![Netscape NETSCAPE DIRECTORY SERVER 6.02 Скачать руководство пользователя страница 220](http://html1.mh-extra.com/html/netscape/netscape-directory-server-6-02/netscape-directory-server-6-02_administrators-manual_1674673220.webp)
Bind Rules
220
Netscape Directory Server Administrator’s Guide • May 2002
The bind rule is evaluated to be true if the client accessing the directory is located at
the named IP address. This can be useful for allowing certain kinds of directory
access only from a specific subnet or machine.
For example, you could use a wildcard IP address such as 12.3.45.* to specify a
specific subnetwork or 123.45.6.*+255.255.255.115 to specify a subnetwork mask.
From the Server Console, you can define specific machines to which the ACI
applies through the Access Control Editor. For more information, see “Creating
ACIs From the Console,” on page 224.
Defining Access from a Specific Domain
A bind rule can specify that the bind operation must originate from a particular
domain or host machine. This is often used to force all directory updates to occur
from a given machine or network domain.
The LDIF syntax for setting a bind rule based on the DNS host name is as follows:
dns = "
DNS_Hostname
" or dns != "
DNS_Hostname
"
The
dns
keyword requires a fully qualified DNS domain name. Granting access to
a host without specifying the domain creates a potential security threat. For
example, the following expression is allowed but not recommended:
dns = "legend.eng";
You should use a fully qualified name such as:
dns = "legend.eng.example.com";
The dns keyword allows wildcards. For example:
dns = "*.example.com";
The bind rule is evaluated to be true if the client accessing the directory is located in
the named domain. This can be useful for allowing access only from a specific
domain. Note that wildcards will not work if your system uses a naming service
other than DNS. In such a case, if you want to restrict access to a particular domain,
use the ip keyword, as described in “Defining Access From a Specific IP Address,”
on page 219.
CAUTION
The
dns
keyword requires that the naming service used on your
machine is DNS. If the name service is not DNS, you should use the
ip
keyword instead.
Содержание NETSCAPE DIRECTORY SERVER 6.02
Страница 1: ...Administrator s Guide Netscape Directory Server Version6 02 May 2002 ...
Страница 16: ...16 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 20: ...20 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 40: ...Starting the Server in Referral Mode 40 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 74: ...Maintaining Referential Integrity 74 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 138: ...Using Referrals 138 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 258: ...Compatibility with Earlier Releases 258 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 274: ...Setting Resource Limits Based on the Bind DN 274 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 330: ...Solving Common Replication Conflicts 330 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 374: ...Attribute Name Quick Reference Table 374 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 390: ...Configuring LDAP Clients to Use SSL 390 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 412: ...Monitoring Database Link Activity 412 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 432: ...Miscellaneous Tuning Tips 432 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 434: ...434 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 468: ...PTA Plug In Syntax Examples 468 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 488: ...488 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 502: ...Storing Information in Multiple Languages 502 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 522: ...Searching an Internationalized Directory 522 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 528: ...Examples of LDAP URLs 528 Netscape Directory Server Administrator s Guide May 2002 ...