--On Wednesday, April 15, 2020 7:40 PM +0200 Clément OUDOT clement.oudot@worteks.com wrote:
I have done some tests today, I did not find a solution.
I tried to give the "manage" right to a service account, and then use the relax or ManageDSAIT controls to force the change of a password which is too short, it is always rejected. The modification is only accepted if it is done by rootdn.
Correct, this is a deficiency in the current implementation. Ties in somewhat to https://bugs.openldap.org/show_bug.cgi?id=9211
Regards, Quanah
--
Quanah Gibson-Mount Product Architect Symas Corporation Packaged, certified, and supported LDAP solutions powered by OpenLDAP: http://www.symas.com