BÖSCH Christian wrote:
> i’m using this acl:
>
> {0}to filter=(objectclass=person) attrs=Hidden by group.exact=“cn=group,ou=groups,o=abc.net” none
>
> but members of the group can still access the attribute Hidden.
> with any filter it does not work.
> if i use a single dn it works.
>
> seems to me filters do not work?
..or there is another ACL applied before reaching this ACL.
Debug this with log level "acl".
Ciao, Michael.
Attachment:
smime.p7s
Description: S/MIME Cryptographic Signature