Pierangelo Masarati
df745fc44f
clarify that the names of the configure statements are case-insensitive, despite style considerations lead to use uppercase for some and lowercase for others
2004-10-27 11:26:27 +00:00
Kurt Zeilenga
3819290f69
NEW_LOGGING
2004-10-19 03:18:03 +00:00
Kurt Zeilenga
54f6cf0b2c
Clarify which kinds of regexs are used.
2004-10-17 19:32:13 +00:00
Kurt Zeilenga
c41d0eaf7c
Add some chroot clarifications.
2004-10-13 01:29:50 +00:00
Howard Chu
1df6d76269
Add ppolicy_hash_cleartext config keyword, hash Adds as well as Modifies.
...
Changed check_pw_quality callback to pass entry's Attributes in final arg.
2004-10-07 04:07:17 +00:00
Pierangelo Masarati
c4123bb613
document submatches provided by non-regex <what> clauses
2004-10-06 23:19:53 +00:00
Pierangelo Masarati
796dce8657
add (and honor) a (configurable) baseObject to workaround ldap_entries view for RDBMSes that do not support UNION in views
2004-10-02 17:33:32 +00:00
Howard Chu
36b0611404
ITS#2588, ITS#2661 docs.
2004-09-28 09:02:31 +00:00
Kurt Zeilenga
424d673a6c
Update SSF comments
2004-09-13 20:43:33 +00:00
Pierangelo Masarati
04734610de
fix file:/// URI
2004-09-11 15:59:34 +00:00
Kurt Zeilenga
441ff00a06
Add default note
2004-09-10 22:55:59 +00:00
Kurt Zeilenga
3869e3b84d
Add localSSF slapd.conf(5) directive to set SSF associated
...
with ldapi:// sessions.
2004-09-10 22:35:24 +00:00
Kurt Zeilenga
cdd94c7aa1
Add "slapcat -a filter" support
2004-09-08 21:44:28 +00:00
Kurt Zeilenga
5f5d50aeb0
Add TLS cipher suite directive to ldap.conf(5)
2004-09-05 07:21:20 +00:00
Kurt Zeilenga
48cae5aed8
ITS#3310: Fix lud_host typo
2004-08-29 14:55:56 +00:00
Pierangelo Masarati
450b579971
cleanup docs
2004-08-24 09:27:45 +00:00
Pierangelo Masarati
f64de49b9f
update and cleanup
2004-08-21 12:28:54 +00:00
Pierangelo Masarati
905c8d580b
move proxycache configuration directives into slapo-pcache; add references in related man pages
2004-08-21 12:20:01 +00:00
Pierangelo Masarati
d606635ec1
cleanup
2004-08-21 09:47:50 +00:00
Pierangelo Masarati
7b4a51cc28
further improve loglevel selection
2004-07-29 12:39:51 +00:00
Pierangelo Masarati
f33b51832a
allow to use names to set loglevel
2004-07-29 00:10:03 +00:00
Pierangelo Masarati
9f6f5491fe
slightly rework user/operational attributes handling (including fixing a bug in the logic of the previous change to backend_operational()); cleanup; more improvements to slapo-rwm and back-relay
2004-07-25 23:16:40 +00:00
Howard Chu
6a00e8b326
More info about linearindex and slapadd
2004-07-22 22:52:47 +00:00
Howard Chu
dd7003cf9f
Added linearindex option for slapindex. Improves performance when database
...
size exceeds dbcache size by minimizing cache thrashing.
2004-07-22 22:32:37 +00:00
Howard Chu
f9f22058e7
ITS#3178 add "fasttool" option to disable transaction logging in tool mode
2004-07-22 22:14:35 +00:00
Howard Chu
76b2701a28
Minor cleanup
2004-07-22 22:13:13 +00:00
Pierangelo Masarati
52a49e0840
improve manual and make naming contexts uniform; NOTE: backwards compatibility not preserved
2004-07-20 00:46:20 +00:00
Pierangelo Masarati
fa694f0c3c
document rwm overlay
2004-07-18 21:45:20 +00:00
Pierangelo Masarati
23c5f4c09f
small improvements
2004-07-06 22:37:22 +00:00
Pierangelo Masarati
f64283ccae
beautify and clarify <what> clause usage and defaults
2004-06-28 14:33:35 +00:00
Pierangelo Masarati
44e8ffd4fe
clarify the use of regex and expand in by dn clauses
2004-06-28 10:22:48 +00:00
Pierangelo Masarati
d8eff4d1b5
use hard limit instead of returning adminLimitExceeded when requested limit exceeds hard; improve (and document) syntax; modify test025 accordingly
2004-06-22 09:43:41 +00:00
Kurt Zeilenga
5238488e60
Replaced MSAD specific stuff
2004-06-22 04:33:18 +00:00
Pierangelo Masarati
ca33242924
manual cleanup
2004-06-20 22:39:43 +00:00
Pierangelo Masarati
b1a1f0b8b6
cleanup limits
2004-06-19 10:01:47 +00:00
Pierangelo Masarati
671e3c7651
allow max for time/size limits
2004-06-18 19:47:53 +00:00
Kurt Zeilenga
1e17d75400
limit clean up
2004-06-18 07:23:37 +00:00
Kurt Zeilenga
c521e21946
Okay, fully revert commit before last.
2004-06-17 23:23:15 +00:00
Kurt Zeilenga
28668bfa62
Partial revert of last change. shm_key documentation needed.
2004-06-17 23:01:22 +00:00
Kurt Zeilenga
08c405257b
Undocument backend options which overlap DB_CONFIG options.
...
DB_CONFIG should generally be used instead.
2004-06-17 22:51:27 +00:00
Pierangelo Masarati
05b60e6b1e
s/to/by/
2004-06-17 22:51:03 +00:00
Pierangelo Masarati
f78611bf5e
improve documentation of how to specify multiple uris
2004-06-16 15:18:34 +00:00
Pierangelo Masarati
a0dfadceef
mention new tools
2004-06-15 22:40:53 +00:00
Pierangelo Masarati
b1718c4f69
mention new tools
2004-06-15 22:39:08 +00:00
Pierangelo Masarati
71142cc7e5
mention new tools
2004-06-15 22:38:31 +00:00
Pierangelo Masarati
a527174bcb
fix indent (any man expert to check it?)
2004-06-15 20:57:28 +00:00
Kurt Zeilenga
6826810ea7
allow logging to USER and DAEMON (ITS#3187)
2004-06-15 07:22:48 +00:00
Pierangelo Masarati
a18e199e0d
more on identity assertion
2004-05-22 17:26:02 +00:00
Howard Chu
725ca08f8d
Add note about syncrepl Persist retries
2004-05-21 23:58:26 +00:00
Pierangelo Masarati
46b27edc3b
more on idassert
2004-05-15 10:10:09 +00:00
Pierangelo Masarati
8b954144d6
reflect Kurt's comments on ID assertion
2004-05-14 10:01:22 +00:00
Pierangelo Masarati
f035e1f18f
document proxyauthz{dn|pw} and idassert-*
2004-05-13 23:35:39 +00:00
Pierangelo Masarati
bbbe0db326
helper for unlimited time/size limits request
2004-05-07 17:43:22 +00:00
Pierangelo Masarati
03c64541d4
add granular op restriction
2004-05-01 17:53:37 +00:00
Pierangelo Masarati
ff0df4b6aa
add group authz
2004-04-25 23:59:06 +00:00
Kurt Zeilenga
6366a0ca61
cleanup
2004-04-24 02:27:31 +00:00
Pierangelo Masarati
02ac6941d3
document slapacl tool
2004-04-20 09:18:10 +00:00
Pierangelo Masarati
9c10415919
- clarify when $$ must be used in regex;
...
- clarify access privileges of rootdn;
- clarify that auth access is always required when performing authz-regexp,
not only for proxyAuthz
2004-04-19 01:19:41 +00:00
Pierangelo Masarati
05a84fb025
typo
2004-04-19 00:08:32 +00:00
Pierangelo Masarati
80c34cf27e
typos
2004-04-18 21:36:32 +00:00
Howard Chu
8da6bf194a
Added referential integrity and attribute uniqueness overlays
2004-04-17 08:17:43 +00:00
Pierangelo Masarati
9b3a3d5fce
improve tool mode selection by slapd switch
2004-04-16 18:54:15 +00:00
Kurt Zeilenga
349c7834ce
Rename config options and attribute names (for 2.3).
2004-04-16 02:29:55 +00:00
Kurt Zeilenga
765a6bd5d4
rename
2004-04-16 01:51:25 +00:00
Kurt Zeilenga
460510be0a
rename function and config parameters
2004-04-16 01:50:29 +00:00
Pierangelo Masarati
6624f68725
fix braindead config option (mostly harmless)
2004-04-15 20:27:43 +00:00
Pierangelo Masarati
8ea2f6e157
further clarify size limits
2004-04-15 01:16:53 +00:00
Pierangelo Masarati
6b2347be6a
document lastmod overlay
2004-04-14 23:35:17 +00:00
Pierangelo Masarati
8bf68bc796
clarify the use of the fail_if_no_mapping switch and minor cleanup
2004-04-14 13:10:00 +00:00
Pierangelo Masarati
3ea4368913
add slapsaslauth test tool
2004-04-13 17:18:03 +00:00
Pierangelo Masarati
25c672a844
document search disable feature (spin-off of limit on unchecked entries)
2004-04-09 17:57:48 +00:00
Pierangelo Masarati
2e13fbeea1
completion of limits w/ paged results control
2004-04-09 15:54:46 +00:00
Hallvard Furuseth
6b45e32da3
Add NEW_LOGGING note for the commented-out "debug" and "logfile" options.
2004-04-09 05:27:04 +00:00
Pierangelo Masarati
85b078a3cb
clarify what rewrite rules suffixmassage corresponds to
2004-04-07 20:55:32 +00:00
Kurt Zeilenga
bd7cd42669
clarify updatedn (again)
2004-04-07 03:32:55 +00:00
Kurt Zeilenga
bd765b849d
ITS#2768: configuring slurpd's interval between replog checks
...
based upon a patch submitted by Jason Townsend (Apple).
2004-03-23 01:12:11 +00:00
Howard Chu
d4d5e253d9
Fix header
2004-03-19 20:23:26 +00:00
Howard Chu
057a385346
Rename slapd-ppolicy.5 to slapo-ppolicy.5
2004-03-19 20:18:46 +00:00
Pierangelo Masarati
9e159e2382
remove outdated comment
2004-03-18 21:48:21 +00:00
Pierangelo Masarati
fa3baaeae9
overlays reworking
2004-03-18 18:59:46 +00:00
Howard Chu
d1292c1b14
Added ppolicy_use_lockout keyword; Default behavior is not to issue the
...
PP_accountLocked error for locked accounts. (Gives too much information
to attackers.)
2004-03-18 10:35:54 +00:00
Pierangelo Masarati
32a3311156
typo
2004-03-18 00:40:31 +00:00
Pierangelo Masarati
cd105fab4e
man page
2004-03-18 00:36:50 +00:00
Pierangelo Masarati
f970303799
document new tools and remove deprected switches
2004-03-18 00:11:40 +00:00
Pierangelo Masarati
732ad4a3da
document new tools
2004-03-18 00:07:24 +00:00
Howard Chu
e5ec72c2b9
Add note about overlay directive
2004-03-16 22:25:08 +00:00
Howard Chu
9e39c5e0b6
Docs for ppolicy overlay
2004-03-16 22:00:30 +00:00
Pierangelo Masarati
65b49dd312
add "searchFilterAttrDN" rewrite context, and allow filterstring rewrite
2004-03-10 21:11:14 +00:00
Pierangelo Masarati
006745430e
allow "expand" style in peername, sockname, sockurl as well; more sanity checks
2004-03-09 19:44:14 +00:00
Pierangelo Masarati
042869366d
use "expand" instead of "regex" for group ACLs that allow substring expansion, preserving backwards compatibility; add sanity checks
2004-03-09 16:33:05 +00:00
Pierangelo Masarati
4645eeb5ec
cleanup DN style in limits
2004-03-08 13:13:30 +00:00
Pierangelo Masarati
f69c249892
fix program name (ITS#3003)
2004-03-06 15:48:21 +00:00
Pierangelo Masarati
5716b7f1b2
document saslAuthzTo/saslAuthzFrom new syntax; add onelevel style to DN type
2004-03-06 11:00:49 +00:00
Howard Chu
5f9a87c041
password-hash now takes a list of mechanisms
2004-03-02 22:17:20 +00:00
Howard Chu
c519390c82
Add -T option for invoking in tool mode
2004-02-26 19:26:12 +00:00
Kurt Zeilenga
b927f86e3f
Clarify updatedn
2004-02-25 17:37:59 +00:00
Pierangelo Masarati
4e57108991
allow search limits based on groups (ITS#2967)
2004-02-18 16:40:36 +00:00
Pierangelo Masarati
cf5e2496f7
map type/name were swapped
2004-02-05 18:17:27 +00:00
Kurt Zeilenga
1fa73dad3b
Reworded -r description from Quanah (ITS#2941)
2004-01-30 01:19:54 +00:00
Kurt Zeilenga
e476580d85
clarify -t
2004-01-21 00:51:09 +00:00
Pierangelo Masarati
f5a9f62578
clarify that's useless to give write privileges to the roodn of a database...
2004-01-14 23:11:48 +00:00
Pierangelo Masarati
4dbc0b842a
spacing (ITS#2916)
2004-01-10 11:17:52 +00:00
Kurt Zeilenga
c8408d3c6a
ITS#2906: report invalid userPassword schemes, clarify documentation
2004-01-09 04:11:57 +00:00
Kurt Zeilenga
3c598e89fb
Happy new year
2004-01-01 19:15:16 +00:00
Kurt Zeilenga
b613a3d57d
crypt(3) is not portable...
2003-12-30 01:37:38 +00:00
Pierangelo Masarati
3994dc645a
allow to set max passes per rule
2003-12-29 18:02:49 +00:00
Pierangelo Masarati
9e86d9ffe2
clarify field description in rewriteRule statement
2003-12-29 17:12:29 +00:00
Pierangelo Masarati
c860ba6a23
fix, clarify and document previous commit
2003-12-29 17:06:43 +00:00
Pierangelo Masarati
3ddfddb1a7
typo
2003-12-29 15:22:10 +00:00
Jong Hyuk Choi
cd16a93244
update syncrepl and session log info
2003-12-21 16:32:00 +00:00
Pierangelo Masarati
8e89944abc
for consistency, always allow 'onelevel' as an alias for 'one' in dnstyle
2003-12-20 15:29:05 +00:00
Jong Hyuk Choi
4894623e4d
replica promotion / demotion
2003-12-19 23:12:44 +00:00
Kurt Zeilenga
aabcce3e58
Document +0
2003-12-19 05:06:51 +00:00
Kurt Zeilenga
2284f101fc
Print UNDEFINED on compare error
2003-12-18 23:24:49 +00:00
Pierangelo Masarati
113727ba53
allow 'all' vs. 'any' sasl-authz-policy
2003-12-18 18:28:43 +00:00
Kurt Zeilenga
7f4ff18bd4
Update index to encourage "proper" use
2003-12-18 02:12:44 +00:00
Pierangelo Masarati
ca52621c1b
some notes on access required by proxyAuthz control;
...
note that other controls may need different access
privileges via, e.g., backend_attribute() (syncrepl?)
2003-12-18 00:27:01 +00:00
Kurt Zeilenga
c4c6a38a0b
Dont mention bare oc in list.
2003-12-17 17:48:56 +00:00
Kurt Zeilenga
30a1ff596d
s/+/@/ in OC attr lists
2003-12-17 17:36:41 +00:00
Pierangelo Masarati
947f41832e
more clarifications on dnstyle usage
2003-12-16 11:20:59 +00:00
Pierangelo Masarati
ee34f3fb64
add to 'val[.<style>=<value>' ACLs special match styles for DN-valued attributes; add negated objectClass to attribute name lists for ACLs and partial replication
2003-12-16 00:49:10 +00:00
Kurt Zeilenga
75b9f8acdc
Make a few OPERATIONAL REQUIREMENT clarifications
...
Clean up formating
2003-12-15 18:41:23 +00:00
Pierangelo Masarati
7444352358
describe detailed access levels required for each operation
2003-12-15 17:55:55 +00:00
Kurt Zeilenga
eec0f83fd7
Fix typos
2003-12-14 21:00:52 +00:00
Pierangelo Masarati
529a03df53
use dedicated admin identity to proxyAuthz
2003-12-13 10:57:42 +00:00
Howard Chu
2f06437348
Updated for proxycache overlay. Probably belongs on its own now...
2003-12-07 04:30:39 +00:00
Kurt Zeilenga
17939ccdca
Clarify that the updatedn should not be same as the rootdn.
2003-12-02 21:18:19 +00:00
Pierangelo Masarati
f0ea4161ba
add administrative bind and proxyAuthz control to enable bound operations in distributed directories (need to manually #define LDAP_BACK_PROXY_AUTHZ and patches from ITS#2851 and ITS#2852)
2003-12-01 08:29:06 +00:00
Jong Hyuk Choi
4ae382fd79
misc updates
...
- syncrepl : id -> rid
- man page update
2003-11-26 21:37:44 +00:00
Jong Hyuk Choi
1fdda703e6
Support multiple sync replication at the consumer :
...
1) simultaneous operation of multiple active sync replication threads
2) cookie management for individual sync replication thread
(include rid=%3d to the slapd cookie command line option (-c))
2003-11-26 19:49:47 +00:00
Kurt Zeilenga
e3a4c4ec9c
Notice/Acknowledge updates
2003-11-26 02:58:56 +00:00
Jong Hyuk Choi
c204f4061f
keeps syncrepl manpage sections current
2003-11-24 23:16:45 +00:00
Howard Chu
f23c5d9565
ITS#2823 delete extraneous argument
2003-11-15 08:40:51 +00:00
Howard Chu
470345e993
ITS#2822 fix typos
2003-11-15 08:34:36 +00:00
Pierangelo Masarati
9620cacd34
clarify the usage of the <modifier> field in 'dn' and 'domain' clauses of <who> access directive
2003-11-01 14:14:09 +00:00
Kurt Zeilenga
d0c05e814d
Add a basic DIT content rule test.
...
Fix DIT rules to allow extensibleObject in AUX
unifdef -DSLAP_EXTENDED_SCHEMA
2003-10-24 04:40:32 +00:00
Kurt Zeilenga
f6c1163eea
clarify that replacement, but not expression evaluation,
...
is done on the string in group.regex=string
We really should rename the style, in this case, to "replacement".
2003-10-15 08:04:25 +00:00
Luke Howard
976f61f0ed
Update SLAPI manual page
2003-10-12 06:36:29 +00:00
Kurt Zeilenga
d03c83f077
ITS#2621, reference slapd.plugin
2003-10-12 04:22:26 +00:00
Kurt Zeilenga
fd445970fb
document ditcontentrule directive
2003-10-12 04:20:20 +00:00
Kurt Zeilenga
7094fd6c08
Update filter representations to conform to RFC 2254.
2003-10-07 22:41:45 +00:00
Howard Chu
878bff913a
Added description for idlcachesize, shm_key
2003-09-27 07:06:48 +00:00
Howard Chu
0eca4fa42f
More for dynamic groups
2003-09-21 10:52:44 +00:00
Howard Chu
11148522ec
ITS#2573 dynamic group support
2003-09-21 10:45:57 +00:00
Howard Chu
b93a0f45d5
ITS#2497 value-level ACLs
2003-09-21 10:34:40 +00:00
Jong Hyuk Choi
7f882daf15
Schema checking option for LDAP Sync replication
2003-09-03 21:42:52 +00:00
Jong Hyuk Choi
8dc1ac85dd
manual update for proxy cache (apurva)
2003-09-03 16:26:17 +00:00
Jong Hyuk Choi
372cb876a0
slapd.conf man page update (LDAP Sync replication configuration)
2003-08-28 22:29:55 +00:00
Kurt Zeilenga
9b0de44b91
Add clarification about authzDN which don't exist in the DIT
2003-08-14 18:38:20 +00:00
Kurt Zeilenga
bd98f4c2a2
ITS#2644: fix inconsistent domain names used in example
2003-08-09 03:23:03 +00:00
Kurt Zeilenga
443d4c8999
sasl-regexp clarifications
2003-07-29 15:28:52 +00:00
Hallvard Furuseth
c1270ba4d5
Rename LDAP_OPT_ERROR_NUMBER to LDAP_OPT_RESULT_CODE.
2003-07-22 18:49:40 +00:00
Hallvard Furuseth
7c5d23dd05
ldap_msgfree() can take a result chain, not just a single result.
2003-07-22 18:30:59 +00:00
Kurt Zeilenga
0a1be4b126
ITS#2622: ucdata is in DATADIR
2003-06-30 18:39:17 +00:00
Hallvard Furuseth
d0582fb4c2
Replace some tabs with spaces.
...
Split some too long preformatted lines.
2003-06-29 15:34:32 +00:00
Hallvard Furuseth
c20dbfb4f6
Remove SEE ALSO locale(5); the locale option has been gone for ages.
2003-06-27 17:30:13 +00:00
Hallvard Furuseth
e613b1a353
Add BACKENDS section in slapd.conf(5).
...
Briefly compare back-bdb and back-ldbm.
Remove mention of MDBM and NDBM. Rename GNU DBM to GDBM.
Fix spacing typos. Prefix an octal file mode with 0.
Mention "notags" (new name for "nolang" from the attribute options patch).
Add SEE ALSO slapd-monitor(5) to slapd.conf(5).
2003-06-27 12:22:27 +00:00
Hallvard Furuseth
7d57eb4c03
Fix spacing typos.
2003-06-27 12:16:29 +00:00
Pierangelo Masarati
ade4642f85
Document proxy cache extensions (by way of Jong Hyuk Choi)
2003-06-24 11:49:56 +00:00
Howard Chu
44e32b3f7f
ITS#2594 add URI support for replica config
2003-06-14 00:06:36 +00:00
Kurt Zeilenga
256732f2ce
s/tls/starttls/
2003-06-10 18:32:36 +00:00
Hallvard Furuseth
feef99c760
Axe abandon support (ITS#2564)
2003-06-03 12:02:00 +00:00
Kurt Zeilenga
0954351565
Change ACL default style to exact (from regex)
2003-05-30 05:24:39 +00:00
Howard Chu
5ce0e3afb1
Add authors
2003-05-25 03:50:59 +00:00
Kurt Zeilenga
52e88a36a4
Fix typos ITS#2544
2003-05-24 05:20:15 +00:00
Kurt Zeilenga
d6bfa4ab8f
remove documentation for bind_simple_unprotected
...
(which was axed log ago)
2003-05-24 01:26:38 +00:00
Kurt Zeilenga
b378944fc1
Zap "TLS hard"
2003-05-22 00:15:57 +00:00
Hallvard Furuseth
437e179098
Fix typo.
2003-05-19 17:30:14 +00:00
Pierangelo Masarati
ea8e28c6c1
update back-monitor man page
2003-05-18 23:26:30 +00:00
Kurt Zeilenga
c8a6d52e04
Rework CAVEATS
2003-05-17 18:37:40 +00:00
Pierangelo Masarati
904f513028
clarify DN regex match quirks
2003-05-17 12:39:10 +00:00
Kurt Zeilenga
7c8f3b351f
Warn folks that setting TLS option may break some applications.
...
URI should be used instead.
2003-05-17 01:08:09 +00:00
Hallvard Furuseth
7e8ff6df6b
Implement slapcat -s <dn>: Only dump a subtree of the database.
2003-04-29 20:47:21 +00:00
Hallvard Furuseth
fa915adb5b
Minor nroff tweaks.
2003-04-29 15:14:35 +00:00
Kurt Zeilenga
c661a77268
axe suffixAlias
2003-04-26 23:52:28 +00:00
Kurt Zeilenga
26badc8174
Add some comments about DB_CONFIG
2003-04-24 16:22:46 +00:00
Howard Chu
5642e54117
Fix file: URL examples
2003-04-23 03:35:37 +00:00
Howard Chu
a58190e2b1
Fix missing slash in file: URL
2003-04-23 03:32:05 +00:00
Kurt Zeilenga
099c2426b8
clarify that updatedn permits replica updating subject to access controls.
2003-04-21 02:29:46 +00:00
Pierangelo Masarati
ab9f7108f1
add caveats to man page; cleanup and small improvements
2003-04-16 22:23:46 +00:00
Pierangelo Masarati
9a39dcb7d4
add slurpd pid/args files
2003-04-15 21:56:21 +00:00
Pierangelo Masarati
8563681f18
document recent changes
2003-04-15 20:55:29 +00:00
Kurt Zeilenga
06da0f5e6f
Clarify "users" terminology
2003-04-15 02:20:01 +00:00
Pierangelo Masarati
3e3e5fdec5
first cut at documenting back-monitor
2003-04-08 23:46:56 +00:00
Pierangelo Masarati
250934254b
cleanup
2003-04-07 21:42:51 +00:00
Pierangelo Masarati
d275fee025
new rewrite example
2003-04-03 21:17:09 +00:00
Pierangelo Masarati
430077e2ed
partially revert previous commit
2003-04-02 23:01:21 +00:00
Pierangelo Masarati
a67b41eb69
fix listener mod handling
2003-04-02 20:27:58 +00:00
Kurt Zeilenga
02028df6c6
Add additional password file support.
2003-03-31 06:29:59 +00:00
Howard Chu
2c2bf67cea
ITS#2389, describe conn_max_pending/auth keywords
2003-03-27 04:18:16 +00:00
Hallvard Furuseth
1f00bd3c7f
Manpage nitpicks
2003-03-23 16:37:06 +00:00
Kurt Zeilenga
98e5afc28f
Remove cache stuff
2003-03-20 19:50:22 +00:00
Pierangelo Masarati
c4b925f343
document -u option
2003-03-18 10:38:23 +00:00
Kurt Zeilenga
f4bb9a5d64
Fix typo (ITS#2379)
2003-03-15 23:36:23 +00:00
Howard Chu
bd935956f4
ITS#2366 typos
2003-03-12 21:51:17 +00:00
Kurt Zeilenga
472a79f211
LDAPv2 is Historic
2003-03-10 15:34:14 +00:00
Kurt Zeilenga
6fb4582d5c
suffixalias is no longer supported
2003-03-07 18:57:30 +00:00
Howard Chu
a60f6fe1a3
Added proxy-whoami keyword and some mention of connection pooling. Depends
...
on libldap_r, proxy authz control...
2003-02-26 16:35:09 +00:00
Kurt Zeilenga
63efc41728
clarify global ACL use
...
clarify root and subschema DSE ACLs
2003-02-24 19:53:03 +00:00
Kurt Zeilenga
607215a8d6
Some dn.regex clarifications
2003-02-23 19:38:32 +00:00
Kurt Zeilenga
f620aa08f9
Max workers was lowered to 16.
2003-02-21 07:18:43 +00:00
Kurt Zeilenga
5abec40030
Document URI and SASL directives
2003-02-09 06:49:34 +00:00
Kurt Zeilenga
698d73d5f3
Disable reverse lookups by default for security
...
(and performance) reasons.
2003-02-08 07:40:19 +00:00
Pierangelo Masarati
f19df0a307
add 'rebind-as-user' according to back-ldap's implementation
2003-02-05 22:04:20 +00:00
Kurt Zeilenga
1aae1854ac
delete (7) after UTF-8
2003-02-05 20:42:50 +00:00
Pierangelo Masarati
eed2d5db4d
only document 'subtree', but also allow 'sub'
2003-02-05 20:38:42 +00:00
Pierangelo Masarati
381e293b41
allow 'sub' and 'subtree' in acl (fix ITS#2300)
2003-02-05 19:39:34 +00:00
Pierangelo Masarati
ac895cd4d5
document the multiple URI feature
2003-02-04 19:50:17 +00:00
Pierangelo Masarati
55d21236d1
comment a useful feature of using URIs
2003-02-04 19:43:10 +00:00
Hallvard Furuseth
1fbbc11811
Fix LBER_ERROR vs. -1 confusion.
2003-01-19 13:10:17 +00:00
Kurt Zeilenga
d2bb1b5691
Add a few notes about intended usage of these backends
2003-01-09 12:07:14 +00:00
Kurt Zeilenga
6939c53170
Happy new year
2003-01-03 20:20:47 +00:00
Hallvard Furuseth
3dca6b67a5
Fix typo.
2002-12-16 07:32:06 +00:00
Hallvard Furuseth
5ca8773a8b
Fix typos.
2002-12-16 07:31:13 +00:00
Hallvard Furuseth
09df53687e
Make links to ber_bvfree and others, and add them to NAME section.
2002-12-16 07:29:43 +00:00
Hallvard Furuseth
7ce4a611dc
Fix ldap_extended_s(3) -> ldap_extended_operation(3)
2002-12-16 07:28:10 +00:00
Pierangelo Masarati
df5d69df8f
allow a custom error log file for plugins by means of a slapd.conf directive; add very bare-bone back-monitor info about installed plugins
2002-12-14 15:04:37 +00:00
Howard Chu
143603690f
Added searchstack keyword description. (Sorry, I don't like the word "slab"...)
2002-12-12 23:39:21 +00:00
Hallvard Furuseth
54728f367e
Implement user-defined tagging attribute options and ranges
2002-12-12 13:56:05 +00:00
Pierangelo Masarati
9cce5e4c98
a skeleton of slapd.conf directives for SLAPI configuration (lot to do)
2002-12-07 18:03:13 +00:00
Pierangelo Masarati
65efd6a185
fix -h option example for multi-URI handling (as suggested by Roland Bauerschmidt <rb@debian.org>)
2002-11-24 21:52:48 +00:00
Pierangelo Masarati
8473f6e778
set keyword to noEstimate and document it
2002-11-21 20:57:00 +00:00
Pierangelo Masarati
59aea47963
improve limits handling and consistency; return "Admin limit exceeded" instead of "Unwilling to perform"
2002-11-21 12:58:59 +00:00
Pierangelo Masarati
b9e442d7de
clarify how to specify no limits
2002-10-31 11:26:19 +00:00
Pierangelo Masarati
53e1930fd0
use keyword "unlimited" instead of -1 for no limits
2002-10-31 09:57:24 +00:00
Kurt Zeilenga
c14cbc1fb7
Update anon
2002-10-26 02:53:36 +00:00
Pierangelo Masarati
86dbdc1ddb
document socket permission extension to ldapi://
2002-10-23 14:22:21 +00:00
Kurt Zeilenga
6bc33d28c0
Note --without-threads limitation
2002-10-16 16:54:27 +00:00
Kurt Zeilenga
023d0e2a5c
Rework unprotected simple bind checks
2002-10-08 19:03:18 +00:00
Kurt Zeilenga
36fca96695
if "disallow bind_simple_unprotected", require at least SSF of 2
2002-10-08 01:06:49 +00:00
Kurt Zeilenga
90e320398a
Clarify that "security ssf=n" applies to "disallow bind_simple_unprotected".
2002-10-08 00:51:19 +00:00
Kurt Zeilenga
de6ed4fde4
Undocument -C (chase referrals)
...
(already removed from usage statements)
2002-09-23 21:33:26 +00:00
Kurt Zeilenga
68aebc05c9
Clean up hash password scheme stuff
2002-09-20 17:27:08 +00:00
Kurt Zeilenga
11a07153d6
Add some clarification as to what hash algorithms are used
...
with each password-hash scheme.
2002-09-20 17:12:58 +00:00
Kurt Zeilenga
f0a3a7bb47
Add reference to ldap.conf(5)
2002-09-04 21:00:11 +00:00
Kurt Zeilenga
2ca678ea2e
More LDAPNOINIT statement to top of DESCRIPTION
2002-09-04 20:59:57 +00:00
Kurt Zeilenga
3cb2dc149d
Document -R
2002-09-02 19:25:10 +00:00
Pierangelo Masarati
5a0ba6e429
document another (optional) config directive
2002-08-31 10:27:49 +00:00
Kurt Zeilenga
18e4362b07
Add ldapwhoami(1)
2002-08-24 06:28:10 +00:00
Kurt Zeilenga
dabbefd908
Add -y.
2002-08-24 06:19:39 +00:00
Pierangelo Masarati
f11c6b27e7
Final run of changes to back-sql; IBM db2 support has been tested.
...
Now related ITSes need be audited and possibly closed.
Enhancements:
- re-styled code for better readability
- upgraded backend API to reflect recent changes
- LDAP schema is checked when loading SQL/LDAP mapping
- AttributeDescription/ObjectClass pointers used for more efficient
mapping lookup
- bervals used where string length is required often
- atomized write operations by committing at the end of each operation
and defaulting connection closure to rollback
- added LDAP access control to write operations
- fully implemented modrdn (with rdn attrs change, deleteoldrdn,
access check, parent/children check and more)
- added parent access control, children control to delete operation
- added structuralObjectClass operational attribute check and
value return on search
- added hasSubordinate operational attribute on demand
- search limits are appropriately enforced
- function backsql_strcat() has been made more efficient
- concat function has been made configurable by means of a pattern
- added config switches:
- fail_if_no_mapping write operations fail if there is no mapping
- has_ldapinfo_dn_ru overrides autodetect
- concat_pattern a string containing two '?' is used
(note that "?||?" should be more portable
than builtin function "CONCAT(?,?)")
- strcast_func cast of string constants in "SELECT DISTINCT statements (needed by PostgreSQL)
- upper_needs_cast cast the argument of upper when required
(basically when building dn substring queries)
Todo:
- add security checks for SQL statements that can be injected (?)
- re-test with previously supported RDBMs
- replace dn_ru and so with normalized dn (no need for upper() and so
in dn match)
- implement a backsql_normalize() function to replace the upper()
conversion routines
- note that subtree deletion, subtree renaming and so could be easily
implemented (rollback and consistency checks are available :)
- implement "lastmod" and other operational stuff (ldap_entries table ?)
2002-08-23 08:54:08 +00:00
Howard Chu
33d5c0abd7
Fix errors in replica directive
2002-08-22 20:32:09 +00:00
Pierangelo Masarati
76e936e274
reflect recent additions to backend configuration
2002-08-13 17:13:57 +00:00
Howard Chu
1be4ab9d07
ITS#1893 Add (terse) schemadn description
2002-08-10 04:09:28 +00:00
Kurt Zeilenga
e2b8a3b139
Remove reference to getfilter(3)
2002-08-08 03:03:48 +00:00
Kurt Zeilenga
9c28c9b361
Zap LDAPv2-only stuff
2002-08-08 03:01:14 +00:00
Kurt Zeilenga
884b476c32
Add note regarding user/system checks and operational attributes.
2002-08-02 00:55:50 +00:00
Kurt Zeilenga
65b5f64a0e
Clarify use of slapd.conf(5) v ldap.conf(5).
2002-07-24 03:11:58 +00:00
Kurt Zeilenga
99133f7944
Fix a few typos
2002-07-10 03:12:47 +00:00
Kurt Zeilenga
b839e6fc8b
Remove misleading (untrue) text about known syntax OID macros.
2002-06-27 16:27:07 +00:00