JavaScript is required to for searching.
Skip Navigation Links
Exit Print View
Oracle Fusion Middleware Architecture Reference for Oracle Unified Directory 11g Release 1 (11.1.1)
search filter icon
search icon

Document Information

Preface

1.  Introduction

2.  The Directory Server Access Control Model

3.  Understanding the Directory Server Schema

4.  Directory Server Index Databases

5.  Directory Server Replication

6.  Directory Server Root Users and the Privilege Subsystem

Root User Accounts

Privilege Subsystem

Assigning Privileges to Normal Users

Assigning Privileges to Root Users

7.  Supported Controls and Operations

Root User Accounts

Root user accounts in the directory server are defined below the cn=Root DNs,cn=config branch in the server configuration. Each root account should be defined as a regular user entry, with the exception that it should include the ds-cfg-root-dn-user auxiliary object class. It can also have one or more values for the ds-cfg-alternate-bind-dn attribute. this attribute specifies alternate DNs that can be used to authenticate as that user (for example, so you can bind as cn=Directory Manager instead of having to use cn=Directory Manager,cn=Root DNs,cn=config, which is the actual entry DN).

Providing the ability to have multiple root users and breaking each of them out into their own entries provides a number of advantages: