[389-users] require ssl/tls only for binding as user

Johannes Woerner jkwoerner at googlemail.com
Mon Jan 11 20:26:29 UTC 2010


> I'm evaluating the migrating of an openldap installation to

> > 389 directory server (ca 1200 user objects).
> > With openldap I can restrict client authentication to ssl/tls ldap
> > connections and
> > in parallel allow anonymous (unencrypted) access to items like phone
> number etc.
> > (slapd.conf with: "security simple_bind=56")
> >
> > Is there a way you can do this with 389 directory server?
> Yes. By using ACIs and the features described here :
>
> http://directory.fedoraproject.org/wiki/Roadmap#389_Directory_Server_1.2.3_-_October_7.2C_2009
>

Thank you, I missed this.

Best regards
Johannes
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.fedoraproject.org/pipermail/389-users/attachments/20100111/75e5a3e2/attachment.html>


More information about the 389-users mailing list