Netscape DIRECTORY SERVER 6.02 - ADMINISTRATOR Administrator's Manual page 245

Table of Contents

Advertisement

aci: (targetattr="connectionTime || accountBalance") (version 3.0;
acl "Billing Info Deny"; deny (write) userdn= "ldap:///self";)
This example assumes that the relevant attributes have been created in the schema,
and that the ACI is added to the
From the Console, you can set this permission by doing the following:
On the Directory tab, right click the subscribers entry under the
1.
node in the left navigation tree, and choose Set Access Permissions from the
pop-up menu to display the Access Control Manager.
Click New to display the Access Control Editor.
2.
On the Users/Groups tab, in the ACI name field, type "Billing Info Deny". In
3.
the list of users granted access permission, do the following:
Select and remove All Users, then click Add.
a.
The Add Users and Groups dialog box is displayed.
Set the Search area in the Add Users and Groups dialog box to to Special
b.
Rights, and select Self from the Search results list.
Click the Add button to list Self in the list of users who are granted access
c.
permission.
Click OK to dismiss the Add Users and Groups dialog box.
d.
On the Rights tab, tick the checkbox for write. Make sure the other checkboxes
4.
are clear.
Click the Edit Manually button and in the LDIF statement that is displayed,
5.
change the word
On the Targets tab, click This Entry to display the
6.
dc=example,dc=com
table, tick the checkboxes for the
attributes.
All other checkboxes should be clear. This task is made easier if you click the
Check None button to clear the checkoxes for all attributes in the table, then
clikc the Name header to organize them alphabetically, and select the
appropriate ones.
This example assumes that you have added the the
accountBalance
ou=subscribers,dc=example,dc=com
to
.
allow
deny
suffix in the target directory entry field. In the attribute
connectionTime
attributes to the schema.
Access Control Usage Examples
example.com
ou=subscribers,
and
accountBalance
connectionTime
Chapter 6
Managing Access Control
entry.
and
245

Advertisement

Table of Contents
loading

This manual is also suitable for:

Directory server 6.02

Table of Contents