我遇到Apache Directory服务器密码策略问题。它在ApacheDS文档中提到默认情况下密码策略是活动的。我已经将策略配置为保留(之前的5个)密码的历史记录,当用户尝试更改密码时(使用任何现有密码),密码历史记录中应该存在"无效的密码重用"生成异常,但ApacheDS不会生成异常。
密码策略条目如下:
dn: ads-pwdid=default,ou=passwordPolicies,ads-interceptorId=authenticationInterceptor,ou=interceptors,ads-directoryServiceId=default,ou=config
objectclass: ads-passwordPolicy
objectclass: ads-base
objectclass: top
ads-pwdattribute: userPassword
ads-pwdid: default
ads-enabled: TRUE
ads-pwdcheckquality: 1
ads-pwdexpirewarning: 600
ads-pwdfailurecountinterval: 30
ads-pwdgraceauthnlimit: 5
ads-pwdinhistory: 5
ads-pwdlockout: TRUE
ads-pwdlockoutduration: 0
ads-pwdmaxage: 3888000
ads-pwdmaxfailure: 5
ads-pwdminlength: 8
ads-pwdmustchange: TRUE
ads-pwdsafemodify: FALSE
ads-pwdvalidator:org.apache.directory.server.core.api.authn.ppolicy.DefaultPasswordValidator
如果有人可以点亮它,那将非常有帮助