r18246: Let our openldap slapd.conf include the magic to have DIGEST-MD5 on
authorAndrew Bartlett <abartlet@samba.org>
Fri, 8 Sep 2006 04:35:00 +0000 (04:35 +0000)
committerGerald (Jerry) Carter <jerry@samba.org>
Wed, 10 Oct 2007 19:17:54 +0000 (14:17 -0500)
the server-side work.

source/script/tests/mktestsetup.sh

index 1814e960fd6185e6508a4f973e84ea017b7a7c33..f21d0a235443355acaedbe01e90520a4be0eba51 100755 (executable)
@@ -281,10 +281,16 @@ include $LDAPDIR/ad.schema
 
 pidfile                $PIDDIR/slapd.pid
 argsfile       $LDAPDIR/slapd.args
-
+sasl-realm $DNSNAME
 access to * by * write
 
-allow update_anon bind_anon_dn
+authz-regexp
+          uid=([^,]*),cn=$DNSNAME,cn=digest-md5,cn=auth
+          ldap:///$BASEDN??sub?(samAccountName=$1)
+
+authz-regexp
+          uid=([^,]*),cn=([^,]*),cn=digest-md5,cn=auth
+          ldap:///$BASEDN??sub?(samAccountName=$1)
 
 include $LDAPDIR/modules.conf
 
@@ -293,6 +299,8 @@ defaultsearchbase "$BASEDN"
 backend                bdb
 database        bdb
 suffix         "$BASEDN"
+rootdn          "cn=Manager,$BASEDN"
+rootpw          $PASSWORD
 directory      $LDAPDIR/db
 index           objectClass eq
 index           samAccountName eq
@@ -302,6 +310,7 @@ EOF
 PROVISION_OPTIONS="$CONFIGURATION --host-name=$NETBIOSNAME --host-ip=127.0.0.1"
 PROVISION_OPTIONS="$PROVISION_OPTIONS --quiet --domain $DOMAIN --realm $REALM"
 PROVISION_OPTIONS="$PROVISION_OPTIONS --adminpass $PASSWORD --root=$ROOT"
+PROVISION_OPTIONS="$PROVISION_OPTIONS --simple-bind-dn=cn=Manager,$BASEDN --password=$PASSWORD --root=$ROOT"
 $srcdir/bin/smbscript $srcdir/setup/provision $PROVISION_OPTIONS
 
 LDAPI="ldapi://$LDAPDIR/ldapi"