-------------------------------------------------------------------------------------------------------------
# # # discard # aci: (target=”ldap:///$rootSuffix”) (targetattr!=”nsroledn”) (version 3.0; acl “S1IS Group admin’s right to the users he creates”; allow (all) userattr = “iplanet-am-modifiable-by#ROLEDN”;)
操作:放弃。
放弃此 ACI 将会禁用与属性 iplanet-am-modifiable-by 关联的权限。
-------------------------------------------------------------------------------------------------------------