[Fedora-directory-users] How to disable subtree level search?

Richard Megginson rmeggins at redhat.com
Mon Nov 20 19:41:46 UTC 2006


A G wrote:
> Hello;
>
> I have a question on LDAP search issue.
> I want to disable full search on the LDAP tree.
>
> Eg:
>
> My LDAP Tree is:
>
> c=US, o=Dept1, cn=John Smith
> c=US, o=Dept1, cn=Ann Adams
>
> I want to deny to read full listing of the tree but only allow when 
> the search condition meets only the required person.
> In the example above I want nobody to be listed. But when the search 
> criteria is "c=US, o=Dept1, cn=Ann Adams"  this entry must be listed. 
> When a search on "c=US" comes, nothing must be listed.
>
> What is the correct  Access Control Information for this request??
You also posted this question to the OpenLDAP list.  Fedora DS and 
OpenLDAP have very different ACI models.  What is your server vendor and 
version?
>
> Thanks.
>
> ------------------------------------------------------------------------
>
> --
> Fedora-directory-users mailing list
> Fedora-directory-users at redhat.com
> https://www.redhat.com/mailman/listinfo/fedora-directory-users
>   
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3178 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.fedoraproject.org/pipermail/389-users/attachments/20061120/75aa2828/attachment.bin>


More information about the 389-users mailing list