Update rlm_ldap documentation (groupmembership_filter)
authorAlexandre Paradis <ap@alexparadis.net>
Mon, 14 Apr 2014 03:56:34 +0000 (22:56 -0500)
committerAlexandre Paradis <ap@alexparadis.net>
Mon, 14 Apr 2014 03:56:34 +0000 (22:56 -0500)
Replace member=%{Ldap-UserDn} with member=%{control:Ldap-UserDn} in the groupmembership_filter as per the default configuration.

doc/rlm_ldap

index d44e196..39b13b8 100644 (file)
@@ -232,9 +232,9 @@ the rlm_ldap module:
 #      groupmembership_filter: The filter to search for group membership of a
 #      particular user after we have found the DN for the group.
 #
-#      default: (|(&(objectClass=GroupOfNames)(member=%{Ldap-UserDn}))(&(objectClass=GroupOfUniqueNames)(uniquemember=%{Ldap-UserDn})))
+#      default: (|(&(objectClass=GroupOfNames)(member=%{control:Ldap-UserDn}))(&(objectClass=GroupOfUniqueNames)(uniquemember=%{control:Ldap-UserDn})))
 #
-#      groupmembership_filter = "(|(&(objectClass=GroupOfNames)(member=%{Ldap-UserDn}))(&(objectClass=GroupOfUniqueNames)(uniquemember=%{Ldap-UserDn})))"      
+#      groupmembership_filter = "(|(&(objectClass=GroupOfNames)(member=%{control:Ldap-UserDn}))(&(objectClass=GroupOfUniqueNames)(uniquemember=%{control:Ldap-UserDn})))"      
 
 
 #      groupmembership_attribute: The attribute in the user entry that states