https://bugs.openldap.org/show_bug.cgi?id=10081
Ondřej Kuzník ondra@mistotebe.net changed:
What |Removed |Added ---------------------------------------------------------------------------- Status|UNCONFIRMED |RESOLVED Resolution|--- |INVALID
--- Comment #1 from Ondřej Kuzník ondra@mistotebe.net --- Hi Carsten, I'm afraid you're not passing the correct data to -o peername.
Using "by peername.ip=10.10.10.10" is the same as using "by peername=IP=10.10.10.10", which is what you should be passing to to slapacl. Indeed when you run slapacl -o peername=IP=10.10.10.10, you should see the ACL match and do what you expect.
I can see the relevant parts of slapd.access(5)+slapacl(8) are quite hard to process, improvements to their wording are welcome if you can think of any.