Pierangelo Masarati wrote:
Search needs the privileges described in the OPERATION REQUIREMENTS
section of slapd.access(5). You need to make sure anonymous has enough
privileges, which apparently doesn't. Not sure what's the difference in
this area between 2.3 and 2.4; I think the main differences were between
2.2 and 2.3.
p.
Thanks again Pierangelo,
Looks like I was missing search on the root dn pseudo entry (?)
Adding
access to
dn.subtree="dc=st-andrews,dc=ac,dc=uk"
by * read
has done the trick. Possibly this was implied in 2.3 and 2.4 is more
strict in that respect?
Cheers,
Duncan
Ing. Pierangelo Masarati
OpenLDAP Core Team
SysNet s.r.l.
via Dossi, 8 - 27100 Pavia - ITALIA
http://www.sys-net.it
---------------------------------------
Office: +39 02 23998309
Mobile: +39 333 4963172
Email: [EMAIL PROTECTED]
---------------------------------------