################################################################################
#
# Apache2 KIT-LDAP configuration file.
#
# The KIT-LDAP configuration file contains configuration options that allow
# access to the kit.edu LDAP servers. It usually is included by auth_ldap or
# auth_kerb etc.
# A common usage would include:
#
#   Include		/etc/apache2/include/ldap
#   Require		valid-user
# or:
#   Require		ldap-attribute gidNumber=<GID>
#   Require		ldap-group cn=<GROUP>,ou=Groups,ou=unix,ou=IDM,dc=kit,dc=edu
#
# When authenticating a group, both Require entries (for the group id and the
# group name) must be specified, since only the first matches for primary and
# only the latter for secondary group memberships.

<IfModule mod_authnz_ldap.c>
	AuthLDAPUrl			"ldaps://kit-ldap-01.scc.kit.edu kit-ldap-02.scc.kit.edu/ou=unix,ou=IDM,dc=kit,dc=edu"
	AuthLDAPGroupAttribute		memberUid
	AuthLDAPGroupAttributeIsDN	off
</IfModule>
