[Date Prev][Date Next] [Chronological] [Thread] [Top]

acl_mask: no more <who> clauses, returning =n (stop)



The above message is returned whenever I try to authenticate from a RH
Linux 7.2 client to openldap 2.0.18 on RH Linux 7.2 Server.

My acl is as follows:

defaultaccess read
access to *
	by dn="cn=Manager,dc=blaue-elise,dc=net" write
access to attr=uid,uidNumber,gidNumber,userPassword,shadowPassword
	by dn="cn=Manager,dc=blaue-elise,dc=net" write
	by self write
	by * auth
	by anonymous auth

Can anyone light me up and tell me what the hell that means and how I
can fix it? I can't get this authentication-stuff via openldap to work
-- 
 __    __  __     __  __ ___    ___                      
|  |  |  ||  \   |  ||  |\  \  /  /              chris Guenther
|  |  |  ||   \  |  ||  | \  \/  /               chris@blaue-elise.net
|  |  |  ||  . \ |  ||  |  >    <                Wuppertal / Germany
|  |__|  ||  |\ \|  ||  | /  /\  \  
 \______/ |__| \____||__|/__/  \__\ 

UNIX _IS_ user friendly, it's just selective about who its friends are
  
----------------------------------------------------------------------
  UNIX was not designed to stop you from doing stupid things, 
  because that would also stop you from doing clever things.
                                                         ...Doug Gwyn
----------------------------------------------------------------------