OpenLDAP Password Policy account state handling.

Daniel Fisher dfisher at vt.edu
Mon Dec 12 14:51:36 EST 2016


On Mon, Dec 12, 2016 at 12:41 PM, O'Dowd, Josh <Josh.O'Dowd at mso.umt.edu>
wrote:

> So that is another problem in itself, I think…  that the return attributes
> are not fetched when there is an accountError within the account state.
>

Can you check your LDAP logs to confirm this? You should see the search for
the umid attribute immediately after the bind. If you don't have access to
the LDAP logs, you can also put the org.ldaptive package in DEBUG.

--Daniel Fisher
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20161212/c6d96af4/attachment-0001.html>


More information about the users mailing list