[Dovecot] LDAP expired password

Nikolaos Milas nmilas at noa.gr
Fri Apr 1 13:31:52 EEST 2011


On 1/4/2011 11:09 πμ, Sven Hartge wrote:

> Have a look at the ppolicy slapd.overlay. This will solve your problem.
>

I just wanted to mention that there are significant integration issues 
of openldap ppolicy overlay in other software.

(We also aren't sure Rob is using OpenLDAP - he hasn't mentioned.)

There are issues with password expiration warnings. See for example: 
http://lists.horde.org/archives/sork/Week-of-Mon-20091005/002973.html. 
Horde integration might provide solutions to the issues.

In many cases, a separate or a supplemental (to ppolicy) password 
management process should be established, like: 
http://tools.ltb-project.org/news/14 (which I haven't used myself). This 
could be expanded and/or tied to a cron-job that would send warnings to 
users etc. based on ldapsearch results.

Nick


-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 5632 bytes
Desc: S/MIME Cryptographic Signature
Url : http://dovecot.org/pipermail/dovecot/attachments/20110401/4341ec6a/attachment.bin 


More information about the dovecot mailing list