ldapsearch and inherit attributes

2017-10-19 Thread Sylvain
Hi, If "AAA" is the superior attribute of "BBB" and if I do ldapsearch uid=sylvain AAA. Results will include BBB attributes. Is this possible for ldapsearch to return only AAA ? Thanks, Sylvain

Re: Logging with LDIF format style

2016-11-18 Thread Sylvain
Oh yes, why not ? slapo-auditlog overlay seems to be nice too ;) Thanks, Sylvain 2016-11-17 18:47 GMT+01:00 Quanah Gibson-Mount : > --On Thursday, November 17, 2016 3:27 PM +0100 Sylvain < > debian.r...@gmail.com> wrote: > > >> >> >> Hi ! >> >> I

Logging with LDIF format style

2016-11-17 Thread Sylvain
Hi ! Is there any way (overlay, script, patch, ...) to have OpenLDAP log with LDIF format style for easier debugging ? Sylvain

Re: Duplicate dynamically an OU with another RDN ?

2014-05-02 Thread Sylvain
I didn't know rwm overlay, it sounds very cool, I'll try next week, many thanks :) Sylvain 2014-04-29 15:32 GMT+02:00 Dan White : > On 04/29/14 14:57 +0200, Sylvain wrote: > >> Hi ! >> >> I have a branch "ou=people" where RDN are in the form "

Duplicate dynamically an OU with another RDN ?

2014-04-29 Thread Sylvain
t allow us to define which login to use and so take "uid" attribute by default, not so cool. Is there any possibility in OpenLDAP to duplicate dynamically an OU with another RDN to have for example : uid=sylvain,ou=peoplebis,dc=example,dc=org ? Best regards, Sylvain

Re: Error message with memberof overlay

2013-09-03 Thread Sylvain
For information, I tryied on the latest OpenLDAP version (2.4.36) and I have the same troubles. Sylvain 2013/8/30 Sylvain > I think "-" is only for modify changetype. > I have tested anyway without success. > > > 2013/8/30 Ulrich Windl > >> >>>

Re: Error message with memberof overlay

2013-08-30 Thread Sylvain
I think "-" is only for modify changetype. I have tested anyway without success. 2013/8/30 Ulrich Windl > >>> Sylvain schrieb am 30.08.2013 um 12:41 in > Nachricht > : > > Hi ! > > > > In my logs, I saw lot of lines like this (we have a poor scr

Error message with memberof overlay

2013-08-30 Thread Sylvain
re the configuration of memberOf overlay : dn: olcOverlay={0}memberof, olcDatabase={1}hdb, cn=config olcMemberOfMemberAD: member olcMemberOfRefInt: FALSE olcOverlay: memberof olcMemberOfDangling: ignore objectClass: olcMemberOf objectClass: olcOverlayConfig olcMemberOfMemberOfAD: memberOf olcMemberOfGroupOC: groupOfNames We run OpenLDAP 2.4.31 replicated onto another host on Debian Wheezy. Do you have an idea on the problem ? Thanks, Sylvain

Re: Active Directory connected to OpenLDAP (master)

2012-04-03 Thread Sylvain
against its use), there might be no other alternative than to set > up Win/AD. > > Nick > > After tons of tractations, CIO accept the idea of Samba / OpenLDAP (OMG !) so I will not test pgina which, in final, doesn't mature enough to fulfill requirements. I will keep that product in my head for the next time... Thanks for the help ! Sylvain

Re: Active Directory connected to OpenLDAP (master)

2012-04-02 Thread Sylvain
Le 2 avril 2012 16:22, Nick Milas a écrit : > On 2/4/2012 3:49 μμ, Sylvain wrote: > > If there is other possibility to connect Windows authentication / >> authorization to OpenLDAP directly, I'm open... :) >> > > You can check: http://pgina.org/ > > If othe

Re: Active Directory connected to OpenLDAP (master)

2012-04-02 Thread Sylvain
Le 2 avril 2012 13:48, Nick Milas a écrit : > On 2/4/2012 2:29 μμ, Sylvain wrote: > > Currently, we've got an OpenLDAP which acts as a master..., we want to >> keep it. >> >> CIO ask us to deploy Windows with AD connected to our master OpenLDAP. >> > >

Re: Active Directory connected to OpenLDAP (master)

2012-04-02 Thread Sylvain
Hi ! http://lsc-project.org/wiki/documentation/2.0/configuration/service/sourceasyncldap This looks nice ! I will have a look deeper if there is no more clean and "automatic" solution. Thanks for advice ! Le 2 avril 2012 13:52, Sébastien Bahloul a écrit : > Hi Sylvain, >

Active Directory connected to OpenLDAP (master)

2012-04-02 Thread Sylvain
. Another solution could be use of referrals on the AD but I doubt ? Unclean solutions found are use of LSC or MIIS/FIM which are not real-time... A little help would be cool :) Best regards, Sylvain