Granting Rights To Add And Delete Group Entries - Netscape DIRECTORY SERVER 6.01 - ADMINISTRATOR Administrator's Manual

Table of Contents

Advertisement

Access Control Usage Examples
aci: (version 3.0; acl "HR"; allow (all) userdn=
"ldap:///cn=HRgroup,ou=example-people,dc=example,dc=com";)
This example assumes that the ACI is added to the
ou=example-people,dc=example,dc=com
From the Console, you can set this permission by doing the following:
On the Directory tab, right click the
1.
example.com
Permissions from the pop-up menu to display the Access Control Manager.
Click New to display the Access Control Editor.
2.
On the Users/Groups tab, in the ACI name field, type "HR". In the list of users
3.
granted access permission, do the following:
a.
b.
c.
d.
On the Rights tab, click the Check All button.
4.
All checkboxes are ticked, except for Proxy rights.
Click OK.
5.
The new ACI is added to the ones listed in the Access Control Manager
window.

Granting Rights to Add and Delete Group Entries

Some organizations want to allow employees to create entries in the tree if it can
increase their efficiency, or if it can contribute to the corporate dynamics.
236
Netscape Directory Server Administrator's Guide • January 2002
node in the left navigation tree, and choose Set Access
Select and remove All Users, then click Add.
The Add Users and Groups dialog box is displayed.
Set the Search area to Users and Groups, and type "HRgroup" in the
Search for field.
This example assumes that you have created an HR group or role. For
more information on groups and roles, see Chapter 5, "Advanced Entry
Management."
Click the Add button to list the HR group in the list of users who are
granted access permission.
Click OK to dismiss the Add Users and Groups dialog box.
entry.
example.com-people
entry under the

Advertisement

Table of Contents
loading

This manual is also suitable for:

Directory server 6.01

Table of Contents