[exim] Re: Problem with LDAP authenticator

Top Page
Delete this message
Reply to this message
Author: Jeremy Harris
Date:  
To: exim-users
Subject: [exim] Re: Problem with LDAP authenticator
On 06/07/2023 15:44, Pierre Filippone via Exim-users wrote:
> 2023-07-05 14:47:36 tainted search query is not properly quoted (ACL
> accept, /etc/exim/exim.conf 461): user="uid=xyz,dc=example,dc=com"
> pass="cleartextpassword"
> ldaps:///dc=example,dc=com?uid?sub?(&(uid=xyz)(mail=*))


The clue is in the log line:

"ACL accept, /etc/exim/exim.conf 461".

It's not your authenticator, it's an expansion in an ACL.
--
Cheers,
Jeremy


--
## subscription configuration (requires account):
## https://lists.exim.org/mailman3/postorius/lists/exim-users.lists.exim.org/
## unsubscribe (doesn't require an account):
## exim-users-unsubscribe@???
## Exim details at http://www.exim.org/
## Please use the Wiki with this list - http://wiki.exim.org/