Access permissions to add new entries

2013-02-25 Thread Philip Colmer
Hi I wanted to run a scenario past everyone to see if there is a better approach to the one I am thinking of implementing. The OU structure we have is: +- dc=example,dc=com +-- ou=accounts +--- ou=subsidiary1 +--- ou=subsidiary2 +--- ou=special +--- ou=staff +--- ou=the-rest I have two groups

slapd, SASL passthrough and changing passwords smashing userPassword

2013-02-25 Thread Tim Watts
Hi folks, I hope this is a quick and easy one :) I have slapd 2.4.23 working with passthrough to MIT kerberos via saslauthd. I use smbkrb5pwd (a hack on smbk5pwd) to pass password changes through to kerberos (creating or modifying the target principle as required) To enable a particular

Re: slapd, SASL passthrough and changing passwords smashing userPassword

2013-02-25 Thread Dan White
On 02/25/13 14:53 +, Tim Watts wrote: I have slapd 2.4.23 working with passthrough to MIT kerberos via saslauthd. I use smbkrb5pwd (a hack on smbk5pwd) to pass password changes through to kerberos (creating or modifying the target principle as required) To enable a particular user to

Re: slapd, SASL passthrough and changing passwords smashing userPassword

2013-02-25 Thread Howard Chu
Tim Watts wrote: Hi folks, I hope this is a quick and easy one :) I have slapd 2.4.23 working with passthrough to MIT kerberos via saslauthd. I use smbkrb5pwd (a hack on smbk5pwd) to pass password changes through to kerberos (creating or modifying the target principle as required) I haven't

Re: slapd, SASL passthrough and changing passwords smashing userPassword

2013-02-25 Thread Tim Watts
On 25/02/13 15:17, Dan White wrote: On 02/25/13 14:53 +, Tim Watts wrote: I have slapd 2.4.23 working with passthrough to MIT kerberos via saslauthd. I use smbkrb5pwd (a hack on smbk5pwd) to pass password changes through to kerberos (creating or modifying the target principle as required)

Re: slapd, SASL passthrough and changing passwords smashing userPassword

2013-02-25 Thread Tim Watts
Hi Howard, Thanks for taking the time to reply to my stupid questions ;-o On 25/02/13 15:37, Howard Chu wrote: Tim Watts wrote: Hi folks, I hope this is a quick and easy one :) I have slapd 2.4.23 working with passthrough to MIT kerberos via saslauthd. I use smbkrb5pwd (a hack on smbk5pwd)