OpenLDAP Faq-O-Matic : OpenLDAP Software FAQ : Configuration : SLAPD Configuration : Access Control : Access control customization : DynACL: pluggable access control configuration : posixgroup | |
The posixgroup dynacl module allows to write posixGroup membership
based access rules.
Its use is strongly discouraged because it is very inefficient,
but mostly because posixGroup membership is a badly designed
grouping philosophy (from an LDAP point of view) which should always
be replaced by LDAP membership based on groupOfNames/member
(please avoid groupOfUniqueNames/uniqueMember as well).
Note that the same behavior can be obtained
using sets.
| |
[Append to This Answer] |
Previous: | ACI |
|