The default access control policy is allow read by all clients.
Note that the database rootdn is always allowed to override the access control policy. That is, the rootdn always has full (from auth to write) access to the database.
