[ldap-generic-pwd-change-error-map] stanza

The stanza entries for configuring the error mappings between Verify Identity Access and the generic LDAP server is in the [ldap-generic-pwd-change-error-map] stanza of the ldap.conf configuration files.

This stanza is used only for generic LDAP servers. Verify Identity Access defines a generic LDAP server as not being one of the following LDAP servers:
  • Security Directory Server
  • Novell eDirectory Server
  • Sun Java™ System Directory Server
  • Sun ONE Directory Server

LDAP servers often have unique error codes that are returned to the LDAP client when users attempt to change or update their passwords. The generated errors can be due to password policy or password strength rules that are imposed by the LDAP server. For Verify Identity Access to interpret the status correctly, Verify Identity Access needs to know how to interpret these unique error codes.

Any enforcement by the LDAP server on the password requirements occurs after Verify Identity Access validates the compliance of the password against any Verify Identity Access password policies that are currently in effect.