DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG 
RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT
<http://issues.apache.org/bugzilla/show_bug.cgi?id=31428>.
ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND 
INSERTED IN THE BUG DATABASE.

http://issues.apache.org/bugzilla/show_bug.cgi?id=31428

mod_auth_ldap Nees READ Access to LDAP to auth

[EMAIL PROTECTED] changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
             Status|NEW                         |ASSIGNED



------- Additional Comments From [EMAIL PROTECTED]  2004-10-17 17:46 -------
The behaviour going forward for mod_auth_ldap is to bind to the LDAP server
using the DN provided in AuthLDAPBindDN, and perform the user search (in the
authentication phase) and any group searches (in the authorisation phase) as
this DN. No searches are done as the user who logged in, removing the need to
give logged in users read or search access to either the person objects or the
group objects inside the LDAP server.

If AuthLDAPBindDN is not specified, then anonymous searches are used.

If the above behavior is not being followed, please add a note to this bug.

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to