ldap/schema/acl-data.ldif

81 lines
3.1 KiB
Plaintext
Raw Normal View History

2023-03-31 23:56:40 +00:00
dn: olcDatabase={1}mdb,cn=config
changetype: modify
replace: olcAccess
olcAccess: to *
by dn.exact=gidNumber=0+uidNumber=0,cn=peercred,cn=external,cn=auth manage
2023-05-20 03:48:21 +00:00
by dn.regex="cn=.+,ou=Robots,c=.+" read
by * break
2023-05-20 03:48:21 +00:00
olcAccess: to attrs=userPassword,sambaNTPassword,sambaLMPassword
2023-03-31 23:56:40 +00:00
by self write
by anonymous auth
by group/groupOfNames/member.exact="cn=admin,ou=groups,c=au" write
2023-05-20 03:48:21 +00:00
olcAccess: to dn.regex="^c=.+$"
2023-03-31 23:56:40 +00:00
by group/groupOfNames/member.exact="cn=admin,ou=groups,c=au" write
by * read
2023-05-20 03:48:21 +00:00
olcAccess: to dn.regex="c=.+$"
by group/groupOfNames/member.exact="cn=admin,ou=groups,c=au" write
by * break
olcAccess: to dn.regex="^o=.+,c=.+$"
by group/groupOfNames/member.exact="cn=admin,ou=groups,c=au" write
2023-03-31 23:56:40 +00:00
by * read
2023-05-20 03:48:21 +00:00
olcAccess: to dn.regex="o=.+,c=.+$" attrs=wsAccountContact
2023-03-31 23:56:40 +00:00
by group/groupOfNames/member.exact="cn=admin,ou=groups,c=au" write
2023-05-20 03:48:21 +00:00
by self write
by dnattr=wsAccountOwner read
by anonymous auth
2023-03-31 23:56:40 +00:00
by * read
2023-05-20 03:48:21 +00:00
olcAccess: to dn.regex="ou=(People|Customers|Applications|BBS),o=(.+),c=(.+)$" attrs=mail,uid,cn,givenName,sn
2023-03-31 23:56:40 +00:00
by self write
by group/groupOfNames/member.exact="cn=admin internal,ou=groups,c=au" write
by group/groupOfNames/member.expand="cn=People,ou=Admin,o=$1,c=$2" write
by * search
2023-05-20 03:48:21 +00:00
olcAccess: to dn.regex="ou=(People|Customers|Applications|BBS),o=(.+),c=(.+)$" attrs=mailRoutingAddress,mailHost,entry,entryuuid
2023-03-31 23:56:40 +00:00
by self write
by group/groupOfNames/member.exact="cn=admin internal,ou=groups,c=au" write
by group/groupOfNames/member.expand="cn=People,ou=Admin,o=$1,c=$2" write
2023-05-20 03:48:21 +00:00
by * read
olcAccess: to dn.regex="ou=(People|Customers),o=(.+),c=(.+)$" attrs=shadowLastChange
2023-03-31 23:56:40 +00:00
by self write
by group/groupOfNames/member.exact="cn=admin internal,ou=groups,c=au" write
by group/groupOfNames/member.expand="cn=People,ou=Admin,o=$1,c=$2" write
2023-05-20 03:48:21 +00:00
olcAccess: to dn.regex="ou=People,o=(.+),c=(.+)$"
2023-03-31 23:56:40 +00:00
by self write
by group/groupOfNames/member.exact="cn=admin internal,ou=groups,c=au" write
by group/groupOfNames/member.expand="cn=People,ou=Admin,o=$1,c=$2" write
by * read
2023-05-20 03:48:21 +00:00
olcAccess: to dn.regex="ou=(Applications|Customers|BBS|Groups),o=(.+),c=(.+)$"
2023-03-31 23:56:40 +00:00
by self write
by group/groupOfNames/member.exact="cn=admin internal,ou=groups,c=au" write
by group/groupOfNames/member.expand="cn=People,ou=Admin,o=$1,c=$2" write
2023-05-20 03:48:21 +00:00
by dnattr=wsAccountOwner read
2023-03-31 23:56:40 +00:00
by dnattr=uniqueMember read
2023-05-20 03:48:21 +00:00
by * search
olcAccess: to dn.regex="ou=(DNS|Hosts|Network),o=(.+),c=(.+)$"
2023-03-31 23:56:40 +00:00
by group/groupOfNames/member.exact="cn=admin internal,ou=groups,c=au" write
by group/groupOfNames/member.expand="cn=Management,ou=Admin,o=$1,c=$2" read
by dnattr=wsAccountOwner read
2023-05-20 03:48:21 +00:00
by * search
olcAccess: to dn.regex="ou=.+,o=(.+),c=(.+)$" attrs=uniqueMember,member
2023-03-31 23:56:40 +00:00
by self write
by group/groupOfNames/member.exact="cn=admin internal,ou=groups,c=au" write
2023-05-20 03:48:21 +00:00
by group/groupOfNames/member.expand="cn=People,ou=Admin,o=$1,c=$2" write
2023-03-31 23:56:40 +00:00
by dnattr=uniqueMember read
by dnattr=wsAccountOwner read
olcAccess: to *
by * search
-
replace: olcAddContentAcl
olcAddContentAcl: FALSE
-
replace: olcLastMod
olcLastMod: TRUE
-
replace: olcMaxDerefDepth
olcMaxDerefDepth: 0
-
replace: olcReadOnly
olcReadOnly: FALSE
-
replace: olcMonitoring
olcMonitoring: FALSE