Use this information to learn how to manage access for users with LDAP.
An Enterprise Identity Mapping (EIM) user is a user who possesses EIM access control based on their membership in predefined Lightweight Directory Access Protocol (LDAP) user groups. Specifying EIM access control for a user adds that user to a specific LDAP user group. Each LDAP group has authority to perform various EIM administrative tasks in a domain. Which and what type of administrative tasks, including lookup operations, an EIM user can perform is determined by the access control group to which the EIM user belongs.
Only users with either LDAP administrator access control or EIM administrator access control can add other users to an EIM access control group or change access control settings for other users. Before a user can become a member of an EIM access control group, that user must have an entry in the directory server that acts as the EIM domain controller. Also, only specific types of users can be made a member of an EIM access control group: Kerberos principals, distinguished names, and i5/OS™ user profiles.
To manage access control for an existing directory server user or to add an existing directory user to an EIM access control group, complete these steps: