The amount of search results returned can already be limited.
Yes, but since the 'limits' option is defined in the slapd.conf, it means that this rule applies on the whole LDAP basis. Perhaps it is useful to authorize exhaustive search on some LDAP subtrees and to deny it for others. (it depends on the organization of the LDAP tree)
-- Quanah Gibson-Mount Principal Software Developer ITSS/TSS/Computing Systems ITSS/TSS/Infrastructure Operations Stanford University GnuPG Public Key: http://www.stanford.edu/~quanah/pgp.html