RE: using userPassword attribute

>	Do you have any idea on "storing encrypted creditcard numbers in
>LDAP and retrieving them" ???

Most crypto worth anything is one-way, like a password hash.  So there is 
no 'getting them back'.  I'd recommend storing things like cc numbers in 
the clear and defining an ACL that only allows clients using some level of 
encryption to retrieve the values (see the ssf directive).

