HP TRU64 UNIX Enterprise Directory V5.6

HP Tru64 UNIX Enterprise Directory V5.6
1993-2007 Hewlett-Packard Development Company, L.P. 2 November, 2007
Tru64 UNIX Enterprise Directory
Administration Facility - a Directory User
Agent
Other HP messaging and networking products
such as all versions of Office Server and
ALL-IN-1 V3.2, also provide the directory
user agent function in order to access
information in the Enterprise Directory Server.
The Tru64 UNIX Enterprise Directory
products are based on the 1993 edition of
ISO/IEC 9594 and the ITU-T X.500 series of
recommendations.
Abstract Services
The Tru64 UNIX Enterprise Directory
components provide and support all of the
X.500 Abstract Services, including:
x Read
Read attributes from a named entry
x Compare
Test an attribute value without reading it
x Abandon
Abandon an outstanding operation
x List
List names of subordinate entries
x Search
Find entries matching a search expression
x Add
Create a new entry
x Remove
Delete an entry
x Modify Entry
Add or remove attributes or values
x Modify RDN
Rename an entry
The following operations are supported via the
LDAPv3 protocol:
x Bind – with simple password
x Unbind
x Search – no extensibleMatch option
x Modify
x Add
x Delete
x Modify Distinguished Name – no
newSuperior option
x Compare
x Abandon
x Backwards compatibility with LDAPv2
clients and directories
The following LDAP string syntaxes are
supported:
x AttributeTypeDescription (not in v2)
x Binary
x BitString
x Boolean
x Distinguished Name
x DirectoryString
x FacsimileTelephoneNumber
x GeneralisedTime (not in v2)
x IA5String
x Integer
x Jpeg
x MHS-OR-Address
x Octet String
x UTC Time
x Telex Number
x NumericString
x ObjectClassDescription
x OID
x PostalAddress
x PrintableString
x TelephoneNumber
x Delivery Method
x Printable or Numeric String
In addition the LDAP extension
ManageDSAIT is included.
Schema
The Tru64 UNIX Enterprise Directory uses a
highly configurable schema, allowing
customer definition of attributes, object
classes, structure rules, and name forms. The
schema is installed individually at each DSA.
A default schema that implements the schema
in X.520 and X.521 (1995 edition) as well as
other useful definitions such as inetOrgPerson
ObjectClass as defined in RFC2798 are
included.
Security
To ensure the secure read and update access to
directory information throughout the network,
the Draft Behera password policy is supported.
User password hashing is also incorporated,
where ‘user’ is any LDAP client application
that has an identity in the directory.
The Tru64 UNIX Enterprise Directory
supports a subset of the Simplified Access
Control scheme from the 1993 edition of the
standard. This allows administrators to define
policies that control access rights (such as
read, browse, modify, remove) to entries and