saslauthd: support several authentication methods

Dan White dwhite at olp.net
Mon Dec 14 06:01:05 UTC 2009


On 13/12/09 23:21 -0600, Dan White wrote:
> ldapdb was designed to work without knowledge of your ldap DIT or layout.

I need to clarify. What ldapdb does is that it binds as the user attempting
to authenticate, then performs an LDAPWHOAMI extended operation against the
ldap server to find out what that user's DN is, and then does a search
using that DN as the base and using a scope of 1 for the user's
userPassword (typically).

This allows you to have a complicated tree where you might not have a
common base.

-- 
Dan White



More information about the Pkg-cyrus-sasl2-debian-devel mailing list