George Holbert wrote:
I've noticed that the 'ip' keyword in ACI bind rules
seems to have no
effect on its own. For example,
This does not deny access to IP 184.108.40.206:
aci: (version 3.0; acl "Deny 220.127.116.11"; deny(all) (ip = "18.104.22.168");)
But when combined with a userdn clause like this, it works:
aci: (version 3.0; acl "Deny 22.214.171.124"; deny(all) (userdn =
"ldap:///anyone") and (ip = "126.96.36.199");)
Is this known/expected behavior?
Just want to make sure I'm interpreting this right.
Looks like it's
probably a bug in the aci code.
Thanks a lot,
Fedora-directory-users mailing list