[Date Prev][Date Next]
[Chronological]
[Thread]
[Top]
Re: commit: ldap/servers/slapd/back-ldap back-ldap.h bind.c config.c init.c
- To: ando@OpenLDAP.org
- Subject: Re: commit: ldap/servers/slapd/back-ldap back-ldap.h bind.c config.c init.c
- From: "Kurt D. Zeilenga" <Kurt@OpenLDAP.org>
- Date: Sat, 19 Jun 2004 10:05:06 -0700
- Cc: OpenLDAP Commit <openldap-commit2devel@OpenLDAP.org>
- In-reply-to: <200406191618.i5JGIQ7q050128@cantor.openldap.org>
- References: <200406191618.i5JGIQ7q050128@cantor.openldap.org>
At 09:18 AM 6/19/2004, ando@OpenLDAP.org wrote:
>Log Message:
>allow a hidden parameter to instruct the proxy that the SASL mech can do native authz; will disappear as soon as I can detect it automnatically
Hmmm... I don't think slapd(8) should be coded with this
kind of knowledge. If the user configures back-ldap
to use SASL proxy authorization, the user should configure
back-ldap to use a SASL mechanism which supports
proxy authorization. If the user fails to do this, that's
his problem.
Kurt