Chapter 3. Managing access control instructions in LDAP browser
This set of instructions provides you with the basics of managing the access control instructions (ACIs) by using the LDAP browser wizard in the web console.
3.1. Creating an access control instruction in the LDAP browser
You can create and add an access control instruction (ACI) for a Red Hat Directory Server (RHDS) entry by using the LDAP Browser
in the web console.
Prerequisites
- Access to the web console.
- A parent entry exists in the Red Hat Directory Server.
Procedure
-
Log in to the web console and click
Red Hat Directory Server
. -
After the web console loads the
Red Hat Directory Server
interface, clickLDAP browser
. - Select an LDAP entry and click the Options menu.
-
From the drop-down menu, select
ACIs
. To create an ACI by using the LDAP browser wizard, you have two options:
- Click to create the ACI using the wizard. Continue with the next step.
- Click , specify the instruction in the text field, and click .
- Follow the steps in the wizard and click the button after you complete each step.
- To create the ACI, review the data that the wizard generated, and click .
- To close the wizard window, click the button.
Verification
-
Verify the new ACI appears in the
Manage ACIs
window.
3.2. Editing access control instructions in the LDAP Browser
You can edit an access control instruction (ACI) for a Red Hat Directory Server entry by using the LDAP Browser
Manage ACIs
window in the web console.
Prerequisites
- Access to the web console.
- A parent entry exists in the Red Hat Directory Server.
Procedure
-
Log in to the web console and click
Red Hat Directory Server
. -
After the web console loads the
Red Hat Directory Server
interface, clickLDAP browser
. - Select an LDAP entry and click the Options menu.
-
From the drop-down menu select
ACIs
. -
Click the Options menu and select
Edit ACI
. - Modify the instruction in the text field and click .
Verification
-
In the
Manage ACIs
window expand the ACI you modified and observe your changes.
3.3. Removing an access control instruction in the LDAP browser
You can remove an access control instruction (ACI) for a Red Hat Directory Server entry by using the LDAP Browser
in the web console.
Prerequisites
- Access to the web console.
- A parent entry exists in the Red Hat Directory Server.
Procedure
-
Log in to the web console and click
Red Hat Directory Server
. -
After the web console loads the
Red Hat Directory Server
interface, clickLDAP Browser
. - Select an LDAP entry and click the Options menu.
-
From the drop-down menu select
ACIs
to open theManage ACIs
window. -
Click the Node options icon for the ACI you are removing and select
Remove ACI
. -
Select the
Yes, I’m sure
checkbox and click the button.
Verification
-
On the
Manage ACIs
window, verify the ACI you removed no longer appears on the list of ACIs.