Project

General

Profile

Actions

Bug #5244

closed

ldapweb.cgi shouldn't report ou=Account accounts since they're unusable

Added by Shaun Walbridge over 13 years ago. Updated over 12 years ago.

Status:
Resolved
Priority:
Normal
Assignee:
Category:
registry
Target version:
Start date:
11/16/2010
Due date:
% Done:

0%

Estimated time:
Bugzilla-Id:
5244

Description

Because of security considerations, we can't allow users to reuse their credentials from ou=Account, which is where we create the majority of accounts for Plone and SVN. However, when trying to show users other accounts which are the same, we show these accounts, confusing new users.

As a temporary fix, filter out the ou=Account from accounts when making suggestions.

Actions #1

Updated by Shaun Walbridge over 13 years ago

A quick fix in 5650 for this issue, just filtering based on strings. Need to test this, but the development environment is currently broken, will chat to the maintenance tzars to get this working again so we can fix & close this one.

Actions #2

Updated by Matt Jones over 12 years ago

Need to check with Shaun if this is actually fixed.

Actions #3

Updated by ben leinfelder over 12 years ago

Used Jing's test server to verify that ou=Account entries were not shown.
http://chico1.dyndns.org/knb/cgi-bin/ldapweb.cgi?cfg=nceas

Actions #4

Updated by Redmine Admin almost 11 years ago

Original Bugzilla ID was 5244

Actions

Also available in: Atom PDF