lists.arthurdejong.org
RSS feed

Re: [nssldap] DN as group members, nested groups

[Date Prev][Date Next] [Thread Prev][Thread Next]

Re: [nssldap] DN as group members, nested groups



Jup. Check out the RFC2307bis schema for more info. We've recently implemented that too.

Note that if you are using Solaris, as far as I know this is not supported yet by the native client- but you can use the openldap libs instead.

Han
--
Hanno Liem
Senior Systems Engineer
eBay Global Classifieds


On 17 dec 2009, at 10:24, "Lukas Haase" <lukashaase@gmx.at> wrote:

Hi,

"Real" LDAP groups are made of DNs, i.e. the group object has a list of members with the complete DN and note just the "uid". Many LDAP administration programs (such as Softerra) also set memberships this way.

Is there a way to let libnss-ldap read out the group memberships with DN instead of just the name of the UNIX group?

And a second question directly related: Are nested groups supported in some way?

Best regards,
Luke



--
GRATIS für alle GMX-Mitglieder: Die maxdome Movie-FLAT!
Jetzt freischalten unter http://portal.gmx.net/de/go/maxdome01