Le 18/03/16 10:06, Peter Jamieson a écrit : > Hi Emmanuel, > > What I want is effectively the peername restriction in openldap acl. > Is it worth me raising an improvement JIRA for this?
Definitively. > > Do you think it is something that could be done with a custom interceptor? > Is this detail available? The IP Peer is always available in the LdapSession, doing session.getIoSession().getRemoteAddress(). A custom interceptor would be a solution (or at least a workaround, until we find the time to completely review the ACL handing in ApacheDS...).
