[Date Prev][Date Next] [Chronological] [Thread] [Top]

RE: Beginning taxonomy for finding LDAP servers.



David - But what about distributed authentication and common access
control?
 As this will only work as  read only - public LDAP servers. It makes
all the security effort with LDAP wasted - as well.
regards alan

> -----Original Message-----
> From:	David Chadwick 
> Sent:	Saturday, May 08, 1999 6:07 AM
> To:	Ryan Moats; ietf-ldapext@netscape.com
> Subject:	Re: Beginning taxonomy for finding LDAP servers.
> 
> Ryan
> 
> There is another approach that you have not mentioned, and that is 
> to have an LDAP knowledge server. The LDAP knowlegde server 
> holds cross references to possibly hundreds of other LDAP servers. 
> THen a client only needs to know about its local LDAP server and 
> the knowledge server. The knowledge server will return a referral to 
> the correct LDAP server that holds a particular naming context. This 
> method allows both the dc and country based naming schemes to 
> co-exist, as a knowledge server can hold references to both types of 
> DN (since there are no name clashes between them, all the DNs are 
> still unique)
> 
> With replication between knowledge servers, this information can be 
> distributed around the world quite easily.
> 
> David
> 
> ***************************************************
> 
> David Chadwick
> IT Institute, University of Salford, Salford M5 4WT
> Tel +44 161 295 5351  Fax +44 161 745 8169
> *NEW* Mobile +44 790 167 0359 *NEW*
> Email D.W.Chadwick@iti.salford.ac.uk
> Home Page  http://www.salford.ac.uk/its024/chadwick.htm
> Understanding X.500  http://www.salford.ac.uk/its024/X500.htm
> X.500/LDAP Seminars http://www.salford.ac.uk/its024/seminars.htm
> Entrust key validation string MLJ9-DU5T-HV8J
> 
> ***************************************************