[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: substring filters using DN attributes ?



Date forwarded: 	Fri, 21 Jul 2000 17:18:07 -0700 (PDT)
Date sent:      	Fri, 21 Jul 2000 17:17:56 -0700
To:             	sanjay jain <sanjay.jain@software.com>
From:           	"Kurt D. Zeilenga" <Kurt@OpenLDAP.org>
Subject:        	Re: substring filters using DN attributes ?
Copies to:      	ldapext <ietf-ldapext@netscape.com>
Forwarded by:   	ietf-ldapext@netscape.com

I think we have an excellent case here for the introduction of a new 
matching rule that will indeed allow matches of the type required on 
DNs.

David


> At 04:45 PM 7/21/00 -0700, sanjay jain wrote:
> >It looks like from standard LDAP schema that 
> >substring matching is not allowed for DN syntax 
> >attributes.  E.g. for 'member' attribute. 
> >Does it mean from
> ><http://www.ietf.org/internet-drafts/draft-just-ldapv3-rescodes-02.tx
> >t>http://www.ietf.org/internet-drafts/draft-just-ldapv3-rescodes-02.t
> >xt section 5.2.2.1.3 that if an LDAP server gets a filter like:
> >member=*dc=org1,dc=com it should return 'inappropriateMatching' error
> >code ? 
> 
> No.
> 
> The filter (member=*dc=org1,dc=com) is Undefined.  The operation
> may complete successful with no entries being returned.
> 
> 
> 


***************************************************

David Chadwick
IS Institute, University of Salford, Salford M5 4WT
Tel +44 161 295 5351  Fax +44 161 745 8169
Mobile +44 790 167 0359
Email D.W.Chadwick@salford.ac.uk
Home Page  http://www.salford.ac.uk/its024/chadwick.htm
Understanding X.500  http://www.salford.ac.uk/its024/X500.htm
X.500/LDAP Seminars http://www.salford.ac.uk/its024/seminars.htm
Entrust key validation string MLJ9-DU5T-HV8J

***************************************************