BÖSCH Christian wrote: > i’m using this acl: > > {0}to filter=(objectclass=person) attrs=Hidden by group.exact=“cn=group,ou=groups,o=abc.net” none > > but members of the group can still access the attribute Hidden. > with any filter it does not work. > if i use a single dn it works. > > seems to me filters do not work? ..or there is another ACL applied before reaching this ACL. Debug this with log level "acl". Ciao, Michael.
Attachment:
smime.p7s
Description: S/MIME Cryptographic Signature