Alexis Castillo said this with great authority:
It's working for me, but I only have it for internal users.
Comment out the
$Self->{'AuthModule::LDAP::AccessAttr'} = 'memberUid';
in Config.pm
You should only have the
$Self->{'AuthModule::LDAP::UserAttr'} = 'DN';
Only users in your
$Self->{'AuthModule::LDAP::GroupDN'} = 'cn=<group>, ou=<its OU>,
dc=example, dc=com';
should be able to log in.
Bummer, still not working.
I just have these two lines:
$Self->{'AuthModule::LDAP::GroupDN'} = 'cn=<group>, ou={'AuthModule::LDAP::UserAttr'} = 'DN';
I thought it was working. I set it to a group I'm in and was able to log
in. So I logged out and set it to another group and I could still log in.
Care to copy and paste all of the Active Directory sections of your
Config.pm file so I can see if I'm missing anything or misunderstanding
you?
CD
Ever lied? You're a liar. Ever stolen? You're a thief. Ever hated? The
bible equates hate with murder. Ever lusted? Jesus equated lust with
adultery. You've broken God's law.
He'll judge all evil and you're without hope -- unless you have a savior.
Repent and believe.