[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: Urgent: New User with context CSN permission





--On Thursday, February 13, 2020 5:50 PM +0530 keerthi krishnan <keerthikrishnan1369@gmail.com> wrote:



access to dn.base="dc=domain,dc=com" attrs=entry,children,contextcsn by
dn.exact="uid=replmonitor,dc=domain,dc=com" read by * none

Access statements without the context of the full configuration provide no real information that can be acted upon the majority of the time. I would also note that "by * none" at the end of an ACL is implicit, as discussed in the slapd.access(5) man page, so there is no reason to explicitly list it.

If you want help with your ACLs, you need to provide your configuration (minus passwords).

Regards,
Quanah



--

Quanah Gibson-Mount
Product Architect
Symas Corporation
Packaged, certified, and supported LDAP solutions powered by OpenLDAP:
<http://www.symas.com>