[Date Prev][Date Next]
Re: ppolicy overlay password problem
The test022 script in the bundled test suite specifically tests for
authentication using an incorrect password, and this test works
correctly in my 2.3.11 build. As such, I do not believe there is any bug
in OpenLDAP software here. You should check whatever software you're
using to "login."
Baoning Pan wrote:
I need help on ppolicy as this is the first time I try to use it for company internal use. I search the mail listing and web and cannot find same problem.
I compiled openldap 2.3.11 on Solaris 8, with bdb.4.3.29 and openssl.0.9.7g. First I started slapd without ppolicy, and things works fine. Then, I added ppolicy overlay/schema. slapd started/loaded fine. But I get big problem with user password, user can login with "ANY WORD" as its password even though I can see new "pwdFailureTime" entry is added to ldap db for that user.
Here are the ppolicy related entries/ldif for my slapd.conf
ppolicy_default "cn=Standard Policy,ou=Policies,dc=n2p,dc=com"
dn: cn=Standard Policy,ou=Policies,dc=n2p,dc=com
cn: Standard Policy
-- Howard Chu
Chief Architect, Symas Corp. http://www.symas.com
Director, Highland Sun http://highlandsun.com/hyc
OpenLDAP Core Team http://www.openldap.org/project/