I have already wroten a message, but I think I couldn't 
explain my problem clearly.
I would like to define an ACL that permits to a user 
defined in a position in the tree to read only a subtree 
whose root position depends on the position of the user.
For example, if the user is 
he can read everywhere under
If the user is 
he can read everywhere under
The users are added/removed by my application at runtime, 
so I would like to have the privileges been assigned to new 
users without restarting slapd. Is it possible ?

Thanks for your attention,
Ludovico Basili