On 05/02/2012 07:36 PM, Ian Levesque wrote:
On May 2, 2012, at 6:48 PM, Rich Megginson wrote:
Is there any way to expose the nsDS5ReplicationAgreement objectClass to a less
privileged account; i.e., an account solely designed to check replication
status?
You also need to expose the RUV tombstone entry at the base of each suffix.
Good to know, thanks. I haven't messed with ACIs on 389ds/IPA before; any
pointers?
Cheers,
Ian
http://docs.redhat.com/docs/en-US/Red_Hat_Directory_Server/9.0/html/Administration_Guide/Managing_Access_Control.html
_______________________________________________
Freeipa-users mailing list
Freeipa-users@redhat.com
https://www.redhat.com/mailman/listinfo/freeipa-users