[Pkg-openldap-devel] [openldap] 01/02: remove default 'by self write' (#761406)

Luca Bruno lucab at moszumanska.debian.org
Thu Feb 5 11:51:07 UTC 2015


This is an automated email from the git hooks/post-receive script.

lucab pushed a commit to branch wheezy
in repository openldap.

commit c7dd3bfca31de186b79d265f927c421ae5fb07d0
Author: Ryan Tandy <ryan at nardis.ca>
Date:   Sat Sep 13 11:57:52 2014 -0700

    remove default 'by self write' (#761406)
    
    Conflicts:
    	debian/changelog
---
 debian/changelog       | 8 ++++++++
 debian/slapd.init.ldif | 1 -
 2 files changed, 8 insertions(+), 1 deletion(-)

diff --git a/debian/changelog b/debian/changelog
index d59a82f..09a0501 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,3 +1,11 @@
+openldap (2.4.31-2) UNRELEASED; urgency=high
+
+  [ Ryan Tandy ]
+  * debian/slapd.init.ldif: Disallow modifying one's own entry by default,
+    except specific attributes. (Closes: #761406)
+
+ -- Luca Bruno <lucab at debian.org>  Thu, 05 Feb 2015 12:40:58 +0100
+
 openldap (2.4.31-1+nmu2) unstable; urgency=high
 
   * Non-maintainer upload.
diff --git a/debian/slapd.init.ldif b/debian/slapd.init.ldif
index 6a237e0..f5f8381 100644
--- a/debian/slapd.init.ldif
+++ b/debian/slapd.init.ldif
@@ -79,7 +79,6 @@ olcAccess: to attrs=userPassword,shadowLastChange
   by * none
 olcAccess: to dn.base="" by * read
 olcAccess: to *
-  by self write
   by dn="cn=admin, at SUFFIX@" write
   by * read
 

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/pkg-openldap/openldap.git



More information about the Pkg-openldap-devel mailing list