[Date Prev][Date Next]
[Chronological]
[Thread]
[Top]
Re: Permission management with LDAP
- To: openldap-technical@openldap.org
- Subject: Re: Permission management with LDAP
- From: Dieter Klünter <dieter@dkluenter.de>
- Date: Fri, 28 Aug 2015 15:23:54 +0200
- In-reply-to: <EA7399765D4E5A44848CEFE00AE00BAC92DE69@IPA-EX-MBX2.ipa.stuttgart>
- Organization: AVCI
- References: <EA7399765D4E5A44848CEFE00AE00BAC92DCEF@IPA-EX-MBX2.ipa.stuttgart> <20150828093604.60a7e18e@pink.avci.de> <EA7399765D4E5A44848CEFE00AE00BAC92DE69@IPA-EX-MBX2.ipa.stuttgart>
Am Fri, 28 Aug 2015 12:16:48 +0000
schrieb "Fischer, Johannes" <johannes.fischer@ipa.fraunhofer.de>:
> Hi,
>
> I've tried your idea. It worked well with groupOfNames.
> Then I've tried to implement the memberof overlay for a user specific
> objectClass: Dn: olcOverlay={1}
> objectClass: olcConfig
> objectClass: olcOverlayConfig
> objectClass: olcMemberOf
> olcOverlay: memberof
> olcMemberOfDangling: ignore
> olcMemberOfRefInt: TRUE
> olcMemberOfGroupOC: GroupOfPermissions
> olcMemberOfMemberAD: permissionMember
> olcMemberOfMemberOfAD: member
>
> While adding the ldif, a "unable to find group objectClass="
> GroupOfPermissions "" The objectClass is available on the server and
> is a self created objectclass. Do I have to include some paths to
> announce the objectClass?
[...]
Check whether groupOfPermissions is loaded at all:
ldapsearch -x -H ldap://localhost -b cn=subschema -s base + \
| grep -A2 'groupOfPermisssions'
and what is the syntax of permissionmember and member?
-Dieter
--
Dieter Klünter | Systemberatung
http://sys4.de
GPG Key ID: E9ED159B
53°37'09,95"N
10°08'02,42"E