--On Sunday, May 31, 2020 5:13 PM +0000 razvanpopescu@hotmail.com wrote:
binddn="cn=admin,dc=aviva,dc=fr"
access to attrs=userPassword by self write by anonymous auth by * read
Giving everyone read access to the userPassword attribute is an extremely poor idea.
I would suggest testing with the "cn=admin,dc=aviva,dc=fr" identity to see if it specfically has read access to userPassword on the provider, because it seems that it does not.
Regards, Quanah
--
Quanah Gibson-Mount Product Architect Symas Corporation Packaged, certified, and supported LDAP solutions powered by OpenLDAP: http://www.symas.com