| | |
| | | |
| | | <adm:profile name="ldap"> |
| | | <ldap:object-class> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.2.13</ldap:oid> |
| | | <ldap:name>ds-cfg-root-config</ldap:name> |
| | | <ldap:superior>top</ldap:superior> |
| | | </ldap:object-class> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.24</ldap:oid> |
| | | <ldap:name>ds-cfg-check-schema</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | |
| | | <adm:property name="default-password-policy" mandatory="true"> |
| | | <adm:synopsis> |
| | | Specifies the DN of the configuration entry for the password policy that |
| | | will be in effect for users whose entries do not specify an alternate |
| | | password policy (either via a real or virtual attribute). |
| | | Specifies the name of the password policy that will be in effect |
| | | for users whose entries do not specify an alternate password |
| | | policy (either via a real or virtual attribute). |
| | | </adm:synopsis> |
| | | <adm:syntax> |
| | | <adm:dn> |
| | | <adm:base>cn=Password Policies,cn=config</adm:base> |
| | | </adm:dn> |
| | | <adm:aggregation relation-name="password-policy" parent-path="/" /> |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.202</ldap:oid> |
| | | <ldap:name>ds-cfg-default-password-policy</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.142</ldap:oid> |
| | | <ldap:name>ds-cfg-add-missing-rdn-attributes</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.5</ldap:oid> |
| | | <ldap:name>ds-cfg-allow-attribute-name-exceptions</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.44</ldap:oid> |
| | | <ldap:name>ds-cfg-invalid-attribute-syntax-behavior</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.143</ldap:oid> |
| | | <ldap:name>ds-cfg-server-error-result-code</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.117</ldap:oid> |
| | | <ldap:name>ds-cfg-single-structural-objectclass-behavior</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.71</ldap:oid> |
| | | <ldap:name>ds-cfg-notify-abandoned-operations</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.118</ldap:oid> |
| | | <ldap:name>ds-cfg-size-limit</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.150</ldap:oid> |
| | | <ldap:name>ds-cfg-time-limit</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | | </adm:property> |
| | | |
| | | <adm:property name="proxied-authorization-identity-mapper-dn" |
| | | <adm:property name="proxied-authorization-identity-mapper" |
| | | mandatory="true"> |
| | | <adm:synopsis> |
| | | Specifies the DN of the configuration entry for the identity mapper that |
| | | will be used to map authorization ID values (using the "u:" form) provided |
| | | in the proxied authorization control to the corresponding user entry. |
| | | Specifies the name of the identity mapper that will be used to map |
| | | authorization ID values (using the "u:" form) provided in the |
| | | proxied authorization control to the corresponding user entry. |
| | | </adm:synopsis> |
| | | <adm:syntax> |
| | | <adm:dn> |
| | | <adm:base>cn=Identity Mappers,cn=config</adm:base> |
| | | </adm:dn> |
| | | <adm:aggregation relation-name="identity-mapper" |
| | | parent-path="/"> |
| | | <adm:target-enabled-property-name name="enabled" /> |
| | | </adm:aggregation> |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.149</ldap:oid> |
| | | <ldap:name>ds-cfg-proxied-authorization-identity-mapper-dn</ldap:name> |
| | | <ldap:name>ds-cfg-proxied-authorization-identity-mapper</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | | </adm:property> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.161</ldap:oid> |
| | | <ldap:name>ds-cfg-writability-mode</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.301</ldap:oid> |
| | | <ldap:name>ds-cfg-reject-unauthenticated-requests</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.163</ldap:oid> |
| | | <ldap:name>ds-cfg-bind-with-dn-requires-password</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.285</ldap:oid> |
| | | <ldap:name>ds-cfg-lookthrough-limit</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.446</ldap:oid> |
| | | <ldap:name>ds-cfg-smtp-server</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.456</ldap:oid> |
| | | <ldap:name>ds-cfg-allowed-task</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.457</ldap:oid> |
| | | <ldap:name>ds-cfg-disabled-privilege</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.458</ldap:oid> |
| | | <ldap:name>ds-cfg-return-bind-error-messages</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.463</ldap:oid> |
| | | <ldap:name>ds-cfg-idle-time-limit</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | |
| | | </adm:syntax> |
| | | <adm:profile name="ldap"> |
| | | <ldap:attribute> |
| | | <ldap:oid>1.3.6.1.4.1.26027.1.1.485</ldap:oid> |
| | | <ldap:name>ds-cfg-save-config-on-successful-startup</ldap:name> |
| | | </ldap:attribute> |
| | | </adm:profile> |