Configuring the Chaining Policy
61
See
Table 3.2, “Components Allowed to Chain”
for a list of the components which can be chained.
2. Restart the server for the change to take effect.
2
service dirsrv restart
instance
3. Create an ACI in the suffix on the remote server to which the operation will be chained. For
example, this creates an ACI for the Referential Integrity plug-in:
aci: (targetattr "*")(target="ldap:///ou=customers,l=us,dc=example,dc=com")
(version 3.0; acl "RefInt Access for chaining"; allow
(read,write,search,compare) userdn = "ldap:///cn=referential
integrity postoperation,cn=plugins,cn=config";)
3.3.1.2. Chaining LDAP Controls
It is possible to
not
chain operation requests made by LDAP controls. By default, requests made by
the following controls are forwarded to the remote server by the database link:
•
Virtual List View (VLV).
This control provides lists of parts of entries rather than returning all entry
information.
•
Server-side sorting.
This control sorts entries according to their attribute values.
•
Managed DSA.
This controls returns smart referrals as entries, rather than following the referral, so
the smart referral itself can be changed or deleted.
•
Loop detection.
This control keeps track of the number of times the server chains with another
server. When the count reaches the configured number, a loop is detected, and the client application
is notified. For more information about using this control, see
Section 3.3.7.5, “Detecting Loops”
.
NOTE
Server-side sorting and VLV controls are supported only when a client application request
is made to a single database. Database links cannot support these controls when a client
application makes a request to multiple databases.
3.3.1.2.1. Chaining LDAP Controls Using the Console
1. In the Directory Server Console, select the
Configuration
tab.
2. Expand the
Data
folder in the left pane, and click
Database Link Settings
.
3. Select the
Settings
tab in the right window. To add an LDAP control to the list, click
Add
.
The
Select control OIDs to add
dialog box displays. Select the OID of a control to add to the list,
and click
OK
.
4. To delete a control from the list, select it from the
LDAP controls forwarded to the remote
server
list, and click
Delete
.
5. Click
Save
.
Содержание DIRECTORY SERVER 8.0
Страница 18: ...xviii ...
Страница 29: ...Configuring the Directory Manager 11 6 Enter the new password and confirm it 7 Click Save ...
Страница 30: ...12 ...
Страница 112: ...94 ...
Страница 128: ...110 ...
Страница 190: ...Chapter 6 Managing Access Control 172 4 Click New to open the Access Control Editor ...
Страница 224: ...206 ...
Страница 324: ...306 ...
Страница 334: ...316 ...
Страница 358: ...340 ...
Страница 410: ...392 ...
Страница 420: ...402 ...
Страница 444: ...426 ...
Страница 454: ...436 ...
Страница 464: ...446 ...
Страница 484: ...466 ...
Страница 512: ...494 ...
Страница 522: ...504 ...