RE: Groups

> | So, I assume that OpenLDAP doesn't require the objectclass to be 
> | groupOfNames in order for the group functions to work.  In 
> which case,
> I can
> | go ahead with making the objectclasses posixGroup (since NSS *does*
> require
> | the objectclass to be posixGroup) and add an auxilliary objectclass 
> | that will allow for the member attribute.
> Or, you can just make one of them auxiliary ... and nothing 
> else is really affected.
> I think there is a draft schema around that does that already.

I hate to mess with established schemas.  There was a draft schema to make
posixGroup auxilliary (RFC2307bis) but it expired.

-- DK