>>You can create any kind of entry. Here is an example:
>>dn: cn=ssp,ou=dsa,dc=example,dc=com
>>objectClass: top
>>objectClass: organizationalRole
>>objectClass: simpleSecurityObject
>>cn: ssp
>>userPassword: password
>>description: Self Service Password

You then need to configure OpenLDAP ACLs to allow this account to modify 
userPassword attribute (man slapd.access)

I created the simppleSecurityObj + added write access to

Email token procedure now get challenged by ppolicy for the history !

Many thanks for the help and pointers

Sebastian





--

Clément OUDOT

Consultant en logiciels libres, Expert infrastructure et sécurité

Savoir-faire Linux

137 boulevard de Magenta - 75010 PARIS

Blog: http://sflx.ca/coudot
_______________________________________________
ltb-users mailing list
[email protected]
https://lists.ltb-project.org/cgi-bin/mailman/listinfo/ltb-users

Reply via email to