question about cn=config replication and security.


I'm running a pair of openldap 2.4 servers which replicate cn=config DB in mirror mode.
Is there a way to configure a RO user (like user from BDB) for cn=config DB, so should someone get a hold of it's password, and still will not be able to change the configs ?