idmapd umich_ldap bug

Marek Wróbel marek.j.wrobel at gmail.com
Fri Mar 14 18:54:21 EDT 2008


In umich_ldap.c in function umich_id_to_name() in line 515 there is:

attrs[0] = ldap_map.NFSv4_nfsname_attr;

I think that NFSv4_group_nfsname_attr should be used when idtype == 
IDTYPE_GROUP.

I also suggest to change umich_ldap behavior in a way that would allow 
multiple GSSAuthName attributes. It would be useful with several 
authentication mechanisms used concurrently - every user would have both 
a Kerberos principal name and a PKI DN.

Regards,
Marek Wróbel



More information about the NFSv4 mailing list