[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: write access issue



Am Sat, 28 Dec 2013 07:21:59 +0000
schrieb Umar Draz <unix.co@gmail.com>:

> Hi
> 
> I am trying to rename the (dn) entry through a normal user which is
> first authenticate it self, but I there is an error while renaming
> the dn entry
> 
> text=no write access to old parent's children
> 
> here is my slapd.conf access settings.
> 
> # Sample access control policy:
> access to attrs=userPassword,shadowLastChange
>         by self write
>         by dn="cn=admin,dc=mydomain,dc=com" write
>         by * auth
> 
> access to *
>         by self write
>         by dn="cn=admin,dc=mydom,dc=com" write
>         by * read
> 
> Would you please help, what I need to set?

The last rule allows write operations on one's own entry, but in order
to modify a RDN write operations on a parent entry is required, see
ldapmodrdn(1) for more information.

-Dieter 

-- 
Dieter KlÃnter | Systemberatung
http://dkluenter.de
GPG Key ID:DA147B05
53Â37'09,95"N
10Â08'02,42"E