Fix the variable that sets the base DN. Add entries to set the main ACLs
This commit is contained in:
parent
f9cea4b143
commit
859e6c7f87
|
@ -7,3 +7,18 @@ dn: olcDatabase={1}hdb,cn=config
|
||||||
changetype: modify
|
changetype: modify
|
||||||
replace: olcRootDN
|
replace: olcRootDN
|
||||||
olcRootDN: cn={{ openldap_admin_user }},{{ openldap_base_dn }}
|
olcRootDN: cn={{ openldap_admin_user }},{{ openldap_base_dn }}
|
||||||
|
|
||||||
|
dn: olcDatabase={1}hdb,cn=config
|
||||||
|
changetype: modify
|
||||||
|
replace: olcAccess
|
||||||
|
olcAccess: {0}to attrs=userPassword,shadowLastChange by self write by anonymous auth by dn="cn={{ openldap_admin_user }},{{ openldap_base_dn }}" write by * none
|
||||||
|
|
||||||
|
dn: olcDatabase={1}hdb,cn=config
|
||||||
|
changetype: modify
|
||||||
|
replace: olcAccess
|
||||||
|
olcAccess: {1}to dn.base="" by * read
|
||||||
|
|
||||||
|
dn: olcDatabase={1}hdb,cn=config
|
||||||
|
changetype: modify
|
||||||
|
replace: olcAccess
|
||||||
|
olcAccess: {2}to * by dn="cn={{ openldap_admin_user }},{{ openldap_base_dn }}" write by * read
|
||||||
|
|
Loading…
Reference in New Issue