Re: regex in group ACL

Jon Roberts wrote:

I know this may be out of your control given your caveats, but it might work better to put the dn values for delegated users in an attribute on the account object itself. Then an ACL using the dnattr form in the who clause would do the trick.

Hi Jon,

Yes, if I don't find any better way to do it, I will ask the software designers to modify the data model in this way, at least in the case of an OpenLDAP server.

