Re: commit: ldap/doc/man/man5 slapd-ldap.5

> Some suggestions...
> Start TLS?
> SASL Bind (for both bind and proxy authcid)
>   with authzid assertion (at SASL Bind time) for both

Need to look at this.  Also, the client's identity rewriting
is not in place yet.

> idassert-mode <dn> should likely be idassert-mode <authzid>.
> That is, either dn:uid=foo,dc=example,dc=com or u:foo should be
> allowed.

Reworked the rest accordingly.


Pierangelo Masarati

