Paul Silverman wrote:
What's the use of the "userPassword" found in almost all object
classes ?  This may sound obvious for a lot of folks but it is not for
me.  Why an object class "organization" need a "userPassword"
attribute ?

Well it is an attribute of an abstract class, I am guessing Top, offhand, since my Schema browser crashed as I was looking...


So all object classes inheriting from that abstract class inherit this attrib.

In eDirectory, there is the notion that every object is a security prinicipal. I.e. Any object class can have rights to any other object of any object class. So it would be nice if any arbitrary object class could then authenticate, with a password. No idea if OpenLDAP or Netscape's LDAP supports this notion. Active Directory does NOT support this notion.

Is this a thing inherited from the X.500 days that nobody uses ?

Thanks

Paul




Reply via email to