"Rivera, Denis" <[EMAIL PROTECTED]> wrote:
> Alan,
> I'd first would like to extend my gratitude for answering my email.

  No need to be nice... I don't bruise easily.

> Alan, the "User" "Change Password" "Administrator" etc., are already part of
> the LDAP schema (under the attribute securityRole) e.g.
> 
> Uid=testuser
>               Attribute               Value
>               securityRole    Users

  The value should have the operator in it.  e.g. +=Users

> I've modified the file ldap.attrmap as follow (this is the only change I've
> made)
> 
> replyItem     Login-LAT-Group securityRole

  That should work.

> I thought by modifying this line to match the LDAP attribute would return
> all values for the user (testuser) in the LDAP schema.

  No.  The operators are still important.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to