afs pts schema?
14 Mar 2001 19:41:53 -0800
Marcus Watts <email@example.com> writes:
> Openldap tracks groups in groups by DN, so changing names
> is *real* painful.
The standard solution to this problem for any sort of directory-like
system is to just not use the user-visible name as a DN. In general,
that's a good idea for a whole bunch of reasons; the properties that users
want in names quite frequently conflict with the properties of a system
We use machine-generated unique IDs for DNs in our directory of people.
PTS already does something similar by using negative numbers for group
LDAP is good at being able to search and retrieve by things that aren't
the unique identifiers.
Russ Allbery (firstname.lastname@example.org) <http://www.eyrie.org/~eagle/>