Sun Directory Server Enterprise Edition 7.0 Upgrade and Migration Guide

Mapping Search Request Controls

In Directory Proxy Server 5.2, search request controls are used to prevent certain kinds of requests from reaching the LDAP server. In Directory Proxy Server 7.0, this functionality is provided by setting properties of a request filtering policy and a resource limits policy.

For information on configuring a request filtering policy, see Creating and Configuring Request Filtering Policies and Search Data Hiding Rules in Sun Directory Server Enterprise Edition 7.0 Administration Guide. For information on configuring a resource limits policy, see Creating and Configuring a Resource Limits Policy in Sun Directory Server Enterprise Edition 7.0 Administration Guide. For a list of all the properties associated with a request filtering policy, or a resource limits policy, run the dpadm help-properties command and search for the object. For example, to locate all properties associated with a resource limits policy, run the following command:

$ dpconf help-properties | grep resource-limits-policy

In Directory Proxy Server 5.2, these configuration attributes are stored under ou=groups,cn=user-defined-name,ou=dar-config,o=NetscapeRoot.

The following table maps the Directory Proxy Server 5.2 search request control attributes to the corresponding Directory Proxy Server 7.0 properties.

Table 7–7 Mapping of Search Request Control Attributes

Directory Proxy Server 5.2 Attribute 

Directory Proxy Server 7.0 Property 

ids-proxy-con-filter-inequality

allow-inequality-search-operations property of the request filtering policy

ids-proxy-con-min-substring-size

minimum-search-filter-substring-length property of the resource limits policy