dn: dc=exampleB,dc=com dc: exampleB objectClass: top objectClass: domain aci: (targetattr != "userPassword || passwordHistory || passwordExpirationTime || passwordExpWarned || passwordRetryCount || retryCountResetTime || accountUnlockTime || passwordAllowChangeTime ") (version 3.0; acl "Anonymous access"; allow (read, search, compare)userdn = "ldap:///anyone";) aci: (targetattr != "nsroledn || aci || nsLookThroughLimit || nsSizeLimit || nsTimeLimit || nsIdleTimeout || passwordPolicySubentry || passwordExpirationTime || passwordExpWarned || passwordRetryCount || retryCountResetTime || accountUnlockTime || passwordHistory || passwordAllowChangeTime")(version 3.0; acl "Allow self entry modification except for nsroledn, aci, resource limit attributes, passwordPolicySubentry and password policy state attributes"; allow (write)userdn ="ldap:///self";) dn: ou=People,dc=exampleB,dc=com ou: People objectClass: top objectClass: organizationalunit dn: cn=Rock,ou=People,dc=exampleB,dc=com objectClass: top objectClass: inetorgperson cn: Rock sn: Anne title: Manager telephonenumber: 99999 userpassword: WelcomeB dn: cn=Sandy,ou=People,dc=exampleB,dc=com objectClass: top objectClass: inetorgperson cn: Sandy sn: Ketty title: SMTS userpassword: Welcome1 dn: cn=Rivry,ou=People,dc=exampleB,dc=com objectClass: top objectClass: inetorgperson cn: Rivry sn: Rod title: Trainee userpassword: Welcome1 dn: cn=Mounty,ou=People,dc=exampleB,dc=com objectClass: top objectClass: inetorgperson cn: Mounty sn: Ret title: MTS - dept_sec userpassword: Welcome1