From: Kurt Zeilenga Date: Mon, 24 Feb 2003 19:53:03 +0000 (+0000) Subject: clarify global ACL use X-Git-Tag: NO_SLAP_OP_BLOCKS~311 X-Git-Url: https://git.sur5r.net/?a=commitdiff_plain;h=63efc417287acb8362a0e67db5bb42d6684c82de;p=openldap clarify global ACL use clarify root and subschema DSE ACLs --- diff --git a/doc/man/man5/slapd.access.5 b/doc/man/man5/slapd.access.5 index db0a91e844..fa6b945214 100644 --- a/doc/man/man5/slapd.access.5 +++ b/doc/man/man5/slapd.access.5 @@ -40,16 +40,20 @@ is as follows: ... .fi .LP -Both the global configuration and each backend-specific section can contain -access information. -Backend-specific access control directives are used for those entries -that belong to the backend, according to their naming context. -In case no access control directives are defined for a backend, -the appropriate directives from the global configuration section -are used. -.LP -Arguments that should be replaced by actual text are shown in brackets <>. -The structure of the access control directives is +Both the global configuration and each backend-specific section can +contain access information. Backend-specific access control +directives are used for those entries that belong to the backend, +according to their naming context. In case no access control +directives are defined for a backend or those which are defined are +not applicable, the directives from the global configuration section +are then used. +.LP +For entries not held in any backend (such as a root DSE), the +directives of the first backend (and any global directives) are +used. +.LP +Arguments that should be replaced by actual text are shown in +brackets <>. The structure of the access control directives is .TP .B access to "[ by [ ] ]+" Grant access (specified by