[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: filters in ldapACI (WAS Re: I-D ACTION:draft-ietf-ldapext-acl-model-06.txt)



Kurt said

> Though both X.500 subentry and ldapACI offer sophisticated
> scoping specification mechanisms, the X.500 subentry is a general
> mechanism which can be applied to numerous features.  That is, a
> server can implement the subentry complexity once and then apply it to
> multiple features.  ldapACI's mechanism is specific to the feature it
> provides.   Other attributes would have to define it's own scoping
> mechanisms (or use X.500's subentry provided mechanism).
> 

Kurt
I am not sure whether you are arguing for or against the X.500 
subentry type of mechanism in your statements above? Or was it 
just an observation?

David

***************************************************

David Chadwick
IS Institute, University of Salford, Salford M5 4WT
Tel +44 161 295 5351  Fax +44 161 745 8169
Mobile +44 790 167 0359
Email D.W.Chadwick@salford.ac.uk
Home Page  http://www.salford.ac.uk/its024/chadwick.htm
Understanding X.500  http://www.salford.ac.uk/its024/X500.htm
X.500/LDAP Seminars http://www.salford.ac.uk/its024/seminars.htm
Entrust key validation string MLJ9-DU5T-HV8J

***************************************************