[augeas-devel] Re: [PATCH] Ldap lens

David Lutterkort lutter at redhat.com
Mon Aug 25 23:53:28 UTC 2008


On Tue, 2008-08-26 at 01:11 +0200, Free Ekanayaka wrote:
>   DL> I don't know much about LDAP, but the man page suggests that only a fixe
>   DL> dlist of keys are valid in ldap.conf. The lens right now will let you
>   DL> put way more than just valid entries into the tree (and into the file)
> 
>   DL> Is there any way that could be restricted to just the list of entries
>   DL> mentioned on ldap.conf(5) ?
> 
> Well, that would be doable for /etc/ldap/ldap.conf (which is the file
> ldap.conf describes), however there is another file supposed to be
> parsed by the lense, /etc/ldap.conf [0], which has the same syntax (spaced
> key/value entries), but a far larger set of keywords (below you find the
> /etc/ldap.conf installed on my system).

Yeah, upon looking more closely, it seems that LDAP has some magic
mechanisms to add to the config options, so that doing more validation
in the lens will be quite hard. Bummer.

David





More information about the augeas-devel mailing list