https://bugs.openldap.org/show_bug.cgi?id=9881

          Issue ID: 9881
           Summary: Ability to track last authentication for database
                    objects
           Product: OpenLDAP
           Version: unspecified
          Hardware: All
                OS: All
            Status: UNCONFIRMED
          Keywords: needs_review
          Severity: normal
          Priority: ---
         Component: slapd
          Assignee: b...@openldap.org
          Reporter: qua...@openldap.org
  Target Milestone: ---

For simple binds, we have the ability to track the last success via the
lastbind functionality (pwdLastSuccess attribute).  However this doesn't allow
one to see when an object that exists in a database last authenticated via
SASL.

It would be useful to add similar functionality for SASL binds.

This can be useful information that allows one to tell if an object is being
actively authenticated to (generally, users and system accounts, etc). 
Obviously if something is directly mapped to an identity that doesn't exist in
the underlying DB, that cannot be tracked.

-- 
You are receiving this mail because:
You are on the CC list for the issue.

Reply via email to