Re: (ITS#4488) back-ldap uses proxyAuthz for idassert when protocol is not LDAPv3

This specific idassert issue is now fixed in HEAD; at least one issue
remains: if the client connects LDAPv3 and uses controls, and the proxy
enforces LDAPv2, either controls should not be passed to the remote DSA,
if none of them is critical, or the operation should be rejected.


