Access Control Usage Examples
b.
c.
d.
In the Rights tab, tick the checkbox for write. Make sure the other checkboxes
4.
are clear.
Click the Edit Manually button and in the LDIF statement that is displayed,
5.
change the word
In the Targets tab, click This Entry to display the
6.
dc=example,dc=com
attribute table, tick the checkboxes for the
accountBalance
All other checkboxes should be clear. This task is made easier if you click the
Check None button to clear the checkoxes for all attributes in the table, then
clikc the Name header to organize them alphabetically, and select the
appropriate ones.
This example assumes that you have added the the
accountBalance
Click OK.
7.
The new ACI is added to the ones listed in the Access Control Manager
window.
Setting a Target Using Filtering
If you want to set access controls that allow access to a number of entries that are
spread across the directory, you may want to use a filter to set the target. Keep in
mind that because search filters do not directly name the object for which you are
managing access, it is easy to unintentionally allow or deny access to the wrong
objects, especially as your directory becomes more complex. Additionally, filters
can make it difficult for you to troubleshoot access control problems within your
directory.
The following procedure shows you how to grant user
department number, home phone number, home postal address, JPEG photo, and
manager attributes for all members of the accounting organization.
252
Netscape Directory Server Administrator's Guide • December 2003
Set the Search area in the Add Users and Groups dialog box to to Special
Rights, and select Self from the Search results list.
Click the Add button to list Self in the list of users who are granted access
permission.
Click OK to dismiss the Add Users and Groups dialog box.
to
allow
suffix in the target directory entry field. In the
attributes.
attributes to the schema.
.
deny
connectionTime
ou=subscribers,
and
and
connectionTime
write access to the
bjensen
Need help?
Do you have a question about the NETSCAPE DIRECTORY SERVER 6.2 - ADMINISTRATOR and is the answer not in the manual?