Re: sets and groupOfNames groups

2007-09-15 Thread Andreas Hasenack
Em Sáb, 2007-09-15 às 00:45 +0200, Pierangelo Masarati escreveu: Andreas Hasenack wrote: Now I want to be able to use nested groups, so I follow the FAQ and do a test with sets: access to dn.regex=^([^,]+,)?ou=sudoers,dc=example,dc=com$ attrs=children,entry,@sudoRole by

sets and groupOfNames groups

2007-09-14 Thread Andreas Hasenack
openldap-2.3.38 I have this ACL: access to dn.regex=^([^,]+,)?ou=sudoers,dc=example,dc=com$ attrs=children,entry,@sudoRole by group.exact=cn=Sudo Admins,ou=System Groups,dc=example,dc=com write by * read The group is: dn: cn=Sudo Admins,ou=System Groups,dc=example,dc=com cn: Sudo Admins

Re: sets and groupOfNames groups

2007-09-14 Thread Pierangelo Masarati
Andreas Hasenack wrote: openldap-2.3.38 BTW, 2.3.39 will fix a memory-related issue with sets; from CHANGES: Fixed slapd ACL sets memory handling (ITS#4873) If you really plan to use sets in production you might want to import that fix: 1.24.2.5 to 1.24.2.6. p. Ing. Pierangelo