pam_ldap to support Active Directory password policy

View: New views
1 Messages — Rating Filter:   Alert me  

pam_ldap to support Active Directory password policy

by thebad :: Rate this Message:

Reply to Author | View Threaded | Show Only this Message

Hi,

I currently have an earlier version of pam_ldap installed, for the RHEL3 - nss_ldap-207-17, which definitely does not seem to enforce AD password policy.
I noticed that it doesn't check the password policy for locked, disabled, expried or "reset at next login", however I can see references to checking password policy for netscape directory. And references to the above states in the source code.
I was wondering whether the current version does support it, and if not, whether there are any forks of pam_ldap that do support the AD password policy for pam_ldap.

Thanks,

T.