From d7d59d0503c806591c5ab3b422547b715a38a4b3 Mon Sep 17 00:00:00 2001 From: Michael Scherer Date: Mon, 22 Nov 2010 13:15:22 +0000 Subject: - use the rootbinddn as preconized by buchan ( and let all access goes through nscd ) --- modules/pam/templates/ldap.conf | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'modules/pam/templates') diff --git a/modules/pam/templates/ldap.conf b/modules/pam/templates/ldap.conf index 61f1bee7..88e47d6b 100644 --- a/modules/pam/templates/ldap.conf +++ b/modules/pam/templates/ldap.conf @@ -1,5 +1,5 @@ -binddn uid=nssldap,ou=System Accounts,<%= dc_suffix %> -bindpw <%= nssldap_password %> +rootbinddn cn=<%= fqdn %>,ou=Hosts,<%= dc_suffix %> + uri ldaps://ldap.<%= domain %> base <%= dc_suffix %> pam_lookup_policy no -- cgit v1.2.1