DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG 
RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT
<http://nagoya.apache.org/bugzilla/show_bug.cgi?id=17599>.
ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND 
INSERTED IN THE BUG DATABASE.

http://nagoya.apache.org/bugzilla/show_bug.cgi?id=17599

auth ldap binds as user and loses access rights





------- Additional Comments From [EMAIL PROTECTED]  2003-10-22 02:54 -------
I have been able to reproduce this issue in 2.0.47 when attempting a "require
group" directive. It appears the bind is done by the provided credentials. Next,
there is a bind with the user/password to verify they are correct. Finally, a
compare is done to verify group membership but it is still using the user bind
connection to do the compare and it fails for insufficient access. This appears
to only be an issue (for me) when not using anonymous bind and where the user
account does not have authority to perform a compare.

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to