diff options
author | jim-p <jimp@pfsense.org> | 2010-10-27 13:09:54 -0400 |
---|---|---|
committer | jim-p <jimp@pfsense.org> | 2010-10-27 13:11:16 -0400 |
commit | 64ce9d72026e798ccaec42ffa68d74ec21c0c993 (patch) | |
tree | b02e8e62ed15f78697e43bd5ac55ef2ed27c8fad /etc/inc/auth.inc | |
parent | b019222ac2bdce1b93895fb03310bd900010c709 (diff) | |
download | pfsense-64ce9d72026e798ccaec42ffa68d74ec21c0c993.zip pfsense-64ce9d72026e798ccaec42ffa68d74ec21c0c993.tar.gz |
Do not require LDAP search base DN. Requiring this can prevent some valid LDAP configurations from properly authenticating. (See GDD-550841).
Diffstat (limited to 'etc/inc/auth.inc')
-rw-r--r-- | etc/inc/auth.inc | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/etc/inc/auth.inc b/etc/inc/auth.inc index 9c448be..13ca678 100644 --- a/etc/inc/auth.inc +++ b/etc/inc/auth.inc @@ -936,7 +936,7 @@ function ldap_backed($username, $passwd, $authcfg) { else $ldapfunc = "ldap_search"; /* Support legacy auth container specification. */ - if (stristr($ldac_split, "DC=")) + if (stristr($ldac_split, "DC=") || empty($ldapbasedn)) $search = @$ldapfunc($ldap,$ldac_split,$ldapfilter); else $search = @$ldapfunc($ldap,"{$ldac_split},{$ldapbasedn}",$ldapfilter); |