Netscape DIRECTORY SERVER 6.02 - ADMINISTRATOR Administrator's Manual page 242

Table of Contents

Advertisement

Access Control Usage Examples
aci:
(target="ou=HostedCompany1,ou=corporate-clients,dc=example,dc=com")
(targetattr= "*") (version 3.0; acl "HostedCompany1";
allow (all) (roledn="ldap:///cn=DirectoryAdmin,ou=HostedCompany1,
ou=corporate-clients, dc=example,dc=com") and (authmethod="ssl") and
(dayofweek="Mon,Tues,Wed,Thu") and (timeofday >= "0800" and
timeofday <= "1800") and (ip="255.255.123.234"); )
This example assumes that the ACI is added to the
ou=corporate-clients,dc=example,dc=com
From the Console, you can set this permission by doing the following:
On the Directory tab, right click the HostedCompany1 entry under the
1.
example.com
Permissions from the pop-up menu to display the Access Control Manager.
Click New to display the Access Control Editor.
2.
On the Users/Groups tab, in the ACI name field, type "HostedCompany1". In
3.
the list of users granted access permission, do the following:
a.
b.
c.
d.
On the Rights tab, click the Check All button.
4.
On the Targets tab, click This Entry to display the
5.
ou=HostedCompany1,ou=corporate-clients,dc=example,dc=com
the target directory entry field.
On the Hosts tab, click Add to display the Add Host Filter dialog box. In the IP
6.
address host filter field, type
box.
The IP address must be a valid IP address for the host machine that the
HostedCompany1 administrators will use to connect to the
directory.
242
Netscape Directory Server Administrator's Guide • May 2002
node in the left navigation tree, and choose Set Access
Select and remove All Users, then click Add.
The Add Users and Groups dialog box is displayed.
Set the Search area to Users and Groups, and type DirectoryAdmin in the
Search For field.
This example assumes that you have created an administrators role with a
of
cn
DirectoryAdmin
Click the Add button to list the administrators role in the list of users who
are granted access permission.
Click OK to dismiss the Add Users and Groups dialog box.
ou=HostedCompany1,
entry.
.
. Click OK to dismiss the dialog
255.255.123.234
suffix in
example.com

Advertisement

Table of Contents
loading

This manual is also suitable for:

Directory server 6.02

Table of Contents