From 3f4deb91789189521d577457bd6da27de8fd75b1 Mon Sep 17 00:00:00 2001
From: Valery Kharseko <vharseko@3a-systems.ru>
Date: Wed, 07 Oct 2026 08:31:10 +0000
Subject: [PATCH] [#1153] Parse the whole DN string, and build or split DN strings through DN instead of string operations (#1171)
---
opendj-server-legacy/src/main/java/org/opends/server/tools/upgrade/Upgrade.java | 7 +++++++
1 files changed, 7 insertions(+), 0 deletions(-)
diff --git a/opendj-server-legacy/src/main/java/org/opends/server/tools/upgrade/Upgrade.java b/opendj-server-legacy/src/main/java/org/opends/server/tools/upgrade/Upgrade.java
index f20ba21..e279c0a 100644
--- a/opendj-server-legacy/src/main/java/org/opends/server/tools/upgrade/Upgrade.java
+++ b/opendj-server-legacy/src/main/java/org/opends/server/tools/upgrade/Upgrade.java
@@ -654,6 +654,13 @@
REFERENTIAL_INTEGRITY_PLUGIN_FILTER,
ADD_REFERENTIAL_INTEGRITY_PRE_OPERATION_PLUGIN_TYPES));
+ /* See issue #1153: a DN is now read up to its end, ';' separating RDNs as ',' does, so a DN value that a client
+ * wrote with ';' gets another equality key than the one a previous version indexed. The value is found by
+ * reading the entries only, so the equality indexes of the attributes holding DNs are verified, and rebuilt
+ * where they miss a key, rather than rebuilt on every server. */
+ register("5.2.0",
+ verifyAndRebuildDNEqualityIndexes(INFO_UPGRADE_VERIFY_DN_EQUALITY_INDEXES.get()));
+
/*
* See issue #746. Builds before #661 (fixed in 5.1.2) shipped a duplicate
* org.openidentityplatform.opendj.opendj-server-legacy.jar alongside opendj.jar in lib/.
--
Gitblit v1.10.0