httpd-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From David Hawes <>
Subject [users@httpd] 2.4 mod_ldap subgroup filter
Date Tue, 01 Oct 2013 15:03:48 GMT
When performing subgroup searches, an LDAP search with scope base is
issued on the DN of a group with a hard-coded filter of "cn=*". If the
group does not have a cn, the search will fail.

Since we simply want to get the group members, the default filter of
"objectClass=*" should be used.

A patch is attached that sets the filter to NULL, which defaults to

View raw message