directory-commits mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From build...@apache.org
Subject svn commit: r862279 - in /websites/staging/directory/trunk/content: ./ apacheds/advanced-ug/ apacheds/basic-ug/
Date Fri, 17 May 2013 16:56:51 GMT
Author: buildbot
Date: Fri May 17 16:56:50 2013
New Revision: 862279

Log:
Staging update by buildbot for directory

Added:
    websites/staging/directory/trunk/content/apacheds/advanced-ug/4.2.7.2-allow-self-password-modify.html
Modified:
    websites/staging/directory/trunk/content/   (props changed)
    websites/staging/directory/trunk/content/apacheds/advanced-ug/4.2-authorization.html
    websites/staging/directory/trunk/content/apacheds/advanced-ug/4.2.7-using-acis-trail.html
    websites/staging/directory/trunk/content/apacheds/basic-ug/1.3-installing-and-starting.html

Propchange: websites/staging/directory/trunk/content/
------------------------------------------------------------------------------
--- cms:source-revision (original)
+++ cms:source-revision Fri May 17 16:56:50 2013
@@ -1 +1 @@
-1483896
+1483912

Modified: websites/staging/directory/trunk/content/apacheds/advanced-ug/4.2-authorization.html
==============================================================================
--- websites/staging/directory/trunk/content/apacheds/advanced-ug/4.2-authorization.html (original)
+++ websites/staging/directory/trunk/content/apacheds/advanced-ug/4.2-authorization.html Fri
May 17 16:56:50 2013
@@ -188,15 +188,11 @@ time.</p>
 </thead>
 <tbody>
 <tr>
-<td><a href="enablesearchforallusers.html">EnableSearchForAllUsers</a></td>
-<td>Enabling access to browse and read all entries and their attributes by authenticated
users.</td>
-</tr>
-<tr>
 <td>DenySubentryAccess (TBW)</td>
 <td>Protecting access to subentries themselves.</td>
 </tr>
 <tr>
-<td><a href="allowselfpasswordmodify.html">AllowSelfPasswordModify</a></td>
+<td>Allow Self Password Modify](4.2.7.2-allow-self-password-modify.html)</td>
 <td>Granting users the rights needed to change their own passwords.</td>
 </tr>
 <tr>
@@ -207,6 +203,10 @@ time.</p>
 <td>GrantModToEntry (TBW)</td>
 <td>Applying ACI to a single entry.</td>
 </tr>
+<tr>
+<td>Enable Authenticated Users to Browse and Read Entries](4.2.7.1-enable-authenticated-users-to-browse-and-read-entries.html)</td>
+<td></td>
+</tr>
 </tbody>
 </table>
 

Modified: websites/staging/directory/trunk/content/apacheds/advanced-ug/4.2.7-using-acis-trail.html
==============================================================================
--- websites/staging/directory/trunk/content/apacheds/advanced-ug/4.2.7-using-acis-trail.html
(original)
+++ websites/staging/directory/trunk/content/apacheds/advanced-ug/4.2.7-using-acis-trail.html
Fri May 17 16:56:50 2013
@@ -141,6 +141,7 @@
 <h2 id="chapter-content">Chapter content</h2>
 <ul>
 <li><a href="4.2.7.1-enable-authenticated-users-to-browse-and-read-entries.html">4.2.7.1
- Enable Authenticated Users to Browse and Read Entries</a></li>
+<li><a href="4.2.7.2-allow-self-password-modify.html">4.2.7.2 - Allow Self Password
Modify</a></li>
 </ul>
 
 

Added: websites/staging/directory/trunk/content/apacheds/advanced-ug/4.2.7.2-allow-self-password-modify.html
==============================================================================
--- websites/staging/directory/trunk/content/apacheds/advanced-ug/4.2.7.2-allow-self-password-modify.html
(added)
+++ websites/staging/directory/trunk/content/apacheds/advanced-ug/4.2.7.2-allow-self-password-modify.html
Fri May 17 16:56:50 2013
@@ -0,0 +1,195 @@
+<!DOCTYPE html>
+<!--
+    Licensed to the Apache Software Foundation (ASF) under one or more
+    contributor license agreements.  See the NOTICE file distributed with
+    this work for additional information regarding copyright ownership.
+    The ASF licenses this file to You under the Apache License, Version 2.0
+    (the "License"); you may not use this file except in compliance with
+    the License.  You may obtain a copy of the License at
+
+       http://www.apache.org/licenses/LICENSE-2.0
+
+    Unless required by applicable law or agreed to in writing, software
+    distributed under the License is distributed on an "AS IS" BASIS,
+    WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
+    See the License for the specific language governing permissions and
+    limitations under the License.
+-->
+<html>
+	<head>
+		<title>4.2.7.2 - Allow Self Password Modify &mdash; Apache Directory</title>
+		
+        <link href="./../../css/common.css" rel="stylesheet" type="text/css">
+    	<link href="./../../css/green.css" rel="stylesheet" type="text/css">
+    
+        
+        <link rel="shortcut icon" href="./../../images/server-icon_16x16.png">
+    
+        <!-- Google Analytics -->
+        <script src="http://www.google-analytics.com/urchin.js" type="text/javascript"></script>
+        <script type="text/javascript">
+            _uacct = "UA-1358462-1";
+            urchinTracker();
+        </script>
+	</head>
+	<body>
+	    <div id="container">
+            <div id="header">
+                <div id="subProjectsNavBar">
+                    <a href="./../../">
+                        
+                        Apache Directory Project
+                        
+                    </a>
+                    &nbsp;|&nbsp;
+                    <a href="./../../apacheds">
+                        
+                        <STRONG>ApacheDS</STRONG>
+                        
+                    </a>
+                    &nbsp;|&nbsp;
+                    <a href="./../../studio">
+                        
+                        Apache Directory Studio
+                        
+                    </a>
+                    &nbsp;|&nbsp;
+                    <a href="./../../api">
+                        
+                        Apache LDAP API
+                        
+                    </a>
+                </div><!-- subProjectsNavBar -->
+            </div><!-- header -->
+            <div id="content">
+                <div id="leftColumn">
+                    
+<div id="navigation">
+    
+    <h5>ApacheDS 2.0</h5>
+    <ul>
+        <li><a href="./../../apacheds/">Home</a></li>
+        <li><a href="./../../apacheds/features.html">Features</a></li>
+    </ul>
+    <h5>Downloads</h5>
+    <ul>
+        <li><a href="./../../apacheds/downloads.html">ApacheDS 2.0.0-M12</a>&nbsp;&nbsp;<img
src="./../../images/new_badge.gif" alt="" style="margin-bottom:-3px;" border="0"></li>
+        <li><a href="./../../apacheds/download-old-versions.html">Older versions</a></li>
+    </ul>
+    <h5>Documentation</h5>
+    <ul>
+        <li><a href="./../../apacheds/basic-user-guide.html">Basic User Guide
</a></li>
+        <li><a href="./../../apacheds/advanced-user-guide.html">Advanced User
Guide</a></li>
+        <li><a href="./../../apacheds/developer-guide.html">Developer Guide</a></li>
+        <li><a href="./../../apacheds/kerberos-user-guide.html">Kerberos User
Guide</a></li>
+        <li><a href="./../../apacheds/configuration/ads-2.0-configuration.html">Configuration</a></li>
+            <!--li><a href="./../../apacheds/gen-docs/latest">Generated Reports
(e.g. JavaDocs)</a></li-->
+    </ul>
+    
+    
+    <h5>Support</h5>
+    <ul>
+        <li><a href="./../../mailing-lists-and-irc.html">Mailing Lists &amp;
IRC</a></li>
+        <li><a href="./../../sources.html">Sources</a></li>
+        <li><a href="./../../issue-tracking.html">Issue Tracking</a></li>
+        <li><a href="./../../commercial-support.html">Commercial Support</a></li>
+    </ul>
+    <h5>Community</h5>
+    <ul>
+        <li><a href="./../../contribute.html">How to Contribute</a></li>
+        <li><a href="./../../team.html">Team</a></li>
+        <li><a href="./../../original-project-proposal.html">Original Project
Proposal</a></li>
+        <li><a href="./../../special-thanks.html" class="external-link" rel="nofollow">Special
Thanks</a></li>
+    </ul>
+    <h5>About Apache</h5>
+    <ul>
+        <li><a href="http://www.apache.org/">Apache</a></li>
+        <li><a href="http://www.apache.org/licenses/">License</a></li>
+        <li><a href="http://www.apache.org/foundation/sponsorship.html">Sponsorship</a></li>
+        <li><a href="http://www.apache.org/foundation/thanks.html">Thanks</a></li>
+        <li><a href="http://www.apache.org/security/">Security</a></li>
+    </ul>
+    <a href="http://acna13.eventbrite.com/?ref=ecount"><img src="http://holdenweb.com/static/images/BannerSquareSmall.png"
width="168" height="140"></a>
+    
+</div><!-- navigation -->
+
+                </div><!-- leftColumn -->
+                <div id="rightColumn">
+
+
+    <div class="nav">
+        <div class="nav_prev">
+        
+            <a href="4.2.7.1-enable-authenticated-users-to-browse-and-read-entries.html">4.2.7.1
- Enable Authenticated Users to Browse and Read Entries</a>
+		
+        </div>
+        <div class="nav_up">
+        
+            <a href="4.2.7-using-acis-trail.html">4.2.7 Using ACIs trail</a>
+		
+        </div>
+        <div class="nav_next">
+        
+            <a href="4.2.7.3-.html">4.2.7.3 - </a>
+		
+        </div>
+        <div class="clearfix"></div>
+    </div>
+
+
+<h1 id="4272-allow-self-password-modify">4.2.7.2 - Allow Self Password Modify</h1>
+<p>We will  now configure the system to allow anyone to modify his/her own password
:</p>
+<div class="codehilite"><pre>{
+  identificationTag &quot;allowSelfAccessAndModification&quot;,
+  precedence 14,
+  authenticationLevel none,
+  itemOrUserFirst userFirst: 
+  {
+    userClasses { thisEntry },
+    userPermissions 
+    { 
+      { protectedItems {entry}, grantsAndDenials { grantModify, grantBrowse, grantRead }
},
+      { protectedItems {allAttributeValues {userPassword}}, grantsAndDenials { grantAdd,
grantRemove } }
+    } 
+  } 
+}
+</pre></div>
+
+
+<h2 id="commentary">Commentary</h2>
+<p>Note that two different user permissions are used to accurately specify self access
and self modification of the <strong>userPassword</strong> attribute within the
entry.  So with the first userPermission of this ACI a user would be able to read all attributes
and values within his/her entry.  They also have the ability to modify the entry but this
is moot since they cannot add, remove or replace any attributes within their entry.  The second
user permission completes the picture by granting add and remove permissions to all values
of userPassword.  This means the user can replace the password.</p>
+<p><DIV class="warning" markdown="1">
+<strong>grantAdd + grantRemove = grantReplace</strong>
+Modify operations either add, remove or replace attributes and their values in LDAP.  X.500
seems to have overlooked the replace capability.  Hence there is no such thing as a <em>grantReplace</em>
permission.  However grantAdd and grantDelete on an attribute and its values are both required
for a replace operation to take place. 
+</DIV></p>
+
+
+    <div class="nav">
+        <div class="nav_prev">
+        
+            <a href="4.2.7.1-enable-authenticated-users-to-browse-and-read-entries.html">4.2.7.1
- Enable Authenticated Users to Browse and Read Entries</a>
+		
+        </div>
+        <div class="nav_up">
+        
+            <a href="4.2.7-using-acis-trail.html">4.2.7 Using ACIs trail</a>
+		
+        </div>
+        <div class="nav_next">
+        
+            <a href="4.2.7.3-.html">4.2.7.3 - </a>
+		
+        </div>
+        <div class="clearfix"></div>
+    </div>
+
+
+                </div><!-- rightColumn -->
+                <div id="endContent"></div>
+            </div><!-- content -->
+            <div id="footer">&copy; 2003-2012, <a href="http://www.apache.org">The
Apache Software Foundation</a> - <a href="./../../privacy-policy.html">Privacy
Policy</a><br />
+                Apache Directory, ApacheDS, Apache Directory Server, Apache Directory Studio,
Apache LDAP API, Apache Triplesec, Triplesec, Apache, the Apache feather logo, and the Apache
Directory project logos are trademarks of The Apache Software Foundation.
+            </div>
+        </div><!-- container -->
+    </body>
+</html>
\ No newline at end of file

Modified: websites/staging/directory/trunk/content/apacheds/basic-ug/1.3-installing-and-starting.html
==============================================================================
--- websites/staging/directory/trunk/content/apacheds/basic-ug/1.3-installing-and-starting.html
(original)
+++ websites/staging/directory/trunk/content/apacheds/basic-ug/1.3-installing-and-starting.html
Fri May 17 16:56:50 2013
@@ -234,7 +234,7 @@
 <p>and stop it with :</p>
 <p>sudo launchctl stop org.apache.directory.server</p>
 <h2 id="installation-on-linux-and-solaris">Installation on Linux and Solaris</h2>
-<p>The installation for different installers is described on the <a href="http://directory.apache.org/apacheds/2.0/downloads.html">Apache
Directory Server 2.0 Downloads</a> page.</p>
+<p>The installation for different installers is described on the <a href="http://directory.apache.org/apacheds/downloads.html">Apache
Directory Server 2.0 Downloads</a> page.</p>
 
 
     <div class="nav">



Mime
View raw message