[Koha-bugs] [Bug 18947] Unexpected Active Directory LDAP authentication failure mode

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Fri Oct 5 11:52:11 CEST 2018


https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=18947

--- Comment #20 from Martin Renvoize <martin.renvoize at ptfs-europe.com> ---
Hang on.. I just re-read the code again.

So.. it will be binding on the 'user' (not the service user as defined in the
config, but the user whose trying to login).. then as you've got 'update' and
'replicate' enabled that same just bound user will do an ldapsearch upon
themselves.

That doesn't feel right. I bet you're normal koha users don't have search
permissions (even to search for themselves) on the ldap directory (and nor
should they).

-- 
You are receiving this mail because:
You are watching all bug changes.


More information about the Koha-bugs mailing list