authentication or authorization method. In fact any number of the
providers can be mixed and matched to provide you with exactly the
scheme that meets your needs. In the following example, both the
- file and ldap based authentication providers are being used.</p>
+ file and LDAP based authentication providers are being used.</p>
<example>
<Directory /www/docs/private><br />
</example>
<p>In this example the file provider will attempt to authenticate
- the user first. If it is unable to authenticate the user, the ldap
+ the user first. If it is unable to authenticate the user, the LDAP
provider will be called. This allows the scope of authentication
to be broadened if your organization implements more than
one type of authentication store. Other authentication and authorization
scenarios may include mixing one type of authentication with a
different type of authorization. For example, authenticating against
- a password file yet authorizing against and ldap directory.</p>
+ a password file yet authorizing against an LDAP directory.</p>
<p>Just as multiple authentication providers can be implemented, multiple
authorization methods can also be used. In this example both file group
- authorization as well as ldap group authorization is being used.</p>
+ authorization as well as LDAP group authorization is being used.</p>
<example>
<Directory /www/docs/private><br />
<example>
# if ((user == "John") ||<br />
- # ((Group == "admin")<br />
+ # ((Group == "admins")<br />
# && (ldap-group <ldap-object> contains auth'ed_user)<br />
# && ((ldap-attribute dept == "sales")<br />
# || (file-group contains auth'ed_user))))<br />
</example>
<p>By default all <directive module="mod_authz_core">Require</directive>
- directives are handled through and OR operation. In other words, if
+ directives are handled through an OR operation. In other words, if
any of the specified authorization methods succeed, then authorization
is granted. By enclosing a set of
<directive module="mod_authz_core">Require</directive> directives within