Brad Nicholes wrote:
if ((user == "John) || ((Group == "admin") && (ldap-group <stated-object> containsauth'ed_user) && ((ldap-attribute dept == "sales") || (file-group contains contains auth'ed_user)))) then auth_granted elseauth_denied
I've seen some custom auth modules whose config looks pretty much like this pseudo code. It's clumsy, but very powerful.
-- Brian Akins Lead Systems Engineer CNN Internet Technologies
