mirror of
https://git.openldap.org/openldap/openldap.git
synced 2024-12-21 03:10:25 +08:00
74fa239a20
- librewrite, for string rewriting; it may be used in back-ldap by configuring with '--enable-rewrite'. It must be used in back-meta. There's a text file, 'libraries/librewrite/RATIONALE', that explains the usage and the features. More comprehensive documentation will follow. - enhancements of back-ldap (ITS#989,ITS#998,ITS#1002,ITS#1054 and ITS#1137) including dn rewriting, a fix to group acl matching and so - back-meta: a new backend that proxies a set of remote servers by spawning queries. It uses portions of back-ldap and the rewrite capabilities of librewrite. It can be compiled by configuring with `--enable-ldap --enable-rewrite --enable-meta'. There's a text file, 'servers/slapd/back-meta/Documentation', that describes the main features and config statements. Note: someone (Kurt?) should run 'autoconf' and commit 'configure' as my autoconf version must be different: my configures contain a number of differences and I didn't feel comfortable in adding them :)
16 lines
507 B
Plaintext
16 lines
507 B
Plaintext
#######################################################################
|
|
# ldap database with suffix massage definitions
|
|
#######################################################################
|
|
|
|
database ldap
|
|
uri "ldap://localhost:@PORT@/"
|
|
suffix "o=FB, c=US"
|
|
suffixmassage "o=FB, c=US" "ou=Groups, dc=bar, dc=example, dc=com"
|
|
lastmod off
|
|
|
|
access to dn.regex="[^,]+,o=FB,c=US" attr=cn
|
|
by group.exact="cn=Users,o=FB,c=US" read
|
|
by group.exact="cn=Users,ou=Groups,dc=bar,dc=example,dc=com" read
|
|
by * none
|
|
|