From: Thomas Vogt (no email)
Date: Thu Dec 16 2004 - 11:38:03 EST
Am Donnerstag, den 16.12.2004, 11:14 -0500 schrieb Igor Brezac:
> > First of all. Do I've to definied the ldap_filter in imapd.conf and in
> > saslauthd.conf? I thought sasl_pwcheck_method: saslauthd for imapd.conf
> > is enough.
> >
>
> Correct. You can only define ldap_filter in saslauthd.conf.
Thnx.
> > Is it not possible to authenticate a user in cyrus-imapd with other
> > names than the default uid/mailbox name even if I've set ldap_filter? Is
> > the username check limited to the mailbox.db?
> > I mean cyrus can always get the uid if a user authenticate itself as
> > with another entry in den ldap server.
>
> This is not how it works. saslauthd verifies passwords only.
>
> There are several ways to implement user rewriting functionality. I would
> write a custom sasl canon plugin.
Ok. I know that there is a short explanation about canon_user plugin at
http://asg.web.cmu.edu/cyrus/download/sasl/plugprog.html#canon_user
I'm not a C Coder. Do you have any code snipet or a real custom sasl
canon plugin as an example?
regards
Thomas
--- Cyrus Home Page: http://asg.web.cmu.edu/cyrus Cyrus Wiki/FAQ: http://cyruswiki.andrew.cmu.edu List Archives/Info: http://asg.web.cmu.edu/cyrus/mailing-list.html
|
|
|