Matthias Löbe wrote:
Hello Tim,

thank you for your answer. In case you ever want to improve LDAP support, I 
would have some addditional wishes:

a) the uid field should be used for a subtree filter query rather then for composing the RDN in 
form "uid=$1,..." since some directory services (as ours) won't use DN's starting with 
"uid="

b) allow empty base DN, because possibly you have users in distinct parts of 
the DIT, i.e. starting with c=de, c=us, c=fr ...

c) support groups. I might wish not to give all user the right to access but 
limiting it to a certain group which member DN's will have access

d) use displayName rather than cn for the user's name

Thanks; I've noted your suggested enhancements internally :)

Regards,

~Tim
--
Tim Haynes
Product Development Consultant
OpenLink Software
<http://www.openlinksw.com/>

Reply via email to