[Date Prev][Date Next] [Chronological] [Thread] [Top]

group ACLs



I've reworked group ACLs so that they use
the new "expand" ACL style; the syntax now
is:

access to dn.regex="^cn=([^,]+),ou=People,dc=example,dc=com"
    by group.expand="cn=$1,ou=Groups,dc=example,dc=com" read

the previous value of "regex" was misleading.
Moreover, some sanity checks have been added.

The old behavior has been preserved, but an
annoying message is issued if one uses
"group.regex" any more.  Moreover, if one
uses group.expand or peername.regex or so
with a <what> with a style other than "regex"
a warning is issued.

Comments?

p.

-- 
Pierangelo Masarati
mailto:pierangelo.masarati@sys-net.it