Re: Question about hiding attributes from searches and su -

lør, 2002-07-27 kl. 16:33 skrev Tony Earnshaw:

> I'm more or less certain my question is undocumented, but maybe I'm
> lazy.

Well, it wasn't undocumented :-)

More or less solved what I wanted to by reading Jim C
<jcllings@tsunamicomm.net> 's reference to 
http://www.mandrakesecure.net/en/docs/ldap-auth.php , which, I being a
Red Hat person, was a new one on me.

By sticking

access to dn=".*,dc=billy,dc=demon,dc=nl"
        by dn="cn=Admin,dc=billy,dc=demon,dc=nl" write
        by self write
        by * auth

at the very top of slapd.conf and removing some of the earlier, first,
restrictive acl, I get more or less what I want as far as unwanted
"finger" stuff is concerned. Isn't perfect, but it's much better than it

So thanks, Jim C.




