Bind Rules
timeofday > "0800";
The bind rule is evaluated to be true if the client is accessing the directory at
any time after 8 am.
timeofday < "1800";
The bind rule is evaluated to be true if the client is accessing the directory at
any time before 6 pm.
timeofday >= "0800";
The bind rule is evaluated to be true if the client is accessing the directory at
8am or later.
timeofday <= "1800";
The bind rule is evaluated to be true if the client is accessing the directory at 6
pm or earlier.
dayofweek = "Sun, Mon, Tue";
The bind rule is evaluated to be true if the client is accessing the directory on
Sunday, Monday, or Tuesday.
Defining Access Based on Authentication
Method
You can set bind rules that state that a client must bind to the directory using a
specific authentication method. The authentication methods available are:
•
None—Authentication is not required. This is the default. It represents
anonymous access.
•
Simple—The client must provide a user name and password to bind to the
directory.
•
SSL—The client must bind to the directory over a Secure Sockets Layer (SSL) or
Transport Layer Security (TLS) connection.
In the case of SSL, the connection is established to the LDAPS second port; in
the case of TLS, the connection is established through a Start TLS operation.In
both cases, a certificate must be provided. For information on setting up SSL,
see Chapter 11, "Managing SSL."
•
SASL—The client must bind to the directory over a Simple Authentication and
Security Layer (SASL) connection. Note that Directory Server does not provide
a SASL module.
222
Netscape Directory Server Administrator's Guide • May 2002
Need help?
Do you have a question about the NETSCAPE DIRECTORY SERVER 6.02 - ADMINISTRATOR and is the answer not in the manual?
Questions and answers