Re: [RADIATOR] LDAP: dereferencing searches

2018-09-21 Thread Hugh Irvine

Salut Jean-Philippe -

You can use any of the LDAP keywords as listed in section 3.9 of the Radiator 
4.21 reference manual (“doc/ref.pdf”).

See section 3.9.23 Deref for example.

We could also look at adding support for PostSearchHook in ClientListLDAP if 
required.

regards

Hugh


> On 22 Sep 2018, at 01:57, AYANIDES, Jean-Philippe  
> wrote:
> 
> Hello,
> 
> I'd like to use LDAP2 mechanism to get clients attributes from LDAP (with the 
> directive "clientlistldap").
> 
> But one of the attribute returned by the ldap search is a DN (syntax 
> 1.3.6.1.4.1.1466.115.121.1.12) I would like to dereference.
> So well, I am looking to the way to dereference that DN, in order to get 
> attributes from the linked object.
> With ldapsearch, I used to run for example:
> 
> ldapsearch -Y GSSAPI -E 'deref=memberof:radiusReplyItem' 
> '(serverhostname=myNAS)'  
> 
> But with LDAP2, I do not know how to do it. There is no keyword similar to 
> the keyword "filter" designed to add the extending searches...
> Can anyone help me ?
> 
> Jean-Philippe
> This message contains information that may be privileged or confidential and 
> is the property of the Capgemini Group. It is intended only for the person to 
> whom it is addressed. If you are not the intended recipient, you are not 
> authorized to read, print, retain, copy, disseminate, distribute, or use this 
> message or any part thereof. If you receive this message in error, please 
> notify the sender immediately and delete all copies of this 
> message.___
> radiator mailing list
> radiator@lists.open.com.au
> http://lists.open.com.au/mailman/listinfo/radiator


--

Hugh Irvine
h...@open.com.au

Radiator: the most portable, flexible and configurable RADIUS server 
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald, 
Platypus, Freeside, TACACS+, PAM, external, Active Directory, EAP, TLS, 
TTLS, PEAP, TNC, WiMAX, RSA, Vasco, Yubikey, MOTP, HOTP, TOTP,
DIAMETER, SIM, etc. 
Full source on Unix, Linux, Windows, macOS, Solaris, VMS, NetWare etc.

___
radiator mailing list
radiator@lists.open.com.au
http://lists.open.com.au/mailman/listinfo/radiator

[RADIATOR] LDAP: dereferencing searches

2018-09-21 Thread AYANIDES, Jean-Philippe
Hello,


I'd like to use LDAP2 mechanism to get clients attributes from LDAP (with the 
directive "clientlistldap").


But one of the attribute returned by the ldap search is a DN (syntax 
1.3.6.1.4.1.1466.115.121.1.12) I would like to dereference.

So well, I am looking to the way to dereference that DN, in order to get 
attributes from the linked object.

With ldapsearch, I used to run for example:


ldapsearch -Y GSSAPI -E 'deref=memberof:radiusReplyItem' 
'(serverhostname=myNAS)'


But with LDAP2, I do not know how to do it. There is no keyword similar to the 
keyword "filter" designed to add the extending searches...

Can anyone help me ?


Jean-Philippe
This message contains information that may be privileged or confidential and is 
the property of the Capgemini Group. It is intended only for the person to whom 
it is addressed. If you are not the intended recipient, you are not authorized 
to read, print, retain, copy, disseminate, distribute, or use this message or 
any part thereof. If you receive this message in error, please notify the 
sender immediately and delete all copies of this message.
___
radiator mailing list
radiator@lists.open.com.au
http://lists.open.com.au/mailman/listinfo/radiator