[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: LDAP Authentication

On Tue, Nov 14, 2000 at 12:13:07PM +0100, Hugo.van.der.Kooij@caiw.nl wrote:

> Pardon me. But if you NEED anonymous access for one application then you
> can't expect a webclient to get anything less.

Ok, I suppose that I'm missing something. :)

I need anonymous auth to allow directory browsing, but then I also
need that if a user bind with a defined username, it can not do an
anonymous bind leaving a blank password.

Now, I understand that this is not possbile, so I can:

	- disabling at all anonymous bind, requiring authentication
	  even for a directory browse;


	- enable anonymous binding at least on the local net and know
	  that blank password are accepted;

	- install the patches that will allow me to solve the "blank
	  password" problem;

Am I right?


   Ph'nglui mglw'nafh Cthulhu http://www.rlyeh.it/ wgah'nagl fhtgan!