Member; Membercertificatedescription - Red Hat DIRECTORY SERVER 8.1 - SCHEMA Reference

Hide thumbs Also See for DIRECTORY SERVER 8.1 - SCHEMA:
Table of Contents

Advertisement

OID
Syntax
Multi- or Single-Valued
Defined in

2.106. member

The member attribute contains the distinguished names (DNs) of each member of a group. For
example:
member: cn=John Smith, dc=example,dc=com
OID
Syntax
Multi- or Single-Valued
Defined in

2.107. memberCertificateDescription

This attribute is a multi-valued attribute where each value is a description, a pattern, or a filter
matching the subject DN of a certificate, usually a certificate used for SSL client authentication.
memberCertificateDescription matches any certificate that contains a subject DN with the
same attribute-value assertions (AVAs) as the description. The description may contain multiple ou
AVAs. A matching DN must contain those same ou AVAs, in the same order, although it may be
interspersed with other AVAs, including other ou AVAs. For any other attribute type (not ou), there
should be at most one AVA of that type in the description. If there are several, all but the last are
ignored.
A matching DN must contain that same AVA but no other AVA of the same type nearer the root (later,
syntactically).
AVAs are considered the same if they contain the same attribute description (case-insensitive
comparison) and the same attribute value (case-insensitive comparison, leading and trailing
whitespace ignored, and consecutive whitespace characters treated as a single space).
To be considered a member of a group with the following memberCertificateDescription value,
a certificate needs to include ou=x, ou=A, and dc=example, but not dc=company.
memberCertificateDescription: {ou=x, ou=A, dc=company, dc=example}
To match the group's requirements, a certificate's subject DNs must contain the same ou attribute
types in the same order as defined in the memberCertificateDescription attribute.
OID
Syntax
Multi- or Single-Valued
Defined in
0.9.2342.19200300.100.1.10
DN
Multi-valued
70
RFC 1274
2.5.4.31
DN
Multi-valued
71
RFC 2256
2.16.840.1.113730.3.1.199
IA5String
Multi-valued
Directory Server
member
37

Advertisement

Table of Contents
loading

Table of Contents