openldap 2.3 on RHEL 4 - users changing their own passwords?



I finally got openldap 2.3 built and working, and now I'm trying to let users change their own passwords. Everything I find on the 'Net wants the admin password, something that's obviously not going to happen.

Does anyone know what I need to do to enable this?

The ACL from my slapd.conf is:
<snip>
access to *
by * read

olcAccess: to attrs=userPassword
by self write
by anonymous auth
by dn.base="cn=root,dc=att,dc=com" write
by * none
<snip>

openldap 2.3.39

mark

--
redhat-list mailing list
unsubscribe mailto:redhat-list-request@xxxxxxxxxx?subject=unsubscribe
https://www.redhat.com/mailman/listinfo/redhat-list



Relevant Pages

  • Re: My Pharmacist Friend Called Me Yesterday
    ... > Heh Yeah, lots of things I could have done IF I could have gotten into ... > without knowing the first thing about their computers. ... > recommended the passwords NOT be taped to the monitor. ...
    (alt.2600)
  • Re: Openldap to AD
    ... If passwords are hashed there is no way to bring them into AD. ... Generally it's not a big deal to implement a robust syncing with your ... favoriet scripting language and the accompanying LDAP module. ... Also you can integrate AD's Kerberos with OpenLDAP. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Same encryption codes cannot decrypt password from .NET 1.0 to 2.0
    ... And those passwords are stored in my SQL ... > server. ...
    (microsoft.public.dotnet.languages.csharp)
  • Re: openldap and password aging links?
    ... via Kerberos and authorize using Openldap. ... I'm not adding kerberos to the mix. ... one server with local passwords, ...
    (RedHat)
  • Re: Is SSH worth it??
    ... > Can I ask you for a url to more info on this expect language and it usage. ... Use strong passphrases to protect your keys, but don't use passwords. ...
    (Security-Basics)