# Personal LDAP Address Book. Access to dn.regex= "cn=[^,]+,mail= ([^,]+) @ ([^,]+), ou=users,domainname= ([^,]+), o=domains,dc=361way,dc=com$" by Anonymous None by self None by dn.exact= "Cn=bbs,dc=361way,dc=com" read by dn.exact= "Cn=bbsadmin,dc=361way,dc=com" write by dn.regex= "mail=$1@$2,ou=users,domainname=$3,o=domains,dc=361way,dc=com$" write by users None # Allow users to change their own passwords and mail forwarding addresses. Access to attrs= "Userpassword,mailforwardingaddress" by Anonymous Auth by self Write by dn.exact= "Cn=bbs,dc=361way,dc=com" read by dn.exact= "Cn=bbsadmin,dc=361way,dc=com" write by users None # Allow to read others public info. Access to attrs= "Cn,sn,gn,givenname,telephonenumber" by Anonymous Auth by self Write by dn.exact= "Cn=bbs,dc=361way,dc=com" read by dn.exact= "Cn=bbsadmin,dc=361way,dc=com" write by users Read # Domain Attrs. Access to attrs= "objectclass,domainname,mtatransport,enabledservice,domainsenderbccaddress, Domainrecipientbccaddress,domainbackupmx,domainmaxquotasize,domainmaxusernumber " by Anonymous Auth by self Read by dn.exact= "Cn=bbs,dc=361way,dc=com" read by dn.exact= "Cn=bbsadmin,dc=361way,dc=com" write by users Read Access to attrs= "Domainadmin,domainglobaladmin,domainsenderbccaddress,domainrecipientbccaddress" by Anonymous Auth by self Read by dn.exact= "Cn=bbs,dc=361way,dc=com" read by dn.exact= "Cn=bbsadmin,dc=361way,dc=com" write by users None # User Attrs. Access to attrs= "employeenumber,homedirectory,mailmessagestore,mail,accountstatus,usersenderbccaddress, Userrecipientbccaddress,mailquota,backupmailaddress,shadowaddress " by Anonymous Auth by self Read by dn.exact= "Cn=bbs,dc=361way,dc=com" read by dn.exact= "Cn=bbsadmin,dc=361way,dc=com" write by users Read # # Set ACL for Bbs/bbsadmin. # Access to dn= "cn=bbs,dc=361way,dc=com" by Anonymous Auth by self Write by dn.exact= "Cn=bbsadmin,dc=361way,dc=com" write by users None Access to dn= "cn=bbsadmin,dc=361way,dc=com" by Anonymous Auth by self Write by users None # # Allow users to access their own domain subtree. # Allow Domain Admin to modify accounts under same domain. # Access to dn.regex= "domainname= ([^,]+), o=domains,dc=361way,dc=com$" by Anonymous Auth by self Write by dn.exact= "Cn=bbs,dc=361way,dc=com" read by dn.exact= "Cn=bbsadmin,dc=361way,dc=com" write by dn.regex= "mail=[^,]+@$1,o=domainadmins,dc=361way,dc=com$" write by dn.regex= "mail=[^,]+@$1,ou=users,domainname=$1,o=domains,dc=361way,dc=com$" read by users None # # Grant correct privileges to bbs/bbsadmin. # Access to dn.subtree= "o=domains,dc=361way,dc=com" by Anonymous Auth by self Write by dn.exact= "Cn=bbs,dc=361way,dc=com" read by dn.exact= "Cn=bbsadmin,dc=361way,dc=com" write by dn.regex= "mail=[^,]+,ou=users,domainname=$1,o=domains,dc=361way,dc=com$" read by users Read Access to dn.subtree= "o=domainadmins,dc=361way,dc=com" by Anonymous Auth by self Write by dn.exact= "Cn=bbs,dc=361way,dc=com" read by dn.exact= "Cn=bbsadmin,dc=361way,dc=com" write by users None # # Set permission for ' cn=*,dc=361way,dc=com '. # Access to dn.regex= "cn=[^,]+,dc=361way,dc=com" by Anonymous Auth by self Write by users None # # Set default permission. # Access to * by Anonymous Auth by self Write by users Read |