ldapclient -l returns encrypted password

From: Faye Ellis (faye.ellis@crestco.co.uk)
Date: Tue Oct 08 2002 - 09:51:17 EDT


Hi,

I have installed NDS and configured my Solaris clients to use LDAP. I
am using PAM to allow user authentication via LDAP controlled by the use
of netgroups.

I have found that ldapclient -l passwd returns a full listing of all
directory users including the encrypted password of every user. I guess
this is because the client binds using the credentials of the proxyagent
who needs to have read access to passwords.

Is there a way to prevent ldaplist returning encrypted passwords?

any suggestions appreciated,

thanks

Faye

------------------------------------------------------------------------------
CRESTCo Ltd The views expressed above are not necessarily those
33 Cannon Street held by CRESTCo Limited. Please be aware that emails
London EC4M 5SB (UK) to and from CRESTCo Limited may be monitored.
+44 (020) 7849 0000 http://www.crestco.co.uk
                         CRESTCo Ltd is a part of Euroclear
------------------------------------------------------------------------------
_______________________________________________
sunmanagers mailing list
sunmanagers@sunmanagers.org
http://www.sunmanagers.org/mailman/listinfo/sunmanagers



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 23:25:04 EDT