The
maps client certificates to user entries by mapping the values of
attributes contained in the certificate subject to attributes
contained in user entries.
ds-cfg-subject-attribute-to-user-attribute-certificate-mapper
ds-cfg-certificate-mapper
org.opends.server.extensions.SubjectAttributeToUserAttributeCertificateMapper
Specifies a mapping between certificate attributes and user
attributes.
Each value should be in the form "certattr:userattr" where
certattr is the name of the attribute in the certificate subject
and userattr is the name of the corresponding attribute in user
entries. There may be multiple mappings defined, and when
performing the mapping values for all attributes present in the
certificate subject that have mappings defined must be present in
the corresponding user entries.
ds-cfg-subject-attribute-mapping
Specifies the base DNs that should be used when performing
searches to map the client certificate to a user entry.
The server will perform the search in all public naming
contexts.
ds-cfg-user-base-dn