[Date Prev][Date Next]
Re: Search Filter ...
On 05/10/2009 14:15, Remi Ferrand wrote:
Jonathan Clarke a écrit :
On 03/10/2009 01:21, Remi Ferrand wrote:
I've the following configuration in my OpenLDAP :
description: VirtualHost stats.mysite.fr
7. member: uid=USER,ou=People,dc=mysite,dc=fr
cn: USER P.
sn: USER P.
and I'm wondering how to create a filter to match only members of a
given Group in order to use it with Apache2 or others ...
The difficulty for me is to obtain the posixAccount object and not the
You can't return account objects from a search based on groups,
whatever the filter. Not with one LDAP search, anyway.
Most LDAP clients can check whether an entry is a member of a group.
Apache's LDAP auth[nz] module does it too, see:
Too bad Dovecot is not able to check membership of a username ...
My Apache2 configuration is already based on what you sent me and works
very well ;)
I guess that my last possibility for this to work with Dovecot is to add
a "member" field in every "objectClass= posixAccount" and to use a
search filter as :
The "memberof" overlay included in OpenLDAP can do that automatically
for you: see slapo-memberof(5).