Hello,

I  have a production ldap with some acl set. For historical reason the 
synchronizationn is done with the root dn which is bad.
I want to add a user to perform synchronization it must have the right to read 
everytthing.

is the acl :
access to * by  dn.exact=<somedn>  break
added in first position be enough to read everything (even attributs that have 
been limited  on some other acl) AND not break the current configuration ?

Thanks in advance.

f.g.

Reply via email to