Spiderboy <[EMAIL PROTECTED]> writes: S> S> manually adding the user id's into the attribute "memberUid" S> resolves this problem. it seems that only this attribute is checked S> during logon to recognize group membership. S>
Just a guess -- Look in /etc/ldap.conf for the setting of pam_login_attribute and pam_member_attribute. But I wish they had set it up to be more consistent with vdanen's excellent openldap tutorial from mandrakesecure.net. (My server is still running 8.2.) -- Aaron Peromsik <[EMAIL PROTECTED]> ----[For thinner oatmeal, add more water.]
