[Ietf-not43] traditional searches

Eric A. Hall ehall at ehsco.com
Fri Aug 22 17:25:31 EDT 2003


on 8/22/2003 3:59 PM Andrew Newton wrote:

> Finally, how do you handle granularity with authorization based on the 
> user's relationship with the data.

Numerous combinations are possible, but again, it would be very useful to
get a description of what is actually needed.

Here's the full text of the addtional requirements presented so far:

Andrew Newton wrote in <3F437ECE.6020501 at ecotroph.net>

| I know our service will not allow somebody to do a subtree search in
| the contacts DIT.  For RLDAP, we excluded any partial string matching
| if they didn't give use the first three letters of the name (e.g.
| cn=*, cn=b*, and cn=bob*).  Therefore matching rules, search filters,
| and scope will be allowed and disallowed depending on what the
| person is attempting to do.

-- 
Eric A. Hall                                        http://www.ehsco.com/
Internet Core Protocols          http://www.oreilly.com/catalog/coreprot/



More information about the Ietf-not43 mailing list