14.02.2014 Views

ldapv3.pdf 7947KB Apr 17 2013 11:30:42 AM - mirror omadata

ldapv3.pdf 7947KB Apr 17 2013 11:30:42 AM - mirror omadata

ldapv3.pdf 7947KB Apr 17 2013 11:30:42 AM - mirror omadata

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

2.1.x<br />

Authentication Request DN<br />

Mapping<br />

Since Authenitcate Request DNs are not expected to exist in the Dit,<br />

the DSA performs authentication request DN mapping based upon the<br />

sasl-regexp directive.<br />

A sasl-regexp directive takes two parameters -<br />

Parameter #1 – A matching rule for authentication request DNs<br />

It is possible to have multiple sasl-regexp declaration matching<br />

different combinations of realms and methods.<br />

Parameter #2 – A rewrite rule. This produces, based upon the values<br />

in the authenitcation request DN either the correspdoning DN for an<br />

actual object in the Dit or a search patten in LDAP URL format to<br />

location an object within the Dit.<br />

sasl-regexp<br />

uid=(.*),cn=WHITEMICE.ORG,cn=gssapi,cn=auth<br />

ldap://ldap-master/dc=whitemie,dc=org??sub?(&(uid=$1)(objectClass=account))

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!