[phpldapadmin] [ phpldapadmin-Feature Requests-1745642 ] Add extended password modify support (RFC 3062)

"SourceForge.net" <[email protected]>
Newsgroups gmane.comp.ldap.davedap
Message-ID <[email protected]>
Feature Requests item #1745642, was opened at 2007-06-30 15:20
Message generated for change (Comment added) made by wurley
You can respond by visiting: 
https://sourceforge.net/tracker/?func=detail&atid=498549&aid=1745642&group_id=61828

Please note that this message will contain a full copy of the comment thread,
including the initial issue submission, for this request,
not just the latest update.
Category: None
Group: None
Status: Open
Priority: 5
Private: No
Submitted By: Eric Stadtherr (estadtherr)
Assigned to: Nobody/Anonymous (nobody)
Summary: Add extended password modify support (RFC 3062)

Initial Comment:
When modifying userPassword attributes of a user entity, it would be nice if PLA used the extended password modify operation as described in RFC 3062. This enables additional password-related security features, such as requiring the existing password to be supplied, and enabling the password policy overlay provided by OpenLDAP.

I am asking because I am trying to deploy PLA 1.0.2 as a directory administration tool for our customer, but the sticking point is the fact that it does not support enforcement of password policy. I added the ppolicy overlay to our OpenLDAP directory, but it only takes effect if the RFC3062 extended operation is used to modify the userPassword attribute. PLA uses a "normal" ldap-modify operation that bypasses the policy enforcement.



----------------------------------------------------------------------

>Comment By: Deon George (wurley)
Date: 2009-05-22 17:57

Message:
I dont think the PHP API supports extended operations (yet)? If I am wrong
and somebody can provide an example of how this is done in PHP, i'll aim to
implement it in the next release...

----------------------------------------------------------------------

Comment By: Ilia Chipitsine (chipitsine)
Date: 2009-01-04 18:58

Message:
is there a way how one can determine proper password change ?

sometime we should use ldapmodify, sometimes exop.
having that hardcoded in config.php is not a good idea

----------------------------------------------------------------------

You can respond by visiting: 
https://sourceforge.net/tracker/?func=detail&atid=498549&aid=1745642&group_id=61828

------------------------------------------------------------------------------
Register Now for Creativity and Technology (CaT), June 3rd, NYC. CaT
is a gathering of tech-side developers & brand creativity professionals. Meet
the minds behind Google Creative Lab, Visual Complexity, Processing, & 
iPhoneDevCamp asthey present alongside digital heavyweights like Barbarian
Group, R/GA, & Big Spaceship. http://www.creativitycat.com 
______________________________________
phpLDAPadmin development mailing list.
To unsbuscribe: https://lists.sourceforge.net/lists/listinfo/phpldapadmin-devel
http://phpldapadmin.sourceforge.net/
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.