[Date Prev][Date Next]
Re: ACL based on superior entry
"Dieter Kluenter" <firstname.lastname@example.org> writes:
> Michael Ströder <email@example.com> writes:
>> Is it possible to grant access in an ACL by a certain attribute value of the
>> superior entry?
>> I'd like to be able to disable bind for users based on a status flag in the
>> container entry under which all user entries reside.
> sets come to my mind. Something like
> access to cn=something
> by user & [cn=other\attributetype & value]
oops, the magic word set is missing, so
access to cn=something
by set="user & [cn=other\attributety0 & value]"
> more on sets at http://www.openldap.org/faq/data/cache/1133.html
Dieter Klünter | Systemberatung
GPG Key ID:8EF7B6C6