If you are using OpenLDAP 2.4 for your directory service:

https://www.openldap.org/software/man.cgi?query=slapo-ppolicy&apropos=0&sektion=5&manpath=OpenLDAP+2.4-Release&arch=default&format=html

From: [email protected] <[email protected]> On Behalf Of Jeremiah Garmatter
Sent: Tuesday, August 4, 2020 10:45 AM
To: CAS Community <[email protected]>
Subject: [cas-user] CAS 6.2 Password Policy

Hello,

I am having trouble understanding the password policy documentation for CAS 
6.2.x. I use openldap as the ldap source. I would like to set up a policy that 
warns users of a password change at 60 days, 30 days, and forces a password 
change at 2 days. This policy was enforced on a server running CAS 3.5 and I'm 
not sure how this system was set up (it was made by predecessors).

Could somebody explain what this line means?
"LPPE is also able to warn the user when the account is about to expire. The 
expiration policy is determined through pre-configured LDAP attributes with 
default values in place." (found here: 
https://apereo.github.io/cas/6.2.x/installation/Password-Policy-Enforcement.html)

>From what I understand there is a predefined LDAP attribute that is checked 
>against the warning-days property and if it is under the day-count then a 
>warning message appears.
Is this true? Also, what LDAP attribute is it checking against? Can this 
attribute be changed?
--
- Website: https://apereo.github.io/cas
- Gitter Chatroom: https://gitter.im/apereo/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
---
You received this message because you are subscribed to the Google Groups "CAS 
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected]<mailto:[email protected]>.
To view this discussion on the web visit 
https://groups.google.com/a/apereo.org/d/msgid/cas-user/9de39171-2d46-479c-8738-9ca18c5890d8n%40apereo.org<https://groups.google.com/a/apereo.org/d/msgid/cas-user/9de39171-2d46-479c-8738-9ca18c5890d8n%40apereo.org?utm_medium=email&utm_source=footer>.

-- 
- Website: https://apereo.github.io/cas
- Gitter Chatroom: https://gitter.im/apereo/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
--- 
You received this message because you are subscribed to the Google Groups "CAS 
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/a/apereo.org/d/msgid/cas-user/b6aff3a436fc403c8590771343acfae0%40mun.ca.

Reply via email to