[dokuwiki] Re: auth backend ldap broken?

  • From: Werner Flamme <werner.flamme@xxxxxx>
  • To: dokuwiki@xxxxxxxxxxxxx
  • Date: Mon, 13 Mar 2006 17:16:33 +0100

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Something like a solution:

After I phpized and installed the ldap extension anew, I get "LDAP: can not
bind anonymously" (inc/auth/ldap.php line 119 or inc/auth/ldap.class.php
line 78). But we use anonymous bind all around the company!?

Well, after I changed $conf['superuser'] to an existing uid in our LDAP,
the error disappears.

Does that mean I cannot have a group as superusers as it is mentioned in
http://wiki.splitbrain.org/wiki:config#superuser since LDAP needs a single
superuser? Is there another way of specifying a uid for LDAP without
writing my uid and password into conf/local.php? ;-)

I know

# Optional bind user and password if anonymous bind is not allowed (develonly)
#$conf['auth']['ldap']['binddn']     = 'cn=admin, dc=my, dc=home';
#$conf['auth']['ldap']['bindpw']     = 'secret';

but this will be a security issue...

Regards,
Werner

- --
Werner Flamme, Abt. WKDV
UFZ Umweltforschungszentrum Leipzig-Halle GmbH,
Permoserstr. 15 - 04318 Leipzig
Tel.: (0341) 235-3921 - Fax (0341) 235-453921
http://www.ufz.de - eMail: werner.flamme@xxxxxx




-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFEFZrhk33Krq8b42MRAoDpAJwJ1YEfUiUpfvVBlitg7sf6zbIJLQCeNLAy
MCx4hBlAFc6amOpk7pmLZto=
=F8Aa
-----END PGP SIGNATURE-----
-- 
DokuWiki mailing list - more info at
http://wiki.splitbrain.org/wiki:mailinglist

Other related posts: