[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: how to check uniqueness of uidNumber ?



ons, 2003-01-15 kl. 01:24 skrev Leonid Mamtchenkov:
> WONG_Jeffrey@seac.pf wrote:
> WJsp> I'm thinking about to use openldap for users authentication. For that, I
> WJsp> use person, posixAccount and shadowAccount objects to store user data
> WJsp> (password, uid, ...). Now I want that no user have the same uidNumber (I
> WJsp> know Unix allows multiple users to have the same uidNumber, but this is
> WJsp> not compliant with my policy).
> WJsp> 
> WJsp> So how can I check uniqueness of uidNumber ?

> I don't think it is possible to do.  I am used to think of it as a
> feature though.  Consider that having multiple userPassword attributes
> for the same object in posixAccount will allow your users to use
> different passwords to login! ;)

In fact, both are multi-value attributes. As far as userPassword is
concerned, I'd tried that before (Openldap 2.1.8, I think) and pam_ldap
authentication allowed either password. Strange.

Best,

Tony

-- 

Tony Earnshaw

When all's said and done ...
there's nothing left to say or do.

e-post:		tonni@billy.demon.nl
www:		http://www.billy.demon.nl