--On Saturday, March 11, 2023 7:51 PM +0100 Stefan Kania <ste...@kania-online.de> wrote:

For a rootdn
dn: olcDatabase={2}mdb,cn=config
changetype: modify
replace: olcRootPW

This makes sense, since you can't use the ldapv3 password modify operation to update this password value.

and a posix or simpleSecurityObject:
dn: uid=repl-user,ou=users,dc=example,dc=net
changetype: modify
replace: userPassword

This doesn't make sense. You should be using an ldapv3 password modify operation on the user account in question and letting the server do the hashing (and also allows password policies, if deployed, to be used).


Reply via email to