From aa6c01a062b00516c9d26f3e23bd04b1075c4e2f Mon Sep 17 00:00:00 2001 From: Allan Feid Date: Mon, 11 Mar 2013 23:11:52 -0400 Subject: Add a dereference option for ldap This allows proper dereferencing of aliased objects in an LDAP tree. Fixes Bug #1153786 Change-Id: Ia09a99b7bca1ab055eb0c6dfa34138beca15bff0 --- etc/keystone.conf.sample | 5 +++++ 1 file changed, 5 insertions(+) (limited to 'etc') diff --git a/etc/keystone.conf.sample b/etc/keystone.conf.sample index 426e3b24..b39eb926 100644 --- a/etc/keystone.conf.sample +++ b/etc/keystone.conf.sample @@ -140,6 +140,11 @@ # Maximum results per page; a value of zero ('0') disables paging (default) # page_size = 0 +# The LDAP dereferencing option for queries. This can be either 'never', +# 'searching', 'always', 'finding' or 'default'. The 'default' option falls +# back to using default dereferencing configured by your ldap.conf. +# alias_dereferencing = default + # The LDAP scope for queries, this can be either 'one' # (onelevel/singleLevel) or 'sub' (subtree/wholeSubtree) # query_scope = one -- cgit