Re: "dn: cn=admin,cn=config" adding problem

--On Monday, November 11, 2013 8:39 PM +0400 Oleg <lego12239@yandex.ru> wrote:

  ok. How can i place restrictions for admin access to cn=config db?
According to docs i must add a user to a db to do this.

I suggest looking at what Debian does in their default configurations, which restricts the admin user to using the ldapi:/// socket and the root user only, which meets your criteria for locking it down to localhost and even goes beyond that to locking down the user that is mapped to the rootdn as well.



