Managing Roles Using the Command-Line
117
To see the inactivated entries, select Inactivation State from the
View
menu. A red slash through the
role icon indicates that the role has been inactivated.
5.1.2.7. Reactivating a Role
To reactivate a disabled role:
1. In the Directory Server Console, select the
Directory
tab.
2. Browse the navigation tree in the left pane to locate the base DN for the role. Roles appear in the
right pane with other entries.
3. Select the role. Select Activate from the
Object
menu.
Alternatively, right-click the role and select Activate from the menu.
The role is reactivated.
To see inactivated entries, select
Inactivation State
from the
View > Display
menu. The role icon
appears as normal, indicating that the role is active.
5.1.2.8. Deleting a Role
Deleting a role deletes the role only, not its members. To delete a role, do the following:
1. In the Directory Server Console, select the
Directory
tab.
2. Browse the navigation tree in the left pane to locate the base DN for the role. Roles appear in the
right pane with other entries.
3. Right-click the role, and select
Delete
.
A dialog box appears to confirm the deletion. Click
Yes
.
NOTE
Deleting a role deletes the role entry but does not delete the
nsRoleDN
attribute for
each role member. To delete the
nsRoleDN
attribute for each role member, enable the
Referential Integrity plug-in, and configure it to manage the
nsRoleDN
attribute. For more
information on the Referential Integrity plug-in, see
Section 2.5, “Maintaining Referential
Integrity”
.
5.1.3. Managing Roles Using the Command-Line
Roles inherit from the
ldapsubentry
object class, which is defined in the ITU X.509 standard. In
addition, each type of role has two specific object classes that inherit from the
nsRoleDefinition
object class. Once a role is created, members are assigned to it as follows:
• Members of a managed role have the
nsRoleDN
attribute in their entry.
• Members of a filtered role are entries that match the filter specified in the
nsRoleFilter
attribute.
• Members of a nested role are members of the roles specified in the
nsRoleDN
attributes of the
nested role definition entry.
Содержание DIRECTORY SERVER 8.0
Страница 18: ...xviii ...
Страница 29: ...Configuring the Directory Manager 11 6 Enter the new password and confirm it 7 Click Save ...
Страница 30: ...12 ...
Страница 112: ...94 ...
Страница 128: ...110 ...
Страница 190: ...Chapter 6 Managing Access Control 172 4 Click New to open the Access Control Editor ...
Страница 224: ...206 ...
Страница 324: ...306 ...
Страница 334: ...316 ...
Страница 358: ...340 ...
Страница 410: ...392 ...
Страница 420: ...402 ...
Страница 444: ...426 ...
Страница 454: ...436 ...
Страница 464: ...446 ...
Страница 484: ...466 ...
Страница 512: ...494 ...
Страница 522: ...504 ...