View | Details | Raw Unified | Return to bug 29482 | Differences between
and this patch

Collapse All | Expand All

(-)a/branches/ucs-3.2/ucs-3.2-0/management/univention-ldap/conffiles/etc/ldap/slapd.conf.d/60univention-ldap-server_acl-master (-2 / +2 lines)
 Lines 6-14   if baseConfig['ldap/server/type']=="master": Link Here 
6
else:
6
else:
7
	usr="read"
7
	usr="read"
8
8
9
print 'sasl-regexp'
9
print 'authz-regexp'
10
print '    uid=(.*),cn=gssapi,cn=auth'
10
print '    uid=(.*),cn=gssapi,cn=auth'
11
print '    ldap://0.0.0.0:%s/"%s"??sub?uid=$1' % (ldap_port, ldap_base)
11
print '    ldap:///%s??sub?uid=$1' % (ldap_base,)
12
print
12
print
13
13
14
print 'access to attrs=userPassword'
14
print 'access to attrs=userPassword'
(-)a/branches/ucs-3.2/ucs-3.2-0/management/univention-ldap/conffiles/etc/ldap/slapd.conf.d/60univention-ldap-server_acl-slave (-2 / +2 lines)
 Lines 1-6    Link Here 
1
sasl-regexp
1
authz-regexp
2
    uid=(.*),cn=gssapi,cn=auth
2
    uid=(.*),cn=gssapi,cn=auth
3
    ldap:///"@%@ldap/base@%@"??sub?uid=$1
3
    ldap:///@%@ldap/base@%@??sub?uid=$1
4
4
5
# allow authentication 
5
# allow authentication 
6
access to attrs=userPassword
6
access to attrs=userPassword
(-)a/branches/ucs-3.2/ucs-3.2-0/management/univention-ldap/conffiles/etc/ldap/slapd.conf.d/70univention-ldap-server_acl-master-end (+1 lines)
 Lines 148-153   if configRegistry.is_false('ldap/acl/read/anonymous'): Link Here 
148
	if ldap_acl_read_anonymous_ips:
148
	if ldap_acl_read_anonymous_ips:
149
		for ip in ldap_acl_read_anonymous_ips.split(','):
149
		for ip in ldap_acl_read_anonymous_ips.split(','):
150
			print '   by peername.ip=%s read' % ip
150
			print '   by peername.ip=%s read' % ip
151
	print '   by anonymous auth'
151
else:
152
else:
152
	print '   by * read'
153
	print '   by * read'
153
154

Return to bug 29482