RE: Adding to the LDAP ACM to a WG charter
"Paul Leach" <[email protected]>
| Newsgroups | gmane.ietf.ldup |
|---|---|
| Message-ID | <4AEE3169443CDD4796CA8A00B02191CD02A879AB@win-msg-01.wingroup.windeploy.ntdev.microsoft.com> |
> -----Original Message----- > From: Ryan Moats [mailto:[email protected]] > Sent: Monday, November 19, 2001 11:25 AM > To: Steven Legg > Pardon? I thought the idea of LDUP was a standard that would > lead to interoperability. I don't see how this is possible > if deployment is ignored. I believe that a quite useful replicated directory could be deployed with limited security functionality until an ACM standard is completed. How, you ask? As someone else noted, the access policy could be kept in synch out of band. In practice, that would mean access policy would have to be simple, and change infrequently. A very useful, and quite depoyable, policy that meets that requirement is one that allows everyone read, and one person or group update, to the contents of the whole server (or whole naming contexts within the server, if you want to get slightly more complex). Paul