */
460 if ( be_issuffix( op->o_bd, (struct berval *)&slap_empty_bv )
461 || be_isupdate( op ) ) {
462 np = (Entry *)&slap_entry_root;
464 /* check parent for "children" acl */
465 rs->sr_err = access_allowed( op, np,
466 children, NULL, ACL_WADD, NULL );
470 if ( ! rs->sr_err ) {
471 switch( opinfo.boi_err ) {
472 case DB_LOCK_DEADLOCK:
473 case DB_LOCK_NOTGRANTED:
477 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
478 Debug( LDAP_DEBUG_TRACE,
479 "no access to new superior\n",
482 "no write access to new superior's children";
488 Debug( LDAP_DEBUG_TRACE,
489 LDAP_XSTRING(bdb_modrdn)
490 ": wr to new parent's children OK\n",
493 new_parent_dn = np_dn;
496 /* Build target dn and make sure target entry doesn't exist already. */
497 if (!new_dn.bv_val) {
498 build_new_dn( &new_dn, new_parent_dn, &op->oq_modrdn.rs_newrdn, NULL );
501 if (!new_ndn.bv_val) {
502 struct berval bv = {0, NULL};
503 dnNormalize( 0, NULL, NULL, &new_dn, &bv, op->o_tmpmemctx );
504 ber_dupbv( &new_ndn, &bv );
507 Debug( LDAP_DEBUG_TRACE, LDAP_XSTRING(bdb_modrdn) ": new ndn=%s\n",
508 new_ndn.bv_val, 0, 0 );
510 /* Shortcut the search */
511 nei = neip ? neip : eip;
512 rs->sr_err = bdb_cache_find_ndn ( op, ltid, &new_ndn, &nei );
513 if ( nei ) bdb_cache_entryinfo_unlock( nei );
514 switch( rs->sr_err ) {
515 case DB_LOCK_DEADLOCK:
516 case DB_LOCK_NOTGRANTED:
521 rs->sr_err = LDAP_ALREADY_EXISTS;
524 rs->sr_err = LDAP_OTHER;
525 rs->sr_text = "internal error";
529 assert( op->orr_modlist != NULL );
531 if( op->o_preread ) {
532 if( preread_ctrl == NULL ) {
533 preread_ctrl = &ctrls[num_ctrls++];
534 ctrls[num_ctrls] = NULL;
536 if( slap_read_controls( op, rs, e,
537 &slap_pre_read_bv, preread_ctrl ) )
539 Debug( LDAP_DEBUG_TRACE,
540 "<=- " LDAP_XSTRING(bdb_modrdn)
541 ": post-read failed!\n", 0, 0, 0 );
546 /* nested transaction */
547 rs->sr_err = TXN_BEGIN( bdb->bi_dbenv, ltid, <2, bdb->bi_db_opflags );
549 if( rs->sr_err != 0 ) {
550 Debug( LDAP_DEBUG_TRACE,
551 LDAP_XSTRING(bdb_modrdn)
552 ": txn_begin(2) failed: %s (%d)\n",
553 db_strerror(rs->sr_err), rs->sr_err, 0 );
554 rs->sr_err = LDAP_OTHER;
555 rs->sr_text = "internal error";
560 rs->sr_err = bdb_dn2id_delete( op, lt2, eip, e );
561 if ( rs->sr_err != 0 ) {
562 Debug(LDAP_DEBUG_TRACE,
563 "<=- " LDAP_XSTRING(bdb_modrdn)
564 ": dn2id del failed: %s (%d)\n",
565 db_strerror(rs->sr_err), rs->sr_err, 0 );
566 switch( rs->sr_err ) {
567 case DB_LOCK_DEADLOCK:
568 case DB_LOCK_NOTGRANTED:
571 rs->sr_err = LDAP_OTHER;
572 rs->sr_text = "DN index delete fail";
576 /* copy the entry, then override some fields */
578 dummy.e_name = new_dn;
579 dummy.e_nname = new_ndn;
580 dummy.e_attrs = NULL;
583 rs->sr_err = bdb_dn2id_add( op, lt2, neip ? neip : eip, &dummy );
584 if ( rs->sr_err != 0 ) {
585 Debug(LDAP_DEBUG_TRACE,
586 "<=- " LDAP_XSTRING(bdb_modrdn)
587 ": dn2id add failed: %s (%d)\n",
588 db_strerror(rs->sr_err), rs->sr_err, 0 );
589 switch( rs->sr_err ) {
590 case DB_LOCK_DEADLOCK:
591 case DB_LOCK_NOTGRANTED:
594 rs->sr_err = LDAP_OTHER;
595 rs->sr_text = "DN index add failed";
599 dummy.e_attrs = e->e_attrs;
602 rs->sr_err = bdb_modify_internal( op, lt2, op->orr_modlist, &dummy,
603 &rs->sr_text, textbuf, textlen );
604 if( rs->sr_err != LDAP_SUCCESS ) {
605 Debug(LDAP_DEBUG_TRACE,
606 "<=- " LDAP_XSTRING(bdb_modrdn)
607 ": modify failed: %s (%d)\n",
608 db_strerror(rs->sr_err), rs->sr_err, 0 );
609 if ( ( rs->sr_err == LDAP_INSUFFICIENT_ACCESS ) && opinfo.boi_err ) {
610 rs->sr_err = opinfo.boi_err;
612 if ( dummy.e_attrs == e->e_attrs ) dummy.e_attrs = NULL;
613 switch( rs->sr_err ) {
614 case DB_LOCK_DEADLOCK:
615 case DB_LOCK_NOTGRANTED:
622 rs->sr_err = bdb_id2entry_update( op->o_bd, lt2, &dummy );
623 if ( rs->sr_err != 0 ) {
624 Debug(LDAP_DEBUG_TRACE,
625 "<=- " LDAP_XSTRING(bdb_modrdn)
626 ": id2entry failed: %s (%d)\n",
627 db_strerror(rs->sr_err), rs->sr_err, 0 );
628 switch( rs->sr_err ) {
629 case DB_LOCK_DEADLOCK:
630 case DB_LOCK_NOTGRANTED:
633 rs->sr_err = LDAP_OTHER;
634 rs->sr_text = "entry update failed";
638 if ( p_ndn.bv_len != 0 ) {
639 parent_is_glue = is_entry_glue(p);
640 rs->sr_err = bdb_cache_children( op, lt2, p );
641 if ( rs->sr_err != DB_NOTFOUND ) {
642 switch( rs->sr_err ) {
643 case DB_LOCK_DEADLOCK:
644 case DB_LOCK_NOTGRANTED:
649 Debug(LDAP_DEBUG_ARGS,
650 "<=- " LDAP_XSTRING(bdb_modrdn)
651 ": has_children failed: %s (%d)\n",
652 db_strerror(rs->sr_err), rs->sr_err, 0 );
653 rs->sr_err = LDAP_OTHER;
654 rs->sr_text = "internal error";
659 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, p);
663 if ( TXN_COMMIT( lt2, 0 ) != 0 ) {
664 rs->sr_err = LDAP_OTHER;
665 rs->sr_text = "txn_commit(2) failed";
669 if( op->o_postread ) {
670 if( postread_ctrl == NULL ) {
671 postread_ctrl = &ctrls[num_ctrls++];
672 ctrls[num_ctrls] = NULL;
674 if( slap_read_controls( op, rs, &dummy,
675 &slap_post_read_bv, postread_ctrl ) )
677 Debug( LDAP_DEBUG_TRACE,
678 "<=- " LDAP_XSTRING(bdb_modrdn)
679 ": post-read failed!\n", 0, 0, 0 );
685 if(( rs->sr_err=TXN_ABORT( ltid )) != 0 ) {
686 rs->sr_text = "txn_abort (no-op) failed";
688 rs->sr_err = LDAP_X_NO_OPERATION;
694 rc = bdb_cache_modrdn( bdb, e, &op->orr_nnewrdn, &dummy, neip,
697 case DB_LOCK_DEADLOCK:
698 case DB_LOCK_NOTGRANTED:
701 dummy.e_attrs = NULL;
702 new_dn.bv_val = NULL;
703 new_ndn.bv_val = NULL;
705 if(( rs->sr_err=TXN_COMMIT( ltid, 0 )) != 0 ) {
706 rs->sr_text = "txn_commit failed";
708 rs->sr_err = LDAP_SUCCESS;
713 op->o_private = NULL;
715 if( rs->sr_err != LDAP_SUCCESS ) {
716 Debug( LDAP_DEBUG_TRACE,
717 LDAP_XSTRING(bdb_modrdn) ": %s : %s (%d)\n",
718 rs->sr_text, db_strerror(rs->sr_err), rs->sr_err );
719 rs->sr_err = LDAP_OTHER;
724 Debug(LDAP_DEBUG_TRACE,
725 LDAP_XSTRING(bdb_modrdn)
726 ": rdn modified%s id=%08lx dn=\"%s\"\n",
727 op->o_noop ? " (no-op)" : "",
728 dummy.e_id, op->o_req_dn.bv_val );
730 if( num_ctrls ) rs->sr_ctrls = ctrls;
733 if ( dummy.e_attrs ) {
734 attrs_free( dummy.e_attrs );
736 send_ldap_result( op, rs );
738 if( rs->sr_err == LDAP_SUCCESS && bdb->bi_txn_cp ) {
739 ldap_pvt_thread_yield();
740 TXN_CHECKPOINT( bdb->bi_dbenv,
741 bdb->bi_txn_cp_kbyte, bdb->bi_txn_cp_min, 0 );
744 if ( rs->sr_err == LDAP_SUCCESS && parent_is_glue && parent_is_leaf ) {
745 op->o_delete_glue_parent = 1;
749 if( new_dn.bv_val != NULL ) free( new_dn.bv_val );
750 if( new_ndn.bv_val != NULL ) free( new_ndn.bv_val );
752 /* LDAP v3 Support */
754 /* free new parent and reader lock */
755 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, np);
759 /* free parent and reader lock */
760 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, p);
765 bdb_unlocked_cache_return_entry_w( &bdb->bi_cache, e);
771 op->o_private = NULL;
773 if( preread_ctrl != NULL ) {
774 slap_sl_free( (*preread_ctrl)->ldctl_value.bv_val, op->o_tmpmemctx );
775 slap_sl_free( *preread_ctrl, op->o_tmpmemctx );
777 if( postread_ctrl != NULL ) {
778 slap_sl_free( (*postread_ctrl)->ldctl_value.bv_val, op->o_tmpmemctx );
779 slap_sl_free( *postread_ctrl, op->o_tmpmemctx );