diff --git a/poc-1/db.ldif b/poc-1/db.ldif index 0df1bd7..af32e85 100644 --- a/poc-1/db.ldif +++ b/poc-1/db.ldif @@ -9,7 +9,13 @@ olcAccess: {0}to attrs=userPassword by anonymous auth by dn="cn=admin,dc=cfdt,dc=fr" write by * none -olcAccess: {1}to dn.base="" by * read -olcAccess: {2}to * by self write by dn="cn=admin,dc=cfdt,dc=fr" write by * read +olcAccess: {1}to dn.base="" + by dn.regex="gidNumber=.*+uidNumber=.*,cn=peercred,cn=external,cn=auth" manage + by * read +olcAccess: {2}to * + by dn.regex="gidNumber=.*+uidNumber=.*,cn=peercred,cn=external,cn=auth" manage + by self write + by dn="cn=admin,dc=cfdt,dc=fr" write + by * read olcRootDN: dc=cfdt,dc=fr olcRootPW: admin