(Answer) (Category) OpenLDAP Faq-O-Matic : (Category) OpenLDAP Software FAQ : (Category) Configuration : (Category) SLAPD Configuration : (Category) Access Control : (Category) Access control customization : (Category) DynACL: pluggable access control configuration : (Answer) posixgroup
The posixgroup dynacl module allows to write posixGroup membership based access rules.

Its use is strongly discouraged because it is very inefficient, but mostly because posixGroup membership is a badly designed grouping philosophy (from an LDAP point of view) which should always be replaced by LDAP membership based on groupOfNames/member (please avoid groupOfUniqueNames/uniqueMember as well).

Note that the same behavior can be obtained using sets.

[Append to This Answer]
Previous: (Category) ACI
This document is: http://www.openldap.org/faq/index.cgi?file=1288
[Search] [Appearance]
This is a Faq-O-Matic 2.721.test.
© Copyright 1998-2013, OpenLDAP Foundation, info@OpenLDAP.org