LDAP Groups topic split-out

Charlie <[email protected]> Thu, 3 Dec 2015 18:12:54 -0500
Newsgroups gmane.ietf.ldapext
Message-ID <CAJb3uA57jHCfhN6tQB6Kc7uOGF3g4w6GVmr6+OnhD4=k5zqEzw@mail.gmail.com>
After reading David Foster Wallace on set theory, I wrote an RFC a
couple years back to address the lack of a generic or globally useful
grouping mechanism in LDAP-accessible directories.  Comments are
welcomed.

http://typinganimal.net/rants/textify.php?f=draft-brooks-ldap-sets-00.txt

If you're not up for a long-read, I would recommend just reading
"Appendix D:  Other Efforts and their Shortcomings" which explains all
the attempts to date and how they've failed to gain traction.

Projects continue to try to solve their individual problems instead of
working towards a truly generic grouping mechanism that will suit all
needs, so nothing's progressing.  Simo mentioned this in the context
of FreeIPA, for example - they broke their implementation of RFC2307
and moved on, rather than helping Andrew Findlay create a standard
that supported empty groups.  It seems like each of us is focused on
our own potato patch.

--Charlie