Matthias Löbe wrote:
Hello Tim,
thank you for your answer. In case you ever want to improve LDAP support, I
would have some addditional wishes:
a) the uid field should be used for a subtree filter query rather then for composing the RDN in
form "uid=$1,..." since some directory services (as ours) won't use DN's starting with
"uid="
b) allow empty base DN, because possibly you have users in distinct parts of
the DIT, i.e. starting with c=de, c=us, c=fr ...
c) support groups. I might wish not to give all user the right to access but
limiting it to a certain group which member DN's will have access
d) use displayName rather than cn for the user's name
Thanks; I've noted your suggested enhancements internally :)
Regards,
~Tim
--
Tim Haynes
Product Development Consultant
OpenLink Software
<http://www.openlinksw.com/>