George Holbert wrote:
I've noticed that the 'ip' keyword in ACI bind rules
seems to have no
effect on its own. For example,
This does not deny access to IP 220.127.116.11:
aci: (version 3.0; acl "Deny 18.104.22.168"; deny(all) (ip = "22.214.171.124");)
But when combined with a userdn clause like this, it works:
aci: (version 3.0; acl "Deny 126.96.36.199"; deny(all) (userdn =
"ldap:///anyone") and (ip = "188.8.131.52");)
Is this known/expected behavior?
Just want to make sure I'm interpreting this right.
Looks like it's
probably a bug in the aci code.
Thanks a lot,
Fedora-directory-users mailing list