Hi.
I use LDAP server 389-ds, version 1.2 (http://www.port389.org/) and Samba 3.
I set up LTB and it works fine - I can change userPassword as well as Samba password.

Our security requests are that users should not reuse last 5 passwords. This cannot be set up with LTB, AFAIK, but should be set in LDAP server.

If I enable password syntax checking in 389-ds Admin console like this:
http://snag.gy/aqdCn.jpg

the LTB continue to report "Password was refused by the LDAP directory" even if I enter new password within these requests. I found out it reports LDAP error 19:
LDAP_CONSTRAINT_VIOLATION
(Indicates that the attribute value specified in a modify, add, or modify DN operation violates constraints placed on the attribute. The constraint can be one of size or content (string only, no binary).)

But, I can change password via Windows Ctrl-Alt-Del -> Change password.

Can someone please help me with this /point to what could be wrong?

My LTB conf settings:
http://ur1.ca/i7omf

Best regards
Robert Ludvik
_______________________________________________
ltb-users mailing list
[email protected]
http://lists.ltb-project.org/listinfo/ltb-users

Reply via email to