################################################################################
#
# Apache2 AD authentication file (with Distinguished Name).
#
# The AD authentication file (with Distinguished Name) contains configuration
# options that allow authentication against the kit.edu active directory
# servers. The REMOTE_USER environment variable is set to the account's
# Distinguished Name. It can be included from within a <Directory> but not from
# a .htaccess file. A common setup would be:
#
#   AuthName		"My private homepage"
#   Include		/etc/apache2/include/auth_ad_dn
#   Require		valid-user
#
# For authenticating whole groups, please use /etc/apache2/include/auth_ldap
# since group DNs are only guaranteed to be permanent in LDAP but not in AD.

<IfModule mod_auth_basic.c>
	AuthType		Basic
<IfModule mod_authnz_ldap.c>
	AuthBasicProvider	ldap
	AuthLDAPUrl		"ldaps://kit-ad.scc.kit.edu/DC=kit,DC=edu?sAMAccountName"
	AuthLDAPBindDN		"CN=padl,CN=Users,dc=kit,dc=edu"
	AuthLDAPBindPassword	"rw6344tt"
	AuthLDAPRemoteUserIsDN	on
</IfModule>
</IfModule>
