[Samba] Re: SAMBA3 + LDAP

paul kölle paul at subsignal.org
Tue Dec 20 10:21:52 GMT 2005


mallapadi niranjan wrote:

[snip]
> #access to dn.base="dc=msdpl,dc=com"
> access to attrs=sambaLMPassword,sambaNTPassword
>         by dn="uid=.*,ou=People,dc=msdpl,dc=com" write
>         by dn="uid=.*,ou=Domain Admins,dc=msdpl,dc=com" read
>         by * none
> access to attr=userPassword
>         by dn="uid=.*,ou=People,dc=msdpl,dc=com" write
>         by self write
>         by anonymous auth
>         by * none
> access to *
>         by * read
I don't understand this, you give *everyone* in the People container
write access to *all* passwords and those in ou=Domain Admins only read
access...?

confused
 Paul



More information about the samba mailing list