[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: Implementing organizational "accounts" with LDAP



>1) Define all your "accounts" in one place (ou=accounts) and then where
>relevant have a pointer (dn valued attribute) from an account entry to any
>real-world entities associated with it (eg to a person in ou=people). And/or
>maybe a pointer in the other direction (from a person to each of their
>accounts). See:
>http://www.openldap.org/lists/openldap-general/200001/msg00043.html

Another approach is, where a real world entity has several accounts,
and no account is associated with more than one real world entity,
to place accounts subordinate to the real world entity's entry.


-- Luke


--
Luke Howard | lukeh@padl.com
PADL Software | www.padl.com