change password for user

Michael Ströder michael at stroeder.com
Mon Mar 9 10:27:12 CET 2009


Zhang Huangbin wrote:
> Michael Ströder wrote:
>>> so it would be nice to have
>>> the directory server do the hashing instead. I've found the
>>> method:
>>>
>>>     passwd_s(user, oldpw, newpw, [serverctrls=None, [clientctrls=None]])
>>>
>>> but are there any way to use that when I don't know the plaintext
>>> 'oldpw' ?
>>>     
>>
>> Simply use None for oldpw.
> 
> How can i specfy hash mechanism in passwd_s()? like SSHA, MD5.

You don't. That's completely configured at the server's side.

> It seems use default setting of ldap server (password-hash in openldap
> slapd.conf),

Yes. Other LDAP servers might have a different configuration. Also some
servers set other password attributes as well (e.g. the smbk5pwd overlay
for OpenLDAP sets Samba password attributes and the Kerberos keys for a
heimdal KDC).

Ciao, Michael.



More information about the python-ldap mailing list