On Wed, Aug 29, 2018 at 08:28:27AM +0800, Paul Wise wrote: > In addition, cycles of joining/leaving/joining DM should not give one > any extra privileges over a new DM. Same goes for DD, which is why DSA > strip LDAP groups from retiring/MIA/rejoining DDs.
AFAIK you don't here. At the very least, `ud-lock` doesn't strip any group membership, nor many other details. Julien proposed a patch for ud-ldap some time in the past to do it, but I don't think it was ever merged. -- regards, Mattia Rizzolo GPG Key: 66AE 2B4A FCCF 3F52 DA18 4D18 4B04 3FCD B944 4540 .''`. more about me: https://mapreri.org : :' : Launchpad user: https://launchpad.net/~mapreri `. `'` Debian QA page: https://qa.debian.org/developer.php?login=mattia `-
signature.asc
Description: PGP signature