php8.5
Home/ Manual/ ldap / functions/ ldap_exop_passwd

ldap_exop_passwd

PHP function Edit on GitHub ✎

(PHP 7 >= 7.2.0, PHP 8)

PASSWD extended operation helper

Description

ldap_exop_passwd(LDAP\Connection $ldap, string $user = "", string $old_password = "", string $new_password = "", array $controls = null): string|bool

Performs a PASSWD extended operation.

Parameters

ldap

Ldap

user

dn of the user to change the password of.

old_password

The old password of this user. May be omitted depending of server configuration.

new_password

The new password for this user. May be omitted or empty to have a generated password.

controls

If provided, a password policy request control is send with the request and this is filled with an array of LDAP Controls returned with the request.

Return Values

Returns the generated password if new_password is empty or omitted. Otherwise returns true on success and false on failure.

Changelog

VersionDescription
7.3.0Support for controls added

Examples

PASSWD extended operation

php
<?php
$ds = ldap_connect("localhost");  // assuming the LDAP server is on this host

if ($ds) {
    // bind with appropriate dn to give update access
    $bind = ldap_bind($ds, "cn=root, o=My Company, c=US", "secret");
    if (!$bind) {
      echo "Unable to bind to LDAP server";
      exit;
    }

    // use PASSWD EXOP to change the user password for a generated one
    $genpw = ldap_exop_passwd($ds, "cn=root, o=My Company, c=US", "secret");
    if ($genpw) {
      // use the generated password to bind
      $bind = ldap_bind($ds, "cn=root, o=My Company, c=US", $genpw);
    }

    // set the password back to "secret"
    ldap_exop_passwd($ds, "cn=root, o=My Company, c=US", $genpw, "secret");

    ldap_close($ds);
} else {
    echo "Unable to connect to LDAP server";
}
?>

See Also

Source: reference/ldap/functions/ldap-exop-passwd.xml · from the official PHP manual (php/doc-en)