[Date Prev][Date Next]
[Chronological]
[Thread]
[Top]
Exclude ppolicy attributes from accesslog
- To: openldap-technical@openldap.org
- Subject: Exclude ppolicy attributes from accesslog
- From: "Angel L. Mateo" <amateo@um.es>
- Date: Mon, 26 Oct 2015 14:28:40 +0100
- User-agent: Mozilla/5.0 (X11; Linux x86_64; rv:38.0) Gecko/20100101 Thunderbird/38.3.0
Hello,
I have an openldap server as an authentication backend for my organization.
I have a database with my users information. Is this database, I'm
using the ppolicy overlay to control my users passwords. I'm also using
the acceslog overlay (with its related cn=log database) to keep a log of
modifications.
With the ppolicy overlay every mistake of a user in an authentication
process triggers a modification in the user entry (for the
pwdFailureTime attribute) and this modification triggers a new entry the
accesslog database.
My problem is that this accesslog database is storing a huge amount of
this entries and I would like to not store these kind of updates.
So my question is if there is any way to exclude some attributes from
the accesslog tracking.
--
Angel L. Mateo Martínez
Sección de Telemática
Área de Tecnologías de la Información
y las Comunicaciones Aplicadas (ATICA)
http://www.um.es/atica
Tfo: 868887590
Fax: 868888337