ibm-information-center/dist/eclipse/plugins/i5OS.ic.rzahy_5.4.0.1/rzahyowc-co.htm

44 lines
2.8 KiB
HTML

<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-US" xml:lang="en-us">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta name="dc.language" scheme="rfc1766" content="en-us" />
<!-- All rights reserved. Licensed Materials Property of IBM -->
<!-- US Government Users Restricted Rights -->
<!-- Use, duplication or disclosure restricted by -->
<!-- GSA ADP Schedule Contract with IBM Corp. -->
<meta name="dc.date" scheme="iso8601" content="2005-09-06" />
<meta name="copyright" content="(C) Copyright IBM Corporation 1998, 2006" />
<meta name="security" content="public" />
<meta name="Robots" content="index,follow"/>
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
<title>Directory Server (LDAP) - Ownership of LDAP directory objects</title>
<link rel="stylesheet" type="text/css" href="ibmidwb.css" />
<link rel="stylesheet" type="text/css" href="ic.css" />
</head>
<body>
<a id="Top_Of_Page" name="Top_Of_Page"></a><!-- Java sync-link -->
<script language = "Javascript" src = "../rzahg/synch.js" type="text/javascript"></script>
<a name="rzahyowc-co"></a>
<h3 id="rzahyowc-co">Ownership of LDAP directory objects</h3>
<p>Each object in your LDAP directory has at least one owner. Object owners
have the power to delete the object. Owners and the server administrator are
the only users that can change the ownership properties and the access control
list (ACL) attributes of an object. Ownership of objects can be either inherited
or explicit. That is, to assign ownership you can do one of the following:</p>
<ul>
<li>Explicitly set up ownership for a specific object.</li>
<li>Specify that objects inherit their owners from objects higher up in the
LDAP directory hierarchy.</li></ul><p class="indatacontent">Directory Server allows you to specify multiple owners for the same object. You
can also specify that an object owns itself. To do this you include the special
DN <tt class="xph">cn=this</tt> in the list of object owners. For example,
assume that the object <tt class="xph">cn=A</tt> has the owner <tt class="xph">cn=this</tt>. Any user will have owner access to the <tt class="xph">cn=A</tt> object if he connects to the server as <tt class="xph">cn=A</tt>.</p>
<p>For more information about how to work with ownership properties, see <a href="rzahywrkdirentries.htm#rzahywrkdirentries">Manage directory entries</a>.</p>
<a id="Bot_Of_Page" name="Bot_Of_Page"></a>
</body>
</html>