ACLs to allow users to traverse DIT down to their own entry, lock down everything else

2011-01-05 Thread Andreas Ntaflos
Hi list, I've been fighting with ACLs for quite a bit now and most things seems to work but I not quite everything I need. I am using OpenLDAP 2.4.21 (2.4.21-0ubuntu5.3) on Ubuntu 10.04. A DN for a typical user looks like this (horribly long):

Re: ACLs to allow users to traverse DIT down to their own entry, lock down everything else

2011-01-05 Thread Howard Chu
Andreas Ntaflos wrote: So what do I need to do so users can specify dc=example,dc=com as search base and traverse the directory tree down to their own DN entry? Read the Operation Requirements section of slapd.access(5). -- -- Howard Chu CTO, Symas Corp. http://www.symas.com