1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381 382 383 384 385 386 387 388 389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417 418 419 420 421 422 423 424 425 426 427 428 429 430 431 432 433 434 435 436 437 438 439 440 441 442 443 444 445 446 447 448 449 450 451 452 453 454 455 456 457 458 459 460 461 462 463 464 465 466 467 468 469 470 471 472 473 474 475 476 477 478 479 480 481 482 483 484 485 486 487 488 489 490 491 492 493 494 495 496 497 498 499 500 501 502 503 504 505 506 507 508 509 510 511 512 513 514 515 516 517 518 519 520 521 522 523 524 525 526 527 528 529 530 531 532 533 534 535 536 537 538 539 540 541 542 543 544 545 546 547 548 549 550 551 552 553 554 555 556 557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572 573 574 575 576 577 578 579 580 581 582 583 584 585 586 587 588 589 590 591 592 593 594 595 596 597 598 599 600 601 602 603 604 605 606 607 608 609 610 611 612 613 614 615 616 617 618 619 620 621 622 623 624 625 626 627 628 629 630 631 632 633 634 635 636 637 638 639 640 641 642 643 644 645 646 647 648 649 650 651 652 653 654 655 656 657 658 659 660 661 662 663 664 665 666 667 668 669 670 671 672 673 674 675 676 677 678 679 680 681 682 683 684 685 686 687 688 689 690 691 692 693 694 695 696 697 698 699 700 701 702 703 704 705 706 707 708 709 710 711 712 713 714 715 716 717 718 719 720 721 722 723 724 725 726 727 728 729 730 731 732 733 734 735 736 737 738 739 740 741 742 743 744 745 746 747 748 749 750 751 752 753 754 755 756 757 758 759 760 761 762 763 764 765 766 767 768 769 770 771 772 773 774 775 776 777 778 779 780 781 782 783 784 785 786 787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802 803 804 805 806 807 808 809 810 811 812 813 814 815 816 817 818 819 820 821 822 823 824 825 826 827 828 829 830 831 832 833 834 835 836 837 838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 856 857 858 859 860 861 862 863 864 865 866 867 868 869 870 871 872 873 874 875 876 877 878 879 880 881 882 883 884 885 886 887 888 889 890 891 892 893 894 895 896 897 898 899 900 901 902 903 904 905 906 907 908 909 910 911 912 913 914 915 916 917 918 919 920 921 922 923 924 925 926 927 928 929 930 931 932 933 934 935 936 937 938 939 940 941 942 943 944 945 946 947 948 949 950 951 952 953 954 955 956 957 958 959 960 961 962 963 964 965 966 967 968 969 970 971 972 973 974 975 976 977 978 979 980 981 982 983 984 985 986 987 988 989 990 991 992 993 994 995 996 997 998 999 1000 1001 1002 1003 1004 1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016 1017 1018 1019 1020 1021 1022 1023 1024 1025 1026 1027 1028 1029 1030 1031 1032 1033 1034 1035 1036 1037 1038 1039 1040 1041 1042 1043 1044 1045 1046 1047 1048 1049 1050 1051 1052 1053 1054 1055 1056 1057 1058 1059 1060 1061 1062 1063 1064 1065 1066 1067 1068 1069 1070 1071 1072 1073 1074 1075 1076 1077 1078 1079 1080 1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092 1093 1094 1095 1096 1097 1098 1099 1100 1101 1102 1103 1104 1105 1106 1107 1108 1109 1110 1111 1112 1113 1114 1115 1116 1117 1118 1119 1120 1121 1122 1123 1124 1125 1126 1127 1128 1129 1130 1131 1132 1133 1134 1135 1136 1137 1138 1139 1140 1141 1142 1143 1144 1145 1146 1147 1148 1149 1150 1151 1152 1153 1154 1155 1156 1157 1158 1159 1160 1161 1162 1163 1164 1165 1166 1167 1168 1169 1170 1171 1172 1173 1174 1175 1176 1177 1178 1179 1180 1181 1182 1183 1184 1185 1186 1187 1188 1189 1190 1191 1192 1193 1194 1195 1196 1197 1198 1199 1200 1201 1202 1203 1204 1205 1206 1207 1208 1209 1210 1211 1212 1213 1214 1215 1216 1217 1218 1219 1220 1221 1222 1223 1224 1225 1226 1227 1228 1229 1230 1231 1232 1233 1234 1235 1236 1237 1238 1239 1240 1241 1242 1243 1244 1245 1246 1247 1248 1249 1250 1251 1252 1253 1254 1255 1256 1257 1258 1259 1260 1261 1262 1263 1264 1265 1266 1267 1268 1269 1270 1271 1272 1273 1274 1275 1276 1277 1278 1279 1280 1281 1282 1283 1284 1285 1286 1287 1288 1289 1290 1291 1292 1293 1294 1295 1296 1297 1298 1299 1300 1301 1302 1303 1304 1305 1306 1307 1308 1309 1310 1311 1312 1313 1314 1315 1316 1317 1318 1319 1320 1321 1322 1323 1324 1325 1326 1327 1328 1329 1330 1331 1332 1333 1334 1335 1336 1337 1338 1339 1340 1341 1342 1343 1344 1345 1346 1347 1348 1349 1350 1351 1352 1353 1354 1355 1356 1357 1358 1359 1360 1361 1362 1363 1364 1365 1366 1367 1368 1369 1370 1371 1372 1373 1374 1375 1376 1377 1378 1379 1380 1381 1382 1383 1384 1385 1386 1387 1388 1389 1390 1391 1392 1393 1394 1395 1396 1397 1398 1399 1400 1401 1402 1403 1404 1405 1406 1407 1408 1409 1410 1411 1412 1413 1414 1415 1416 1417 1418 1419 1420 1421 1422 1423 1424 1425 1426 1427 1428 1429 1430 1431 1432 1433 1434 1435 1436 1437 1438 1439 1440 1441 1442 1443 1444 1445 1446 1447 1448 1449 1450 1451 1452 1453 1454 1455 1456 1457 1458 1459 1460 1461 1462 1463 1464 1465 1466 1467 1468 1469 1470 1471 1472 1473 1474 1475 1476 1477 1478 1479 1480 1481 1482 1483 1484 1485 1486 1487 1488 1489 1490 1491 1492 1493 1494 1495 1496 1497 1498 1499 1500 1501 1502 1503 1504 1505 1506 1507 1508 1509 1510 1511 1512 1513 1514 1515 1516 1517 1518 1519 1520 1521 1522 1523 1524 1525 1526 1527 1528 1529 1530 1531 1532 1533 1534 1535 1536 1537 1538 1539 1540 1541 1542 1543 1544 1545 1546 1547 1548 1549 1550 1551 1552 1553 1554 1555 1556 1557 1558 1559 1560 1561 1562 1563 1564 1565 1566 1567 1568 1569 1570 1571 1572 1573 1574 1575 1576 1577 1578 1579 1580 1581 1582 1583 1584 1585 1586 1587 1588 1589 1590 1591 1592 1593 1594 1595 1596 1597 1598 1599 1600 1601 1602 1603 1604 1605 1606 1607 1608 1609 1610 1611 1612 1613 1614 1615 1616 1617 1618 1619 1620 1621 1622 1623 1624 1625 1626 1627 1628 1629 1630 1631 1632 1633 1634 1635 1636 1637 1638 1639 1640 1641 1642 1643 1644 1645 1646 1647 1648 1649 1650 1651 1652 1653 1654 1655 1656 1657 1658 1659 1660 1661 1662 1663 1664 1665 1666 1667 1668 1669 1670 1671 1672 1673 1674 1675 1676 1677 1678 1679 1680 1681 1682 1683 1684 1685 1686 1687 1688 1689 1690 1691 1692 1693 1694 1695 1696 1697 1698 1699 1700 1701 1702 1703 1704 1705 1706 1707 1708 1709 1710 1711 1712 1713 1714 1715 1716 1717 1718 1719 1720 1721 1722 1723 1724 1725 1726 1727 1728 1729 1730 1731 1732 1733 1734 1735 1736 1737 1738 1739 1740 1741 1742 1743 1744 1745 1746 1747 1748 1749 1750 1751 1752 1753 1754 1755 1756 1757 1758 1759 1760 1761 1762 1763 1764 1765 1766 1767 1768 1769 1770 1771 1772 1773 1774 1775 1776 1777 1778 1779 1780 1781 1782 1783 1784 1785 1786 1787 1788 1789 1790 1791 1792 1793 1794 1795 1796 1797 1798 1799 1800 1801 1802 1803 1804 1805 1806 1807 1808 1809 1810 1811 1812 1813 1814 1815 1816 1817 1818 1819 1820 1821 1822 1823 1824 1825 1826 1827 1828 1829 1830 1831 1832 1833 1834 1835 1836 1837 1838 1839 1840 1841 1842 1843 1844 1845 1846 1847 1848 1849 1850 1851 1852 1853 1854 1855 1856 1857 1858 1859 1860 1861 1862 1863 1864 1865 1866 1867 1868 1869 1870 1871 1872 1873 1874 1875 1876 1877 1878 1879 1880 1881 1882 1883 1884 1885 1886 1887 1888 1889 1890 1891 1892 1893 1894 1895 1896 1897 1898 1899 1900 1901 1902 1903 1904 1905 1906 1907 1908 1909 1910 1911 1912 1913 1914 1915 1916 1917 1918 1919 1920 1921 1922 1923 1924 1925 1926 1927 1928 1929 1930 1931 1932 1933 1934 1935 1936 1937 1938 1939 1940 1941 1942 1943 1944 1945 1946 1947 1948 1949 1950 1951 1952 1953 1954 1955 1956 1957 1958 1959 1960 1961 1962 1963 1964 1965 1966 1967 1968 1969 1970 1971 1972 1973 1974 1975 1976 1977 1978 1979 1980 1981 1982 1983 1984 1985 1986 1987 1988 1989 1990 1991 1992 1993 1994 1995 1996 1997 1998 1999 2000 2001 2002 2003 2004 2005 2006 2007 2008 2009 2010 2011 2012 2013 2014 2015 2016 2017 2018 2019 2020 2021 2022 2023 2024 2025 2026 2027 2028 2029 2030 2031 2032 2033 2034 2035 2036 2037 2038 2039 2040 2041 2042 2043 2044 2045 2046 2047 2048 2049 2050 2051 2052 2053 2054 2055 2056 2057 2058 2059 2060 2061 2062 2063 2064 2065 2066 2067 2068 2069 2070 2071 2072 2073 2074 2075 2076 2077 2078 2079 2080 2081 2082 2083 2084 2085 2086 2087 2088 2089 2090 2091 2092 2093 2094 2095 2096 2097 2098 2099 2100 2101 2102 2103 2104 2105 2106 2107 2108 2109 2110 2111 2112 2113 2114 2115 2116 2117 2118 2119 2120 2121 2122 2123 2124 2125 2126 2127 2128 2129 2130 2131 2132 2133 2134 2135 2136 2137 2138 2139 2140 2141 2142 2143 2144 2145 2146 2147 2148 2149 2150 2151 2152 2153 2154 2155 2156 2157 2158 2159 2160 2161 2162 2163 2164 2165 2166 2167 2168 2169 2170 2171 2172 2173 2174 2175 2176 2177 2178 2179 2180 2181 2182 2183 2184 2185 2186 2187 2188 2189 2190 2191 2192 2193 2194 2195 2196 2197 2198 2199 2200 2201 2202 2203 2204 2205 2206 2207 2208 2209 2210 2211 2212 2213 2214 2215 2216 2217 2218 2219 2220 2221 2222 2223 2224 2225 2226 2227 2228 2229 2230 2231 2232 2233 2234 2235 2236 2237 2238 2239 2240 2241 2242 2243 2244 2245 2246 2247 2248 2249 2250 2251 2252 2253 2254 2255 2256 2257 2258 2259 2260 2261 2262 2263 2264 2265 2266 2267 2268 2269 2270 2271 2272 2273 2274 2275 2276 2277 2278 2279 2280 2281 2282 2283 2284 2285 2286 2287 2288 2289 2290 2291 2292 2293 2294 2295 2296 2297 2298 2299 2300 2301 2302 2303 2304 2305 2306 2307 2308 2309 2310 2311 2312 2313 2314 2315 2316 2317 2318 2319 2320 2321 2322 2323 2324 2325 2326 2327 2328 2329 2330 2331 2332 2333 2334 2335 2336 2337 2338 2339 2340 2341 2342 2343 2344 2345 2346 2347 2348 2349 2350 2351 2352 2353 2354 2355 2356 2357 2358 2359 2360 2361 2362 2363 2364 2365 2366 2367 2368 2369 2370 2371 2372 2373 2374 2375 2376 2377 2378 2379 2380 2381 2382 2383 2384 2385 2386 2387 2388 2389 2390 2391 2392 2393 2394 2395 2396 2397 2398 2399 2400 2401 2402 2403 2404 2405 2406 2407 2408 2409 2410 2411 2412 2413 2414 2415 2416 2417 2418 2419 2420 2421 2422 2423 2424 2425 2426 2427 2428 2429 2430 2431 2432 2433 2434 2435 2436 2437 2438 2439 2440 2441 2442 2443 2444 2445 2446 2447 2448 2449 2450 2451 2452 2453 2454 2455 2456 2457 2458 2459 2460 2461 2462 2463 2464 2465 2466 2467 2468 2469 2470 2471 2472 2473 2474 2475 2476 2477 2478 2479 2480 2481 2482 2483 2484 2485 2486 2487 2488 2489 2490 2491 2492 2493 2494 2495 2496 2497 2498 2499 2500 2501 2502 2503 2504 2505 2506 2507 2508 2509 2510 2511 2512 2513 2514 2515 2516 2517 2518 2519 2520 2521 2522 2523 2524 2525 2526 2527 2528 2529 2530 2531 2532 2533 2534 2535 2536 2537 2538 2539 2540 2541 2542 2543 2544 2545 2546 2547 2548 2549 2550 2551 2552 2553 2554 2555 2556 2557 2558 2559 2560 2561 2562 2563 2564 2565 2566 2567 2568 2569 2570 2571 2572 2573 2574 2575 2576 2577 2578 2579 2580 2581 2582 2583 2584 2585 2586 2587 2588 2589 2590 2591 2592 2593 2594 2595 2596 2597 2598 2599 2600 2601 2602 2603 2604 2605 2606 2607 2608 2609 2610 2611 2612 2613 2614 2615 2616 2617 2618 2619 2620 2621 2622 2623 2624 2625 2626 2627 2628 2629 2630 2631 2632 2633 2634 2635 2636 2637 2638 2639 2640 2641 2642 2643 2644 2645 2646 2647 2648 2649 2650 2651 2652 2653 2654 2655 2656 2657 2658 2659 2660 2661 2662 2663 2664 2665 2666 2667 2668 2669 2670 2671 2672 2673 2674 2675 2676 2677 2678 2679 2680 2681 2682 2683 2684 2685 2686 2687 2688 2689 2690 2691 2692 2693 2694 2695 2696 2697 2698 2699 2700 2701 2702 2703 2704 2705 2706 2707 2708 2709 2710 2711 2712 2713 2714 2715 2716 2717 2718 2719 2720 2721 2722 2723 2724 2725 2726 2727 2728 2729 2730 2731 2732 2733 2734 2735 2736 2737 2738 2739 2740 2741 2742 2743 2744 2745 2746 2747 2748 2749 2750 2751 2752 2753 2754 2755 2756 2757 2758 2759 2760 2761 2762 2763 2764 2765 2766 2767 2768 2769 2770 2771 2772 2773 2774 2775 2776 2777 2778 2779 2780 2781 2782 2783 2784 2785 2786 2787 2788 2789 2790 2791 2792 2793 2794 2795 2796 2797 2798 2799 2800 2801 2802 2803 2804 2805 2806 2807 2808 2809 2810 2811 2812 2813 2814 2815 2816 2817 2818 2819 2820 2821 2822 2823 2824 2825 2826 2827 2828 2829 2830 2831 2832 2833 2834 2835 2836 2837 2838 2839 2840 2841 2842 2843 2844 2845 2846 2847 2848 2849 2850 2851 2852 2853 2854 2855 2856 2857 2858 2859 2860 2861 2862 2863 2864 2865 2866 2867 2868 2869 2870 2871 2872 2873 2874 2875 2876 2877 2878 2879 2880 2881 2882 2883 2884 2885 2886 2887 2888 2889 2890 2891 2892 2893 2894 2895 2896 2897 2898 2899 2900 2901 2902 2903 2904 2905 2906 2907 2908 2909 2910 2911 2912 2913 2914 2915 2916 2917 2918 2919 2920 2921 2922 2923 2924 2925 2926 2927 2928 2929 2930 2931 2932 2933 2934 2935 2936 2937 2938 2939 2940 2941 2942 2943 2944 2945 2946 2947 2948 2949 2950 2951 2952 2953 2954 2955 2956 2957 2958 2959 2960 2961 2962 2963 2964 2965 2966 2967 2968 2969 2970 2971 2972 2973 2974 2975 2976 2977 2978 2979 2980 2981 2982 2983 2984 2985 2986 2987 2988 2989 2990 2991 2992 2993 2994 2995 2996 2997 2998 2999 3000 3001 3002 3003 3004 3005 3006 3007 3008 3009 3010 3011 3012 3013 3014 3015 3016 3017 3018 3019 3020 3021 3022 3023 3024 3025 3026 3027 3028 3029 3030 3031 3032 3033 3034 3035 3036 3037 3038 3039 3040 3041 3042 3043 3044 3045 3046 3047 3048 3049 3050 3051 3052 3053 3054 3055 3056 3057 3058 3059 3060 3061 3062 3063 3064 3065 3066 3067 3068 3069 3070 3071 3072 3073 3074 3075 3076 3077 3078 3079 3080 3081 3082 3083 3084 3085 3086 3087 3088 3089 3090 3091 3092 3093 3094 3095 3096 3097 3098 3099 3100 3101 3102 3103 3104 3105 3106 3107 3108 3109 3110 3111 3112 3113 3114 3115 3116 3117 3118 3119 3120 3121 3122 3123 3124 3125 3126 3127 3128 3129 3130 3131 3132 3133 3134 3135 3136 3137 3138 3139 3140 3141 3142 3143 3144 3145 3146 3147 3148 3149 3150 3151 3152 3153 3154 3155 3156 3157 3158 3159 3160 3161 3162 3163 3164 3165 3166 3167 3168 3169 3170 3171 3172 3173 3174 3175 3176 3177 3178 3179 3180 3181 3182 3183 3184 3185 3186 3187 3188 3189 3190 3191 3192 3193 3194 3195 3196 3197 3198 3199 3200 3201 3202 3203 3204 3205 3206 3207 3208 3209 3210 3211 3212 3213 3214 3215 3216 3217 3218 3219 3220 3221 3222 3223 3224 3225 3226 3227 3228 3229 3230 3231 3232 3233 3234 3235 3236 3237 3238 3239 3240 3241 3242 3243 3244 3245 3246 3247 3248 3249 3250 3251 3252 3253 3254 3255 3256 3257 3258 3259 3260 3261 3262 3263 3264 3265 3266 3267 3268 3269 3270 3271 3272 3273 3274 3275 3276 3277 3278 3279 3280 3281 3282 3283 3284 3285 3286 3287 3288 3289 3290 3291 3292 3293 3294 3295 3296 3297 3298 3299 3300 3301 3302 3303 3304 3305 3306 3307 3308 3309 3310 3311 3312 3313 3314 3315 3316 3317 3318 3319 3320 3321 3322 3323 3324 3325 3326 3327 3328 3329 3330 3331 3332 3333 3334 3335 3336 3337 3338 3339 3340 3341 3342 3343 3344 3345 3346 3347 3348 3349 3350 3351 3352 3353 3354 3355 3356 3357 3358 3359 3360 3361 3362 3363 3364 3365 3366 3367 3368 3369 3370 3371 3372 3373 3374 3375 3376 3377 3378 3379 3380 3381 3382 3383 3384 3385 3386 3387 3388 3389 3390 3391 3392 3393 3394 3395 3396 3397 3398 3399 3400 3401 3402 3403 3404 3405 3406 3407 3408 3409 3410 3411 3412 3413 3414 3415 3416 3417 3418 3419 3420 3421 3422 3423 3424 3425 3426 3427 3428 3429 3430 3431 3432 3433 3434 3435 3436 3437 3438 3439 3440 3441 3442 3443 3444 3445 3446 3447 3448 3449 3450 3451 3452 3453 3454 3455 3456 3457 3458 3459 3460 3461 3462 3463 3464 3465 3466 3467 3468 3469 3470 3471 3472 3473 3474 3475 3476 3477 3478 3479 3480 3481 3482 3483 3484 3485 3486 3487 3488 3489 3490 3491 3492 3493 3494 3495 3496 3497 3498 3499 3500 3501 3502 3503 3504 3505 3506 3507 3508 3509 3510 3511 3512 3513 3514 3515 3516 3517 3518 3519 3520 3521 3522 3523 3524 3525 3526 3527 3528 3529 3530 3531 3532 3533 3534 3535 3536 3537 3538 3539 3540 3541 3542 3543 3544 3545 3546 3547 3548 3549 3550 3551 3552 3553 3554 3555 3556 3557 3558 3559 3560 3561 3562 3563 3564 3565 3566 3567 3568 3569 3570 3571 3572 3573 3574 3575 3576 3577 3578 3579 3580 3581 3582 3583 3584 3585 3586 3587 3588 3589 3590 3591 3592 3593 3594 3595 3596 3597 3598 3599 3600 3601 3602 3603 3604 3605 3606 3607 3608 3609 3610 3611 3612 3613 3614 3615 3616 3617 3618 3619 3620 3621 3622 3623 3624 3625 3626 3627 3628 3629 3630 3631 3632 3633 3634 3635 3636 3637 3638 3639 3640 3641 3642 3643 3644 3645 3646 3647 3648 3649 3650 3651 3652 3653 3654 3655 3656 3657 3658 3659 3660 3661 3662 3663 3664 3665 3666 3667 3668 3669 3670 3671 3672 3673 3674 3675 3676 3677 3678 3679 3680 3681 3682 3683 3684 3685 3686 3687 3688 3689 3690 3691 3692 3693 3694 3695 3696 3697 3698 3699 3700 3701 3702 3703 3704 3705 3706 3707 3708 3709 3710 3711 3712 3713 3714 3715 3716 3717 3718 3719 3720 3721 3722 3723 3724 3725 3726 3727 3728 3729 3730 3731 3732 3733 3734 3735 3736 3737 3738 3739 3740 3741 3742 3743 3744 3745 3746 3747 3748 3749 3750 3751 3752 3753 3754 3755 3756 3757 3758 3759 3760 3761 3762 3763 3764 3765 3766 3767 3768 3769 3770 3771 3772 3773 3774 3775 3776 3777 3778 3779 3780 3781 3782 3783 3784 3785 3786 3787 3788 3789 3790 3791 3792 3793 3794 3795 3796 3797 3798 3799 3800 3801 3802 3803 3804 3805 3806 3807 3808 3809 3810 3811 3812 3813 3814 3815 3816 3817 3818 3819 3820 3821 3822 3823 3824 3825 3826 3827 3828 3829 3830 3831 3832 3833 3834 3835 3836 3837 3838 3839 3840 3841 3842 3843 3844 3845 3846 3847 3848 3849 3850 3851 3852 3853 3854 3855 3856 3857 3858 3859 3860 3861 3862 3863 3864 3865 3866 3867 3868 3869 3870 3871 3872 3873 3874 3875 3876 3877 3878 3879 3880 3881 3882 3883 3884 3885 3886 3887 3888 3889 3890 3891 3892 3893 3894 3895 3896 3897 3898 3899 3900 3901 3902 3903 3904 3905 3906 3907 3908 3909 3910 3911 3912 3913 3914 3915 3916 3917 3918 3919 3920 3921 3922 3923 3924 3925 3926 3927 3928 3929 3930 3931 3932 3933 3934 3935 3936 3937 3938 3939 3940 3941 3942 3943 3944 3945 3946 3947 3948 3949 3950 3951 3952 3953 3954 3955 3956 3957 3958 3959 3960 3961 3962 3963 3964 3965 3966 3967 3968 3969 3970 3971 3972 3973 3974 3975 3976 3977 3978 3979 3980 3981 3982 3983 3984 3985 3986 3987 3988 3989 3990 3991 3992 3993 3994 3995 3996 3997 3998 3999 4000 4001 4002 4003 4004 4005 4006 4007 4008 4009 4010 4011 4012 4013 4014 4015 4016 4017 4018 4019 4020 4021 4022 4023 4024 4025 4026 4027 4028 4029 4030 4031 4032 4033 4034 4035 4036 4037 4038 4039 4040 4041 4042 4043 4044 4045 4046 4047 4048 4049 4050 4051 4052 4053 4054 4055 4056 4057 4058 4059 4060 4061 4062 4063 4064 4065 4066 4067 4068 4069 4070 4071 4072 4073 4074 4075 4076 4077 4078 4079 4080 4081 4082 4083 4084 4085 4086 4087 4088 4089 4090 4091 4092 4093 4094 4095 4096 4097 4098 4099 4100 4101 4102 4103 4104 4105 4106 4107 4108 4109 4110 4111 4112 4113 4114 4115 4116 4117 4118 4119 4120 4121 4122 4123 4124 4125 4126 4127 4128 4129 4130 4131 4132 4133 4134 4135 4136 4137 4138 4139 4140 4141 4142 4143 4144 4145 4146 4147 4148 4149 4150 4151 4152 4153 4154 4155 4156 4157 4158 4159 4160 4161 4162 4163 4164 4165 4166 4167 4168 4169 4170 4171 4172 4173 4174 4175 4176 4177 4178 4179 4180 4181 4182 4183 4184 4185 4186 4187 4188 4189 4190 4191 4192 4193 4194 4195 4196 4197 4198 4199 4200 4201 4202 4203 4204 4205 4206 4207 4208 4209 4210 4211 4212 4213 4214 4215 4216 4217 4218 4219 4220 4221 4222 4223 4224 4225 4226 4227 4228 4229 4230 4231 4232 4233 4234 4235 4236 4237 4238 4239 4240 4241 4242 4243 4244 4245 4246 4247 4248 4249 4250 4251 4252 4253 4254 4255 4256 4257 4258 4259 4260 4261 4262 4263 4264 4265 4266 4267 4268 4269 4270 4271 4272 4273 4274 4275 4276 4277 4278 4279 4280 4281 4282 4283 4284 4285 4286 4287 4288 4289 4290 4291 4292 4293 4294 4295 4296 4297 4298 4299 4300 4301 4302 4303 4304 4305 4306 4307 4308 4309 4310 4311 4312 4313 4314 4315 4316 4317 4318 4319 4320 4321 4322 4323 4324 4325 4326 4327 4328 4329 4330 4331 4332 4333 4334 4335 4336 4337 4338 4339 4340 4341 4342 4343 4344 4345 4346 4347 4348 4349 4350 4351 4352 4353 4354 4355 4356 4357 4358 4359 4360 4361 4362 4363 4364 4365 4366 4367 4368 4369 4370 4371 4372 4373 4374 4375 4376 4377 4378 4379 4380 4381 4382 4383 4384 4385 4386 4387 4388 4389 4390 4391 4392 4393 4394 4395 4396 4397 4398 4399 4400 4401 4402 4403 4404 4405 4406 4407 4408 4409 4410 4411 4412 4413 4414 4415 4416 4417 4418 4419 4420 4421 4422 4423 4424 4425 4426 4427 4428 4429 4430 4431 4432 4433 4434 4435 4436 4437 4438 4439 4440 4441 4442 4443 4444 4445 4446 4447 4448 4449 4450 4451 4452 4453 4454 4455 4456 4457 4458 4459 4460 4461 4462 4463 4464 4465 4466 4467 4468 4469 4470 4471 4472 4473 4474 4475 4476 4477 4478 4479 4480 4481 4482 4483 4484 4485 4486 4487 4488 4489 4490 4491 4492 4493 4494 4495 4496 4497 4498 4499 4500 4501 4502 4503 4504 4505 4506 4507 4508 4509 4510 4511 4512 4513 4514 4515 4516 4517 4518 4519 4520 4521 4522 4523 4524 4525 4526 4527 4528 4529 4530 4531 4532 4533 4534 4535 4536 4537 4538 4539 4540 4541 4542 4543 4544 4545 4546 4547 4548 4549 4550 4551 4552 4553 4554 4555 4556 4557 4558 4559 4560 4561 4562 4563 4564 4565 4566 4567 4568 4569 4570 4571 4572 4573 4574 4575 4576 4577 4578 4579 4580 4581 4582 4583 4584 4585 4586 4587 4588 4589 4590 4591 4592 4593 4594 4595 4596 4597 4598 4599 4600 4601 4602 4603 4604 4605 4606 4607 4608 4609 4610 4611 4612 4613 4614 4615 4616 4617 4618 4619 4620 4621 4622 4623 4624 4625 4626 4627 4628 4629 4630 4631 4632 4633 4634 4635 4636 4637 4638 4639 4640 4641 4642 4643 4644 4645 4646 4647 4648 4649 4650 4651 4652 4653 4654 4655 4656 4657 4658 4659 4660 4661 4662 4663 4664 4665 4666 4667 4668 4669 4670 4671 4672 4673 4674 4675 4676 4677 4678 4679 4680 4681 4682 4683 4684 4685 4686 4687 4688 4689 4690 4691 4692 4693 4694 4695 4696 4697 4698 4699 4700 4701 4702 4703 4704 4705 4706 4707 4708 4709 4710 4711 4712 4713 4714 4715 4716 4717 4718 4719 4720 4721 4722 4723 4724 4725 4726 4727 4728 4729 4730 4731 4732 4733 4734 4735 4736 4737 4738 4739 4740 4741 4742 4743 4744 4745 4746 4747 4748 4749 4750 4751 4752 4753 4754 4755 4756 4757 4758 4759 4760 4761 4762 4763 4764 4765 4766 4767 4768 4769 4770 4771 4772 4773 4774 4775 4776 4777 4778 4779 4780 4781 4782 4783 4784 4785 4786 4787 4788 4789 4790 4791 4792 4793 4794 4795 4796 4797 4798 4799 4800 4801 4802 4803 4804 4805 4806 4807 4808 4809 4810 4811 4812 4813 4814 4815 4816 4817 4818 4819 4820 4821 4822 4823 4824 4825 4826 4827 4828 4829 4830 4831 4832 4833 4834 4835 4836 4837 4838 4839 4840 4841 4842 4843 4844 4845 4846 4847 4848 4849 4850 4851 4852 4853 4854 4855 4856 4857 4858 4859 4860 4861 4862 4863 4864 4865 4866 4867 4868 4869 4870 4871 4872 4873 4874 4875 4876 4877 4878 4879 4880 4881 4882 4883 4884 4885 4886 4887 4888 4889 4890 4891 4892 4893 4894 4895 4896 4897 4898 4899 4900 4901 4902 4903 4904 4905 4906 4907 4908 4909 4910 4911 4912 4913 4914 4915 4916 4917 4918 4919 4920 4921 4922 4923 4924 4925 4926 4927 4928 4929 4930 4931 4932 4933 4934 4935 4936 4937 4938 4939 4940 4941 4942 4943 4944 4945 4946 4947 4948 4949 4950 4951 4952 4953 4954 4955 4956 4957 4958 4959 4960 4961 4962 4963 4964 4965 4966 4967 4968 4969 4970 4971 4972 4973 4974 4975 4976 4977 4978 4979 4980 4981 4982 4983 4984 4985 4986 4987 4988 4989 4990 4991 4992 4993 4994 4995 4996 4997 4998 4999 5000 5001 5002 5003 5004 5005 5006 5007 5008 5009 5010 5011 5012 5013 5014 5015 5016 5017 5018 5019 5020 5021 5022 5023 5024 5025 5026 5027 5028 5029 5030 5031 5032 5033 5034 5035 5036 5037 5038 5039 5040 5041 5042 5043 5044 5045 5046 5047 5048 5049 5050 5051 5052 5053 5054 5055 5056 5057 5058 5059 5060 5061 5062 5063 5064 5065 5066 5067 5068 5069 5070 5071 5072 5073 5074 5075 5076 5077 5078 5079 5080 5081 5082 5083 5084 5085 5086 5087 5088 5089 5090 5091 5092 5093 5094 5095 5096 5097 5098 5099 5100 5101 5102 5103 5104 5105 5106 5107 5108 5109 5110 5111 5112 5113 5114 5115 5116 5117 5118 5119 5120 5121 5122 5123 5124 5125 5126 5127 5128 5129 5130 5131 5132 5133 5134 5135 5136 5137 5138 5139 5140 5141 5142 5143 5144 5145 5146 5147 5148 5149 5150 5151 5152 5153 5154 5155 5156 5157 5158 5159 5160 5161 5162 5163 5164 5165 5166 5167 5168 5169 5170 5171 5172 5173 5174 5175 5176 5177 5178 5179 5180 5181 5182 5183 5184 5185 5186 5187 5188 5189 5190 5191 5192 5193 5194 5195 5196 5197 5198 5199 5200 5201 5202 5203 5204 5205 5206 5207 5208 5209 5210 5211 5212 5213 5214 5215 5216 5217 5218 5219 5220 5221 5222 5223 5224 5225 5226 5227 5228 5229 5230 5231 5232 5233 5234 5235 5236 5237 5238 5239 5240 5241 5242 5243 5244 5245 5246 5247 5248 5249 5250 5251 5252 5253 5254 5255 5256 5257 5258 5259 5260 5261 5262 5263 5264 5265 5266 5267 5268 5269 5270 5271 5272 5273 5274 5275 5276 5277 5278 5279 5280 5281 5282 5283 5284 5285 5286 5287 5288 5289 5290 5291 5292 5293 5294 5295 5296 5297 5298 5299 5300 5301 5302 5303 5304 5305 5306 5307 5308 5309 5310 5311 5312 5313 5314 5315 5316 5317 5318 5319 5320 5321 5322 5323 5324 5325 5326 5327 5328 5329 5330 5331 5332 5333 5334 5335 5336 5337 5338 5339 5340 5341 5342 5343 5344 5345 5346 5347 5348 5349 5350 5351 5352 5353 5354 5355 5356 5357 5358 5359 5360 5361 5362 5363 5364 5365 5366 5367 5368 5369 5370 5371 5372 5373 5374 5375 5376 5377 5378 5379 5380 5381 5382 5383 5384 5385 5386 5387 5388 5389 5390 5391 5392 5393 5394 5395 5396 5397 5398 5399 5400 5401 5402 5403 5404 5405 5406 5407 5408 5409 5410 5411 5412 5413 5414 5415 5416 5417 5418 5419 5420 5421 5422 5423 5424 5425 5426 5427 5428 5429 5430 5431 5432 5433 5434 5435 5436 5437 5438 5439 5440 5441 5442 5443 5444 5445 5446 5447 5448 5449 5450 5451 5452 5453 5454 5455 5456 5457 5458 5459 5460 5461 5462 5463 5464 5465 5466 5467 5468 5469 5470 5471 5472 5473 5474 5475 5476 5477 5478 5479 5480 5481 5482 5483 5484 5485 5486 5487 5488 5489 5490 5491 5492 5493 5494 5495 5496 5497 5498 5499 5500 5501 5502 5503 5504 5505 5506 5507 5508 5509 5510 5511 5512 5513 5514 5515 5516 5517 5518 5519 5520 5521 5522 5523 5524 5525 5526 5527 5528 5529 5530 5531 5532 5533 5534 5535 5536 5537 5538 5539 5540 5541 5542 5543 5544 5545 5546 5547 5548 5549 5550 5551 5552 5553 5554 5555 5556 5557 5558 5559 5560 5561 5562 5563 5564 5565 5566 5567 5568 5569 5570 5571 5572 5573 5574 5575 5576 5577 5578 5579 5580 5581 5582 5583 5584 5585 5586 5587 5588 5589 5590 5591 5592 5593 5594 5595 5596 5597 5598 5599 5600 5601 5602 5603 5604 5605 5606 5607 5608 5609 5610 5611 5612 5613 5614 5615 5616 5617 5618 5619 5620 5621 5622 5623 5624 5625 5626 5627 5628 5629 5630 5631 5632 5633 5634 5635 5636 5637 5638 5639 5640 5641 5642 5643 5644 5645 5646 5647 5648 5649 5650 5651 5652 5653 5654 5655 5656 5657 5658 5659 5660 5661 5662 5663 5664 5665 5666 5667 5668 5669 5670 5671 5672 5673 5674 5675 5676 5677 5678 5679 5680 5681 5682 5683 5684 5685 5686 5687 5688 5689 5690 5691 5692 5693 5694 5695 5696 5697 5698 5699 5700 5701 5702 5703 5704 5705 5706 5707 5708 5709 5710 5711 5712 5713 5714 5715 5716 5717 5718 5719 5720 5721 5722 5723 5724 5725 5726 5727 5728 5729 5730 5731 5732 5733 5734 5735 5736 5737 5738 5739 5740 5741 5742 5743 5744 5745 5746 5747 5748 5749 5750 5751 5752 5753 5754 5755 5756 5757 5758 5759 5760 5761 5762 5763 5764 5765 5766 5767 5768 5769 5770 5771 5772 5773 5774 5775 5776 5777 5778 5779 5780 5781 5782 5783 5784 5785 5786 5787 5788 5789 5790 5791 5792 5793 5794 5795 5796 5797 5798 5799 5800 5801 5802 5803 5804 5805 5806 5807 5808 5809 5810 5811 5812 5813 5814 5815 5816 5817 5818 5819 5820 5821 5822 5823 5824 5825 5826 5827 5828 5829 5830 5831 5832 5833 5834 5835 5836 5837 5838 5839 5840 5841 5842 5843 5844 5845 5846 5847 5848 5849 5850 5851 5852 5853 5854 5855 5856 5857 5858 5859 5860 5861 5862 5863 5864 5865 5866 5867 5868 5869 5870 5871 5872 5873 5874 5875 5876 5877 5878 5879 5880 5881 5882 5883 5884 5885 5886 5887 5888 5889 5890 5891 5892 5893 5894 5895 5896 5897 5898 5899 5900 5901 5902 5903 5904 5905 5906 5907 5908 5909 5910 5911 5912 5913 5914 5915 5916 5917 5918 5919 5920 5921 5922 5923 5924 5925 5926 5927 5928 5929 5930 5931 5932 5933 5934 5935 5936 5937 5938 5939 5940 5941 5942 5943 5944 5945 5946 5947 5948 5949 5950 5951 5952 5953 5954 5955 5956 5957 5958 5959 5960 5961 5962 5963 5964 5965 5966 5967 5968 5969 5970 5971 5972 5973 5974 5975 5976 5977 5978 5979 5980 5981 5982 5983 5984 5985 5986 5987 5988 5989 5990 5991 5992 5993 5994 5995 5996 5997 5998 5999 6000 6001 6002 6003 6004 6005 6006 6007 6008 6009 6010 6011 6012 6013 6014 6015 6016 6017 6018 6019 6020 6021 6022 6023 6024 6025 6026 6027 6028 6029 6030 6031 6032 6033 6034 6035 6036 6037 6038 6039 6040 6041 6042 6043 6044 6045 6046 6047 6048 6049 6050 6051 6052 6053 6054 6055 6056 6057 6058 6059 6060 6061 6062 6063 6064 6065 6066 6067 6068 6069 6070 6071 6072 6073 6074 6075 6076 6077 6078 6079 6080 6081 6082 6083 6084 6085 6086 6087 6088 6089 6090 6091 6092 6093 6094 6095 6096 6097 6098 6099 6100 6101 6102 6103 6104 6105 6106 6107 6108 6109 6110 6111 6112 6113 6114 6115 6116 6117 6118 6119 6120 6121 6122 6123 6124 6125 6126 6127 6128 6129 6130 6131 6132 6133 6134 6135 6136 6137 6138 6139 6140 6141 6142 6143 6144 6145 6146 6147 6148 6149 6150 6151 6152 6153 6154 6155 6156 6157 6158 6159 6160 6161 6162 6163 6164 6165 6166 6167 6168 6169 6170 6171 6172 6173 6174 6175 6176 6177 6178 6179 6180 6181 6182 6183 6184 6185 6186 6187 6188 6189 6190 6191 6192 6193 6194 6195 6196 6197 6198 6199 6200 6201 6202 6203 6204 6205 6206 6207 6208 6209 6210 6211 6212 6213 6214 6215 6216 6217 6218 6219 6220 6221 6222 6223 6224 6225 6226 6227 6228 6229 6230 6231 6232 6233 6234 6235 6236 6237 6238 6239 6240 6241 6242 6243 6244 6245 6246 6247 6248 6249 6250 6251 6252 6253 6254 6255 6256 6257 6258 6259 6260 6261 6262 6263 6264 6265 6266 6267 6268 6269 6270 6271 6272 6273 6274 6275 6276 6277 6278 6279 6280 6281 6282 6283 6284 6285 6286 6287 6288 6289 6290 6291 6292 6293 6294 6295 6296 6297 6298 6299 6300 6301 6302 6303 6304 6305 6306 6307 6308 6309 6310 6311 6312 6313 6314 6315 6316 6317 6318 6319 6320 6321 6322 6323 6324 6325 6326 6327 6328 6329 6330 6331 6332 6333 6334 6335 6336 6337 6338 6339 6340 6341 6342 6343 6344 6345 6346 6347 6348 6349 6350 6351 6352 6353 6354 6355 6356 6357 6358 6359 6360 6361 6362 6363 6364 6365 6366 6367 6368 6369 6370 6371 6372 6373 6374 6375 6376 6377 6378 6379 6380 6381 6382 6383 6384 6385 6386 6387 6388 6389 6390 6391 6392 6393 6394 6395 6396 6397 6398 6399 6400 6401 6402 6403 6404 6405 6406 6407 6408 6409 6410 6411 6412 6413 6414 6415 6416 6417 6418 6419 6420 6421 6422 6423 6424 6425 6426 6427 6428 6429 6430 6431 6432 6433 6434 6435 6436 6437 6438 6439 6440 6441 6442 6443 6444 6445 6446 6447 6448 6449 6450 6451 6452 6453 6454 6455 6456 6457 6458 6459 6460 6461 6462 6463 6464 6465 6466 6467 6468 6469 6470 6471 6472 6473 6474 6475 6476 6477 6478 6479 6480 6481 6482 6483 6484 6485 6486 6487 6488 6489 6490 6491 6492 6493 6494 6495 6496 6497 6498 6499 6500 6501 6502 6503 6504 6505 6506 6507 6508 6509 6510 6511 6512 6513 6514 6515 6516 6517 6518 6519 6520 6521 6522 6523 6524 6525 6526 6527 6528 6529 6530 6531 6532 6533 6534 6535 6536 6537 6538 6539 6540 6541 6542 6543 6544 6545 6546 6547 6548 6549 6550 6551 6552 6553 6554 6555 6556 6557 6558 6559 6560 6561 6562 6563 6564 6565 6566 6567 6568 6569 6570 6571 6572 6573 6574 6575 6576 6577 6578 6579 6580 6581 6582 6583 6584 6585 6586 6587 6588 6589 6590 6591 6592 6593 6594 6595 6596 6597 6598 6599 6600 6601 6602 6603 6604 6605 6606 6607 6608 6609 6610 6611 6612 6613 6614 6615 6616 6617 6618 6619 6620 6621 6622 6623 6624 6625 6626 6627 6628 6629 6630 6631 6632 6633 6634 6635 6636 6637 6638 6639 6640 6641 6642 6643 6644 6645 6646 6647 6648 6649 6650 6651 6652 6653 6654 6655 6656 6657 6658 6659 6660 6661 6662 6663 6664 6665 6666 6667 6668 6669 6670 6671 6672 6673 6674 6675 6676 6677 6678 6679 6680 6681 6682 6683 6684 6685 6686 6687 6688 6689 6690 6691 6692 6693 6694 6695 6696 6697 6698 6699 6700 6701 6702 6703 6704 6705 6706 6707 6708 6709 6710 6711 6712 6713 6714 6715 6716 6717 6718 6719 6720 6721 6722 6723 6724 6725 6726 6727 6728 6729 6730 6731 6732 6733 6734 6735 6736 6737 6738 6739 6740 6741 6742 6743 6744 6745 6746 6747 6748 6749 6750 6751 6752 6753 6754 6755 6756 6757 6758 6759 6760 6761 6762 6763 6764 6765 6766 6767 6768 6769 6770 6771 6772 6773 6774 6775 6776 6777 6778 6779 6780 6781 6782 6783 6784 6785 6786 6787 6788 6789 6790 6791 6792 6793 6794 6795 6796 6797 6798 6799 6800 6801 6802 6803 6804 6805 6806 6807 6808 6809 6810 6811 6812 6813 6814 6815 6816 6817 6818 6819 6820 6821 6822 6823 6824 6825 6826 6827 6828 6829 6830 6831 6832 6833 6834 6835 6836 6837 6838 6839 6840 6841 6842 6843 6844 6845 6846 6847 6848 6849 6850 6851 6852 6853 6854 6855 6856 6857 6858 6859 6860 6861 6862 6863 6864 6865 6866 6867 6868 6869 6870 6871 6872 6873 6874 6875 6876 6877 6878 6879 6880 6881 6882 6883 6884 6885 6886 6887 6888 6889 6890 6891 6892 6893 6894 6895 6896 6897 6898 6899 6900 6901 6902 6903 6904 6905 6906 6907 6908 6909 6910 6911 6912 6913 6914 6915 6916 6917 6918 6919 6920 6921 6922 6923 6924 6925 6926 6927 6928 6929 6930 6931 6932 6933 6934 6935 6936 6937 6938 6939 6940 6941 6942 6943 6944 6945 6946 6947 6948 6949 6950 6951 6952 6953 6954 6955 6956 6957 6958 6959 6960 6961 6962 6963 6964 6965 6966 6967 6968 6969 6970 6971 6972 6973 6974 6975 6976 6977 6978 6979 6980 6981 6982 6983 6984 6985 6986 6987 6988 6989 6990 6991 6992 6993 6994 6995 6996 6997 6998 6999 7000 7001 7002 7003 7004 7005 7006 7007 7008 7009 7010 7011 7012 7013 7014 7015 7016 7017 7018 7019 7020 7021 7022 7023 7024 7025 7026 7027 7028 7029 7030 7031 7032 7033 7034 7035 7036 7037 7038 7039 7040 7041 7042 7043 7044 7045 7046 7047 7048 7049 7050 7051 7052 7053 7054 7055 7056 7057 7058 7059 7060 7061 7062 7063 7064 7065 7066 7067 7068 7069 7070 7071 7072 7073 7074 7075 7076 7077 7078 7079 7080 7081 7082 7083 7084 7085 7086 7087 7088 7089 7090 7091 7092 7093 7094 7095 7096 7097 7098 7099 7100 7101 7102 7103 7104 7105 7106 7107 7108 7109 7110 7111 7112 7113 7114 7115 7116 7117 7118 7119 7120 7121 7122 7123 7124 7125 7126 7127 7128 7129 7130 7131 7132 7133 7134 7135 7136 7137 7138 7139 7140 7141 7142 7143 7144 7145 7146 7147 7148 7149 7150 7151 7152 7153 7154 7155 7156 7157 7158 7159 7160 7161 7162 7163 7164 7165 7166 7167 7168 7169 7170 7171 7172 7173 7174 7175 7176 7177 7178 7179 7180 7181 7182 7183 7184 7185 7186 7187 7188 7189 7190 7191 7192 7193 7194 7195 7196 7197 7198 7199 7200 7201 7202 7203 7204 7205 7206 7207 7208 7209 7210 7211 7212 7213 7214 7215 7216 7217 7218 7219 7220 7221 7222 7223 7224 7225 7226 7227 7228 7229 7230 7231 7232 7233 7234 7235 7236 7237 7238 7239 7240 7241 7242 7243 7244 7245 7246 7247 7248 7249 7250 7251 7252 7253 7254 7255 7256 7257 7258 7259 7260 7261 7262 7263 7264 7265 7266 7267 7268 7269 7270 7271 7272 7273 7274 7275 7276 7277 7278 7279 7280 7281 7282 7283 7284 7285 7286 7287 7288 7289 7290 7291 7292 7293 7294 7295 7296 7297 7298 7299 7300 7301 7302 7303 7304 7305 7306 7307 7308 7309 7310 7311 7312 7313 7314 7315 7316 7317 7318 7319 7320 7321 7322 7323 7324 7325 7326 7327 7328 7329 7330 7331 7332 7333 7334 7335 7336 7337 7338 7339 7340 7341 7342 7343 7344 7345 7346 7347 7348 7349 7350 7351 7352 7353 7354 7355 7356 7357 7358 7359 7360 7361 7362 7363 7364 7365 7366 7367 7368 7369 7370 7371 7372 7373 7374 7375 7376 7377 7378 7379 7380 7381 7382 7383 7384 7385 7386 7387 7388 7389 7390 7391 7392 7393 7394 7395 7396 7397 7398 7399 7400 7401 7402 7403 7404 7405 7406 7407 7408 7409 7410 7411 7412 7413 7414 7415 7416 7417 7418 7419 7420 7421 7422 7423 7424 7425 7426 7427 7428 7429 7430 7431 7432 7433 7434 7435 7436 7437 7438 7439 7440 7441 7442 7443 7444 7445 7446 7447 7448 7449 7450 7451 7452 7453 7454 7455 7456 7457 7458 7459 7460 7461 7462 7463 7464 7465 7466 7467 7468 7469 7470 7471 7472 7473 7474 7475 7476 7477 7478 7479 7480 7481 7482 7483 7484 7485 7486 7487 7488 7489 7490 7491 7492 7493 7494 7495 7496 7497 7498 7499 7500 7501 7502 7503 7504 7505 7506 7507 7508 7509 7510 7511 7512 7513 7514 7515 7516 7517 7518 7519 7520 7521 7522 7523 7524 7525 7526 7527 7528 7529 7530 7531 7532 7533 7534 7535 7536 7537 7538 7539 7540 7541 7542 7543 7544 7545 7546 7547 7548 7549 7550 7551 7552 7553 7554 7555 7556 7557 7558 7559 7560 7561 7562 7563 7564 7565 7566 7567 7568 7569 7570 7571 7572 7573 7574 7575 7576 7577 7578 7579 7580 7581 7582 7583 7584 7585 7586 7587 7588 7589 7590 7591 7592 7593 7594 7595 7596 7597 7598 7599 7600 7601 7602 7603 7604 7605 7606 7607 7608 7609 7610 7611 7612 7613 7614 7615 7616 7617 7618 7619 7620 7621 7622 7623 7624 7625 7626 7627 7628 7629 7630 7631 7632 7633 7634 7635 7636 7637 7638 7639 7640 7641 7642 7643 7644 7645 7646 7647 7648 7649 7650 7651 7652 7653 7654 7655 7656 7657 7658 7659 7660 7661 7662 7663 7664 7665 7666 7667 7668 7669 7670 7671 7672 7673 7674 7675 7676 7677 7678 7679 7680 7681 7682 7683 7684 7685 7686 7687 7688 7689 7690 7691 7692 7693 7694 7695 7696 7697 7698 7699 7700 7701 7702 7703 7704 7705 7706 7707 7708 7709 7710 7711 7712 7713 7714 7715 7716 7717 7718 7719 7720 7721 7722 7723 7724 7725 7726 7727 7728 7729 7730 7731 7732 7733 7734 7735 7736 7737 7738 7739 7740 7741 7742 7743 7744 7745 7746 7747 7748 7749 7750 7751 7752 7753 7754 7755 7756 7757 7758 7759 7760 7761 7762 7763 7764 7765 7766 7767 7768 7769 7770 7771 7772 7773 7774 7775 7776 7777 7778 7779 7780 7781 7782 7783 7784 7785 7786 7787 7788 7789 7790 7791 7792 7793 7794 7795 7796 7797 7798 7799 7800 7801 7802 7803 7804 7805 7806 7807 7808 7809 7810 7811 7812 7813 7814 7815 7816 7817 7818 7819 7820 7821 7822 7823 7824 7825 7826 7827 7828 7829 7830 7831 7832 7833 7834 7835 7836 7837 7838 7839 7840 7841 7842 7843 7844 7845 7846 7847 7848 7849 7850 7851 7852 7853 7854 7855 7856 7857 7858 7859 7860 7861 7862 7863 7864 7865 7866 7867 7868 7869 7870 7871 7872 7873 7874 7875 7876 7877 7878 7879 7880 7881 7882 7883 7884 7885 7886 7887 7888 7889 7890 7891 7892 7893 7894 7895 7896 7897 7898 7899 7900 7901 7902 7903 7904 7905 7906 7907 7908 7909 7910 7911 7912 7913 7914 7915 7916 7917 7918 7919 7920 7921 7922 7923 7924 7925 7926 7927 7928 7929 7930 7931 7932 7933 7934 7935 7936 7937 7938 7939 7940 7941 7942 7943 7944 7945 7946 7947 7948 7949 7950 7951 7952 7953 7954 7955 7956 7957 7958 7959 7960 7961 7962 7963 7964 7965 7966 7967 7968 7969 7970 7971 7972 7973 7974 7975 7976 7977 7978 7979 7980 7981 7982 7983 7984 7985 7986 7987 7988 7989 7990 7991 7992 7993 7994 7995 7996 7997 7998 7999 8000 8001 8002 8003 8004 8005 8006 8007 8008 8009 8010 8011 8012 8013 8014 8015 8016 8017
|
########################################################################
# LDIF export by web2ldap 1.2.80, see http://www.web2ldap.de
# Date and time: Saturday, 2017-02-18 17:09:50 GMT
# Bind-DN: u'cn=Michael Str\xf6der+mail=michael@stroeder.com,ou=Private,dc=stroeder,dc=de'
# LDAP-URL of search:
# ldapi:///cn%3DSubschema?matchingRuleUse,ldapSyntaxes,nameForms,dITStructureRules,attributeTypes,matchingRules,dITContentRules,objectClasses,objectClass,cn?base?%28objectClass%3D%2A%29?x-saslmech=EXTERNAL
########################################################################
version: 1
dn: cn=Subschema
attributeTypes: ( 2.5.4.0 NAME 'objectClass' DESC 'RFC4512: object classes o
f the entity' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.38 )
attributeTypes: ( 2.5.21.9 NAME 'structuralObjectClass' DESC 'RFC4512: struc
tural object class of entry' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.
4.1.1466.115.121.1.38 SINGLE-VALUE NO-USER-MODIFICATION USAGE directoryOper
ation )
attributeTypes: ( 2.5.18.1 NAME 'createTimestamp' DESC 'RFC4512: time which
object was created' EQUALITY generalizedTimeMatch ORDERING generalizedTimeO
rderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALUE NO-USER-MODI
FICATION USAGE directoryOperation )
attributeTypes: ( 2.5.18.2 NAME 'modifyTimestamp' DESC 'RFC4512: time which
object was last modified' EQUALITY generalizedTimeMatch ORDERING generalize
dTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALUE NO-USE
R-MODIFICATION USAGE directoryOperation )
attributeTypes: ( 2.5.18.3 NAME 'creatorsName' DESC 'RFC4512: name of creato
r' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SIN
GLE-VALUE NO-USER-MODIFICATION USAGE directoryOperation )
attributeTypes: ( 2.5.18.4 NAME 'modifiersName' DESC 'RFC4512: name of last
modifier' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1
.12 SINGLE-VALUE NO-USER-MODIFICATION USAGE directoryOperation )
attributeTypes: ( 2.5.18.9 NAME 'hasSubordinates' DESC 'X.501: entry has chi
ldren' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VAL
UE NO-USER-MODIFICATION USAGE directoryOperation )
attributeTypes: ( 2.5.18.10 NAME 'subschemaSubentry' DESC 'RFC4512: name of
controlling subschema entry' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1
.4.1.1466.115.121.1.12 SINGLE-VALUE NO-USER-MODIFICATION USAGE directoryOpe
ration )
attributeTypes: ( 2.5.18.12 NAME 'collectiveAttributeSubentries' DESC 'RFC36
71: collective attribute subentries' EQUALITY distinguishedNameMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.12 NO-USER-MODIFICATION USAGE directoryOperatio
n )
attributeTypes: ( 2.5.18.7 NAME 'collectiveExclusions' DESC 'RFC3671: collec
tive attribute exclusions' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.
1.1466.115.121.1.38 USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.1.20 NAME 'entryDN' DESC 'DN of the entry' EQUALIT
Y distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE
NO-USER-MODIFICATION USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.1.16.4 NAME 'entryUUID' DESC 'UUID of the entry' E
QUALITY UUIDMatch ORDERING UUIDOrderingMatch SYNTAX 1.3.6.1.1.16.1 SINGLE-V
ALUE NO-USER-MODIFICATION USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.7 NAME 'entryCSN' DESC 'change sequ
ence number of the entry content' EQUALITY CSNMatch ORDERING CSNOrderingMat
ch SYNTAX 1.3.6.1.4.1.4203.666.11.2.1{64} SINGLE-VALUE NO-USER-MODIFICATION
USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.13 NAME 'namingCSN' DESC 'change se
quence number of the entry naming (RDN)' EQUALITY CSNMatch ORDERING CSNOrde
ringMatch SYNTAX 1.3.6.1.4.1.4203.666.11.2.1{64} SINGLE-VALUE NO-USER-MODIF
ICATION USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.23 NAME 'syncreplCookie' DESC 'sync
repl Cookie for shadow copy' EQUALITY octetStringMatch ORDERING octetString
OrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE NO-USER-MOD
IFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.25 NAME 'contextCSN' DESC 'the larg
est committed CSN of a context' EQUALITY CSNMatch ORDERING CSNOrderingMatch
SYNTAX 1.3.6.1.4.1.4203.666.11.2.1{64} NO-USER-MODIFICATION USAGE dSAOpera
tion )
attributeTypes: ( 1.3.6.1.4.1.1466.101.120.6 NAME 'altServer' DESC 'RFC4512:
alternative servers' SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 USAGE dSAOperati
on )
attributeTypes: ( 1.3.6.1.4.1.1466.101.120.5 NAME 'namingContexts' DESC 'RFC
4512: naming contexts' SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 USAGE dSAOperat
ion )
attributeTypes: ( 1.3.6.1.4.1.1466.101.120.13 NAME 'supportedControl' DESC '
RFC4512: supported controls' SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 USAGE dSA
Operation )
attributeTypes: ( 1.3.6.1.4.1.1466.101.120.7 NAME 'supportedExtension' DESC
'RFC4512: supported extended operations' SYNTAX 1.3.6.1.4.1.1466.115.121.1.
38 USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.1466.101.120.15 NAME 'supportedLDAPVersion' DE
SC 'RFC4512: supported LDAP versions' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27
USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.1466.101.120.14 NAME 'supportedSASLMechanisms'
DESC 'RFC4512: supported SASL mechanisms' SYNTAX 1.3.6.1.4.1.1466.115.121.
1.15 USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.1.3.5 NAME 'supportedFeatures' DESC 'RFC4
512: features supported by the server' EQUALITY objectIdentifierMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.38 USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.10 NAME 'monitorContext' DESC 'moni
tor context' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.12 SINGLE-VALUE NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.1 NAME 'configContext' DESC 'confi
g context' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.12 SINGLE-VALUE NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.1.4 NAME 'vendorName' DESC 'RFC3045: name of imple
mentation vendor' EQUALITY caseExactMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1
.15 SINGLE-VALUE NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.1.5 NAME 'vendorVersion' DESC 'RFC3045: version of
implementation' EQUALITY caseExactMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.
15 SINGLE-VALUE NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 2.5.18.5 NAME 'administrativeRole' DESC 'RFC3672: administ
rative role' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121
.1.38 USAGE directoryOperation )
attributeTypes: ( 2.5.18.6 NAME 'subtreeSpecification' DESC 'RFC3672: subtre
e specification' SYNTAX 1.3.6.1.4.1.1466.115.121.1.45 SINGLE-VALUE USAGE di
rectoryOperation )
attributeTypes: ( 2.5.21.1 NAME 'dITStructureRules' DESC 'RFC4512: DIT struc
ture rules' EQUALITY integerFirstComponentMatch SYNTAX 1.3.6.1.4.1.1466.115
.121.1.17 USAGE directoryOperation )
attributeTypes: ( 2.5.21.2 NAME 'dITContentRules' DESC 'RFC4512: DIT content
rules' EQUALITY objectIdentifierFirstComponentMatch SYNTAX 1.3.6.1.4.1.146
6.115.121.1.16 USAGE directoryOperation )
attributeTypes: ( 2.5.21.4 NAME 'matchingRules' DESC 'RFC4512: matching rule
s' EQUALITY objectIdentifierFirstComponentMatch SYNTAX 1.3.6.1.4.1.1466.115
.121.1.30 USAGE directoryOperation )
attributeTypes: ( 2.5.21.5 NAME 'attributeTypes' DESC 'RFC4512: attribute ty
pes' EQUALITY objectIdentifierFirstComponentMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.3 USAGE directoryOperation )
attributeTypes: ( 2.5.21.6 NAME 'objectClasses' DESC 'RFC4512: object classe
s' EQUALITY objectIdentifierFirstComponentMatch SYNTAX 1.3.6.1.4.1.1466.115
.121.1.37 USAGE directoryOperation )
attributeTypes: ( 2.5.21.7 NAME 'nameForms' DESC 'RFC4512: name forms ' EQUA
LITY objectIdentifierFirstComponentMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.
35 USAGE directoryOperation )
attributeTypes: ( 2.5.21.8 NAME 'matchingRuleUse' DESC 'RFC4512: matching ru
le uses' EQUALITY objectIdentifierFirstComponentMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.31 USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.4.1.1466.101.120.16 NAME 'ldapSyntaxes' DESC 'RFC4
512: LDAP syntaxes' EQUALITY objectIdentifierFirstComponentMatch SYNTAX 1.3
.6.1.4.1.1466.115.121.1.54 USAGE directoryOperation )
attributeTypes: ( 2.5.4.1 NAME ( 'aliasedObjectName' 'aliasedEntryName' ) DE
SC 'RFC4512: name of aliased object' EQUALITY distinguishedNameMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113730.3.1.34 NAME 'ref' DESC 'RFC3296: subordi
nate referral URL' EQUALITY caseExactMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.15 USAGE distributedOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.1.3.1 NAME 'entry' DESC 'OpenLDAP ACL ent
ry pseudo-attribute' SYNTAX 1.3.6.1.4.1.4203.1.1.1 SINGLE-VALUE NO-USER-MOD
IFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.1.3.2 NAME 'children' DESC 'OpenLDAP ACL
children pseudo-attribute' SYNTAX 1.3.6.1.4.1.4203.1.1.1 SINGLE-VALUE NO-US
ER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.8 NAME ( 'authzTo' 'saslAuthzTo' )
DESC 'proxy authorization targets' EQUALITY authzMatch SYNTAX 1.3.6.1.4.1.4
203.666.2.7 USAGE distributedOperation X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.9 NAME ( 'authzFrom' 'saslAuthzFrom
' ) DESC 'proxy authorization sources' EQUALITY authzMatch SYNTAX 1.3.6.1.4
.1.4203.666.2.7 USAGE distributedOperation X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.1466.101.119.3 NAME 'entryTtl' DESC 'RFC2589:
entry time-to-live' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE NO-US
ER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.1466.101.119.4 NAME 'dynamicSubtrees' DESC 'RF
C2589: dynamic subtrees' SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 NO-USER-MODIF
ICATION USAGE dSAOperation )
attributeTypes: ( 2.5.4.49 NAME 'distinguishedName' DESC 'RFC4519: common su
pertype of DN attributes' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.
1.1466.115.121.1.12 )
attributeTypes: ( 2.5.4.41 NAME 'name' DESC 'RFC4519: common supertype of na
me attributes' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SY
NTAX 1.3.6.1.4.1.1466.115.121.1.15{32768} )
attributeTypes: ( 2.5.4.3 NAME ( 'cn' 'commonName' ) DESC 'RFC4519: common n
ame(s) for which the entity is known by' SUP name )
attributeTypes: ( 0.9.2342.19200300.100.1.1 NAME ( 'uid' 'userid' ) DESC 'RF
C4519: user identifier' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstring
sMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 1.3.6.1.1.1.1.0 NAME 'uidNumber' DESC 'RFC2307: An integer
uniquely identifying a user in an administrative domain' EQUALITY integerM
atch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SIN
GLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.1 NAME 'gidNumber' DESC 'RFC2307: An integer
uniquely identifying a group in an administrative domain' EQUALITY integer
Match ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SI
NGLE-VALUE )
attributeTypes: ( 2.5.4.35 NAME 'userPassword' DESC 'RFC4519/2307: password
of user' EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40{128
} )
attributeTypes: ( 1.3.6.1.4.1.250.1.57 NAME 'labeledURI' DESC 'RFC2079: Unif
orm Resource Identifier with optional label' EQUALITY caseExactMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 2.5.4.13 NAME 'description' DESC 'RFC4519: descriptive inf
ormation' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15{1024} )
attributeTypes: ( 2.5.4.34 NAME 'seeAlso' DESC 'RFC4519: DN of related objec
t' SUP distinguishedName )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.78 NAME 'olcConfigFile' DESC '
File for slapd configuration directives' EQUALITY caseIgnoreMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.79 NAME 'olcConfigDir' DESC 'D
irectory for slapd configuration backend' EQUALITY caseIgnoreMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.1 NAME 'olcAccess' DESC 'Acces
s Control List' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.
15 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.86 NAME 'olcAddContentAcl' DES
C 'Check ACLs against content of Add ops' SYNTAX 1.3.6.1.4.1.1466.115.121.1
.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.2 NAME 'olcAllows' DESC 'Allow
ed set of deprecated features' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.
1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.3 NAME 'olcArgsFile' DESC 'Fil
e for slapd command line options' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4
.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.5 NAME 'olcAttributeOptions' E
QUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.4 NAME 'olcAttributeTypes' DES
C 'OpenLDAP attributeTypes' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubst
ringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.6 NAME 'olcAuthIDRewrite' EQUA
LITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORDERED 'VALUES
' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.7 NAME 'olcAuthzPolicy' EQUALI
TY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.8 NAME 'olcAuthzRegexp' EQUALI
TY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORDERED 'VALUES'
)
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.9 NAME 'olcBackend' DESC 'A ty
pe of backend' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.1
5 SINGLE-VALUE X-ORDERED 'SIBLINGS' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.10 NAME 'olcConcurrency' SYNTA
X 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.11 NAME 'olcConnMaxPending' SY
NTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.12 NAME 'olcConnMaxPendingAuth
' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.13 NAME 'olcDatabase' DESC 'Th
e backend type for a database instance' SUP olcBackend SINGLE-VALUE X-ORDER
ED 'SIBLINGS' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.14 NAME 'olcDefaultSearchBase'
SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.15 NAME 'olcDisallows' EQUALIT
Y caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.16 NAME 'olcDitContentRules' D
ESC 'OpenLDAP DIT content rules' EQUALITY caseIgnoreMatch SUBSTR caseIgnore
SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.20 NAME 'olcExtraAttrs' EQUA
LITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.17 NAME 'olcGentleHUP' SYNTAX
1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.17 NAME 'olcHidden' SYNTAX 1
.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.18 NAME 'olcIdleTimeout' SYNTA
X 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.19 NAME 'olcInclude' SUP label
edURI )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.20 NAME 'olcIndexSubstrIfMinLe
n' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.21 NAME 'olcIndexSubstrIfMaxLe
n' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.22 NAME 'olcIndexSubstrAnyLen'
SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.23 NAME 'olcIndexSubstrAnyStep
' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.84 NAME 'olcIndexIntLen' SYNTA
X 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.4 NAME 'olcLastMod' SYNTAX 1
.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.85 NAME 'olcLdapSyntaxes' DESC
'OpenLDAP ldapSyntax' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstrings
Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.5 NAME 'olcLimits' EQUALITY
caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.93 NAME 'olcListenerThreads' S
YNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.26 NAME 'olcLocalSSF' SYNTAX 1
.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.27 NAME 'olcLogFile' SYNTAX 1.
3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.28 NAME 'olcLogLevel' EQUALITY
caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.6 NAME 'olcMaxDerefDepth' SY
NTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.16 NAME 'olcMirrorMode' SYNT
AX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.30 NAME 'olcModuleLoad' EQUALI
TY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORDERED 'VALUES'
)
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.31 NAME 'olcModulePath' SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.18 NAME 'olcMonitoring' SYNT
AX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.32 NAME 'olcObjectClasses' DES
C 'OpenLDAP object classes' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubst
ringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.33 NAME 'olcObjectIdentifier'
EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.
1.1466.115.121.1.15 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.34 NAME 'olcOverlay' SUP olcDa
tabase SINGLE-VALUE X-ORDERED 'SIBLINGS' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.35 NAME 'olcPasswordCryptSaltF
ormat' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.36 NAME 'olcPasswordHash' EQUA
LITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.37 NAME 'olcPidFile' SYNTAX 1.
3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.38 NAME 'olcPlugin' EQUALITY c
aseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.39 NAME 'olcPluginLogFile' SYN
TAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.40 NAME 'olcReadOnly' SYNTAX 1
.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.41 NAME 'olcReferral' SUP labe
ledURI SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.7 NAME 'olcReplica' SUP labe
ledURI EQUALITY caseIgnoreMatch X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.43 NAME 'olcReplicaArgsFile' S
YNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.44 NAME 'olcReplicaPidFile' SY
NTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.45 NAME 'olcReplicationInterva
l' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.46 NAME 'olcReplogFile' SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.47 NAME 'olcRequires' EQUALITY
caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.48 NAME 'olcRestrict' EQUALITY
caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.49 NAME 'olcReverseLookup' SYN
TAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.8 NAME 'olcRootDN' EQUALITY
distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.51 NAME 'olcRootDSE' EQUALITY
caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.9 NAME 'olcRootPW' SYNTAX 1.
3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.89 NAME 'olcSaslAuxprops' SYNT
AX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.53 NAME 'olcSaslHost' SYNTAX 1
.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.54 NAME 'olcSaslRealm' SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.56 NAME 'olcSaslSecProps' SYNT
AX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.58 NAME 'olcSchemaDN' EQUALITY
distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.59 NAME 'olcSecurity' EQUALITY
caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.81 NAME 'olcServerID' EQUALITY
caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.60 NAME 'olcSizeLimit' SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.61 NAME 'olcSockbufMaxIncoming
' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.62 NAME 'olcSockbufMaxIncoming
Auth' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.83 NAME 'olcSortVals' DESC 'At
tributes whose values will always be sorted' EQUALITY caseIgnoreMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.15 NAME 'olcSubordinate' SYN
TAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.10 NAME 'olcSuffix' EQUALITY
distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.19 NAME 'olcSyncUseSubentry'
DESC 'Store sync context in a subentry' SYNTAX 1.3.6.1.4.1.1466.115.121.1.
7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.11 NAME 'olcSyncrepl' EQUALI
TY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORDERED 'VALUES'
)
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.90 NAME 'olcTCPBuffer' DESC 'C
ustom TCP buffer size' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.66 NAME 'olcThreads' SYNTAX 1.
3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.67 NAME 'olcTimeLimit' SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.68 NAME 'olcTLSCACertificateFi
le' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.69 NAME 'olcTLSCACertificatePa
th' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.70 NAME 'olcTLSCertificateFile
' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.71 NAME 'olcTLSCertificateKeyF
ile' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.72 NAME 'olcTLSCipherSuite' SY
NTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.73 NAME 'olcTLSCRLCheck' SYNTA
X 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.82 NAME 'olcTLSCRLFile' SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.74 NAME 'olcTLSRandFile' SYNTA
X 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.75 NAME 'olcTLSVerifyClient' S
YNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.77 NAME 'olcTLSDHParamFile' SY
NTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.87 NAME 'olcTLSProtocolMin' SY
NTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.80 NAME 'olcToolThreads' SYNTA
X 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.12 NAME 'olcUpdateDN' SYNTAX
1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.13 NAME 'olcUpdateRef' SUP l
abeledURI EQUALITY caseIgnoreMatch )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.0.88 NAME 'olcWriteTimeout' SYNT
AX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.1 NAME 'olcDbDirectory' DESC
'Directory for database content' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4
.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.5 NAME 'OpenLDAPaci' DESC 'OpenLDAP
access control information (experimental)' EQUALITY OpenLDAPaciMatch SYNTA
X 1.3.6.1.4.1.4203.666.2.1 USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.2 NAME 'olcDbCheckpoint' DES
C 'Database checkpoint interval in kbytes and minutes' SYNTAX 1.3.6.1.4.1.1
466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.4 NAME 'olcDbNoSync' DESC 'D
isable synchronous database writes' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SIN
GLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.12.3 NAME 'olcDbEnvFlags' DESC
'Database environment flags' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.2 NAME 'olcDbIndex' DESC 'At
tribute index parameters' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.
115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.12.1 NAME 'olcDbMaxReaders' DE
SC 'Maximum number of threads that may access the DB concurrently' SYNTAX 1
.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.12.2 NAME 'olcDbMaxSize' DESC
'Maximum size of DB in bytes' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-V
ALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.3 NAME 'olcDbMode' DESC 'Uni
x permissions of database files' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGL
E-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.12.5 NAME 'olcDbRtxnSize' DESC
'Number of entries to process in one read transaction' SYNTAX 1.3.6.1.4.1.
1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.9 NAME 'olcDbSearchStack' DE
SC 'Depth of search stack in IDLs' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SIN
GLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.11 NAME 'olcDbCacheFree' DES
C 'Number of extra entries to free when max is reached' SYNTAX 1.3.6.1.4.1.
1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.1 NAME 'olcDbCacheSize' DESC
'Entry cache size in entries' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-
VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.16 NAME 'olcDbChecksum' DESC
'Enable database checksum validation' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.13 NAME 'olcDbCryptFile' DES
C 'Pathname of file containing the DB encryption key' SYNTAX 1.3.6.1.4.1.14
66.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.14 NAME 'olcDbCryptKey' DESC
'DB encryption key' SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.3 NAME 'olcDbConfig' DESC 'B
erkeleyDB DB_CONFIG configuration directives' SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.26 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.15 NAME 'olcDbPageSize' DESC
'Page size of specified DB, in Kbytes' EQUALITY caseExactMatch SYNTAX 1.3.
6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.5 NAME 'olcDbDirtyRead' DESC
'Allow reads of uncommitted data' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SING
LE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.12 NAME 'olcDbDNcacheSize' D
ESC 'DN cache size' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.6 NAME 'olcDbIDLcacheSize' D
ESC 'IDL cache size in IDLs' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VA
LUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.7 NAME 'olcDbLinearIndex' DE
SC 'Index attributes one at a time' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SIN
GLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.8 NAME 'olcDbLockDetect' DES
C 'Deadlock detection algorithm' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGL
E-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.1.10 NAME 'olcDbShmKey' DESC '
Key for shared memory region' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-V
ALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.0.14 NAME 'olcDbURI' DESC 'URI
(list) for remote DSA' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.1 NAME 'olcDbStartTLS' DESC
'StartTLS' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.2 NAME 'olcDbACLAuthcDn' DES
C 'Remote ACL administrative identity' OBSOLETE SYNTAX 1.3.6.1.4.1.1466.115
.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.3 NAME 'olcDbACLPasswd' DESC
'Remote ACL administrative identity credentials' OBSOLETE SYNTAX 1.3.6.1.4
.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.4 NAME 'olcDbACLBind' DESC '
Remote ACL administrative identity auth bind configuration' SYNTAX 1.3.6.1.
4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.5 NAME 'olcDbIDAssertAuthcDn
' DESC 'Remote Identity Assertion administrative identity' OBSOLETE SYNTAX
1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.6 NAME 'olcDbIDAssertPasswd'
DESC 'Remote Identity Assertion administrative identity credentials' OBSOL
ETE SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.7 NAME 'olcDbIDAssertBind' D
ESC 'Remote Identity Assertion administrative identity auth bind configurat
ion' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.8 NAME 'olcDbIDAssertMode' D
ESC 'Remote Identity Assertion mode' OBSOLETE SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.9 NAME 'olcDbIDAssertAuthzFr
om' DESC 'Remote Identity Assertion authz rules' EQUALITY caseIgnoreMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.10 NAME 'olcDbRebindAsUser'
DESC 'Rebind as user' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.11 NAME 'olcDbChaseReferrals
' DESC 'Chase referrals' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.12 NAME 'olcDbTFSupport' DES
C 'Absolute filters support' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VA
LUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.13 NAME 'olcDbProxyWhoAmI' D
ESC 'Proxy whoAmI exop' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.14 NAME 'olcDbTimeout' DESC
'Per-operation timeouts' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.15 NAME 'olcDbIdleTimeout' D
ESC 'connection idle timeout' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-V
ALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.16 NAME 'olcDbConnTtl' DESC
'connection ttl' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.17 NAME 'olcDbNetworkTimeout
' DESC 'connection network timeout' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SI
NGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.18 NAME 'olcDbProtocolVersio
n' DESC 'protocol version' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALU
E )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.19 NAME 'olcDbSingleConn' DE
SC 'cache a single connection per identity' SYNTAX 1.3.6.1.4.1.1466.115.121
.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.20 NAME 'olcDbCancel' DESC '
abandon/ignore/exop operations when appropriate' SYNTAX 1.3.6.1.4.1.1466.11
5.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.21 NAME 'olcDbQuarantine' DE
SC 'Quarantine database if connection fails and retry according to rule' SY
NTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.22 NAME 'olcDbUseTemporaryCo
nn' DESC 'Use temporary connections if the cached one is busy' SYNTAX 1.3.6
.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.23 NAME 'olcDbConnectionPool
Max' DESC 'Max size of privileged connections pool' SYNTAX 1.3.6.1.4.1.1466
.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.24 NAME 'olcDbSessionTrackin
gRequest' DESC 'Add session tracking control to proxied requests' SYNTAX 1.
3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.25 NAME 'olcDbNoRefs' DESC '
Do not return search reference responses' SYNTAX 1.3.6.1.4.1.1466.115.121.1
.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.26 NAME 'olcDbNoUndefFilter'
DESC 'Do not propagate undefined search filters' SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.108 NAME 'olcDbOnErr' DESC '
error handling' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.27 NAME 'olcDbIDAssertPassTh
ru' DESC 'Remote Identity Assertion passthru rules' EQUALITY caseIgnoreMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.29 NAME 'olcDbKeepalive' DES
C 'TCP keepalive' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.3.1 NAME 'olcChainingBehavior'
DESC 'Chaining behavior control parameters (draft-sermersheim-ldap-chainin
g)' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.3.2 NAME 'olcChainCacheURI' DE
SC 'Enables caching of URIs not present in configuration' SYNTAX 1.3.6.1.4.
1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.3.3 NAME 'olcChainMaxReferralD
epth' DESC 'max referral depth' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.3.4 NAME 'olcChainReturnError'
DESC 'Errors are returned instead of the original referral' SYNTAX 1.3.6.1
.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.101 NAME 'olcDbRewrite' DESC
'DN rewriting rules' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.
121.1.15 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.102 NAME 'olcDbMap' DESC 'Ma
p attribute and objectclass names' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.
4.1.1466.115.121.1.15 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.103 NAME 'olcDbSubtreeExclud
e' DESC 'DN of subtree to exclude from target' EQUALITY caseIgnoreMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.104 NAME 'olcDbSubtreeInclud
e' DESC 'DN of subtree to include in target' EQUALITY caseIgnoreMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.105 NAME 'olcDbDefaultTarget
' DESC 'Specify the default target' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SI
NGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.106 NAME 'olcDbDnCacheTtl' D
ESC 'dncache ttl' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.107 NAME 'olcDbBindTimeout'
DESC 'bind timeout' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.109 NAME 'olcDbPseudoRootBin
dDefer' DESC 'error handling' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VA
LUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.110 NAME 'olcDbNretries' DES
C 'retry handling' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.111 NAME 'olcDbClientPr' DES
C 'PagedResults handling' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.100 NAME 'olcMetaSub' DESC '
Placeholder to name a Target entry' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1
.4.1.1466.115.121.1.15 SINGLE-VALUE X-ORDERED 'SIBLINGS' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.3.112 NAME 'olcDbFilter' DESC
'Filter regex pattern to include in target' EQUALITY caseExactMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.1 NAME 'monitoredInfo' DESC 'mon
itored info' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNT
AX 1.3.6.1.4.1.1466.115.121.1.15{32768} NO-USER-MODIFICATION USAGE dSAOpera
tion )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.2 NAME 'managedInfo' DESC 'monit
or managed info' SUP name )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.3 NAME 'monitorCounter' DESC 'mo
nitor counter' EQUALITY integerMatch ORDERING integerOrderingMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.27 NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.4 NAME 'monitorOpCompleted' DESC
'monitor completed operations' SUP monitorCounter NO-USER-MODIFICATION USA
GE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.5 NAME 'monitorOpInitiated' DESC
'monitor initiated operations' SUP monitorCounter NO-USER-MODIFICATION USA
GE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.6 NAME 'monitorConnectionNumber'
DESC 'monitor connection number' SUP monitorCounter NO-USER-MODIFICATION U
SAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.7 NAME 'monitorConnectionAuthzDN
' DESC 'monitor connection authorization DN' EQUALITY distinguishedNameMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 NO-USER-MODIFICATION USAGE dSAOperat
ion )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.8 NAME 'monitorConnectionLocalAd
dress' DESC 'monitor connection local address' SUP monitoredInfo NO-USER-MO
DIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.9 NAME 'monitorConnectionPeerAdd
ress' DESC 'monitor connection peer address' SUP monitoredInfo NO-USER-MODI
FICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.10 NAME 'monitorTimestamp' DESC
'monitor timestamp' EQUALITY generalizedTimeMatch ORDERING generalizedTimeO
rderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALUE NO-USER-MODI
FICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.11 NAME 'monitorOverlay' DESC 'n
ame of overlays defined for a given database' SUP monitoredInfo NO-USER-MOD
IFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.12 NAME 'readOnly' DESC 'read/wr
ite status of a given database' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.7 SINGLE-VALUE USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.13 NAME 'restrictedOperation' DE
SC 'name of restricted operation for a given database' SUP managedInfo )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.14 NAME 'monitorConnectionProtoc
ol' DESC 'monitor connection protocol' SUP monitoredInfo NO-USER-MODIFICATI
ON USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.15 NAME 'monitorConnectionOpsRec
eived' DESC 'monitor number of operations received by the connection' SUP m
onitorCounter NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.16 NAME 'monitorConnectionOpsExe
cuting' DESC 'monitor number of operations in execution within the connecti
on' SUP monitorCounter NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.17 NAME 'monitorConnectionOpsPen
ding' DESC 'monitor number of pending operations within the connection' SUP
monitorCounter NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.18 NAME 'monitorConnectionOpsCom
pleted' DESC 'monitor number of operations completed within the connection'
SUP monitorCounter NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.19 NAME 'monitorConnectionGet' D
ESC 'number of times connection_get() was called so far' SUP monitorCounter
NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.20 NAME 'monitorConnectionRead'
DESC 'number of times connection_read() was called so far' SUP monitorCount
er NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.21 NAME 'monitorConnectionWrite'
DESC 'number of times connection_write() was called so far' SUP monitorCou
nter NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.22 NAME 'monitorConnectionMask'
DESC 'monitor connection mask' SUP monitoredInfo NO-USER-MODIFICATION USAGE
dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.23 NAME 'monitorConnectionListen
er' DESC 'monitor connection listener' SUP monitoredInfo NO-USER-MODIFICATI
ON USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.24 NAME 'monitorConnectionPeerDo
main' DESC 'monitor connection peer domain' SUP monitoredInfo NO-USER-MODIF
ICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.25 NAME 'monitorConnectionStartT
ime' DESC 'monitor connection start time' SUP monitorTimestamp SINGLE-VALUE
NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.26 NAME 'monitorConnectionActivi
tyTime' DESC 'monitor connection activity time' SUP monitorTimestamp SINGLE
-VALUE NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.27 NAME 'monitorIsShadow' DESC '
TRUE if the database is shadow' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.7 SINGLE-VALUE USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.28 NAME 'monitorUpdateRef' DESC
'update referral for shadow databases' SUP monitoredInfo SINGLE-VALUE USAGE
dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.29 NAME 'monitorRuntimeConfig' D
ESC 'TRUE if component allows runtime configuration' EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.30 NAME 'monitorSuperiorDN' DESC
'monitor superior DN' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.12 NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.2.5.1 NAME 'olcRelay' DESC 'Rela
y DN' SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.15.1 NAME 'olcAuditlogFile' DE
SC 'Filename for auditlogging' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.4.1 NAME 'olcAccessLogDB' DESC
'Suffix of database for log content' SUP distinguishedName SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.4.2 NAME 'olcAccessLogOps' DES
C 'Operation types to log' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.4.3 NAME 'olcAccessLogPurge' D
ESC 'Log cleanup parameters' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VA
LUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.4.4 NAME 'olcAccessLogSuccess'
DESC 'Log successful ops only' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-
VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.4.5 NAME 'olcAccessLogOld' DES
C 'Log old values when modifying entries matching the filter' SYNTAX 1.3.6.
1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.4.6 NAME 'olcAccessLogOldAttr'
DESC 'Log old values of these attributes even if unmodified' EQUALITY case
IgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.4.7 NAME 'olcAccessLogBase' DE
SC 'Operation types to log under a specific branch' EQUALITY caseIgnoreMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.1 NAME 'reqDN' DESC 'Target DN
of request' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.2 NAME 'reqStart' DESC 'Start
time of request' EQUALITY generalizedTimeMatch ORDERING generalizedTimeOrde
ringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.3 NAME 'reqEnd' DESC 'End time
of request' EQUALITY generalizedTimeMatch ORDERING generalizedTimeOrdering
Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.4 NAME 'reqType' DESC 'Type of
request' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SIN
GLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.5 NAME 'reqSession' DESC 'Sess
ion ID of request' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121
.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.6 NAME 'reqAuthzID' DESC 'Auth
orization ID of requestor' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4
.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.7 NAME 'reqResult' DESC 'Resul
t code of request' EQUALITY integerMatch ORDERING integerOrderingMatch SYNT
AX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.8 NAME 'reqMessage' DESC 'Erro
r text of request' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.9 NAME 'reqReferral' DESC 'Ref
errals returned for request' SUP labeledURI )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.10 NAME 'reqControls' DESC 'Re
quest controls' EQUALITY objectIdentifierFirstComponentMatch SYNTAX 1.3.6.1
.4.1.4203.666.11.5.3.1 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.11 NAME 'reqRespControls' DESC
'Response controls of request' EQUALITY objectIdentifierFirstComponentMatc
h SYNTAX 1.3.6.1.4.1.4203.666.11.5.3.1 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.12 NAME 'reqId' DESC 'ID of Re
quest to Abandon' EQUALITY integerMatch ORDERING integerOrderingMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.13 NAME 'reqVersion' DESC 'Pro
tocol version of Bind request' EQUALITY integerMatch ORDERING integerOrderi
ngMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.14 NAME 'reqMethod' DESC 'Bind
method of request' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.15 NAME 'reqAssertion' DESC 'C
ompare Assertion of request' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VA
LUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.16 NAME 'reqMod' DESC 'Modific
ations of request' EQUALITY octetStringMatch SUBSTR octetStringSubstringsMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.17 NAME 'reqOld' DESC 'Old val
ues of entry before request completed' EQUALITY octetStringMatch SUBSTR oct
etStringSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.18 NAME 'reqNewRDN' DESC 'New
RDN of request' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115
.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.19 NAME 'reqDeleteOldRDN' DESC
'Delete old RDN' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.20 NAME 'reqNewSuperior' DESC
'New superior DN of request' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1
.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.21 NAME 'reqScope' DESC 'Scope
of request' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.22 NAME 'reqDerefAliases' DESC
'Disposition of Aliases in request' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.
1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.23 NAME 'reqAttrsOnly' DESC 'A
ttributes and values of request' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.24 NAME 'reqFilter' DESC 'Filt
er of request' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SY
NTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.25 NAME 'reqAttr' DESC 'Attrib
utes of request' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1
.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.26 NAME 'reqSizeLimit' DESC 'S
ize limit of request' EQUALITY integerMatch ORDERING integerOrderingMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.27 NAME 'reqTimeLimit' DESC 'T
ime limit of request' EQUALITY integerMatch ORDERING integerOrderingMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.28 NAME 'reqEntries' DESC 'Num
ber of entries returned' EQUALITY integerMatch ORDERING integerOrderingMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.29 NAME 'reqData' DESC 'Data o
f extended request' EQUALITY octetStringMatch SUBSTR octetStringSubstringsM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.30 NAME 'auditContext' DESC 'D
N of auditContainer' SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE NO-U
SER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.5.1.31 NAME 'reqEntryUUID' DESC 'U
UID of entry' EQUALITY UUIDMatch ORDERING UUIDOrderingMatch SYNTAX 1.3.6.1.
1.16.1 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.19.1 NAME 'olcCollectInfo' DES
C 'DN of entry and attribute to distribute' EQUALITY caseIgnoreMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.8.1 NAME 'olcDlAttrSet' DESC '
Dynamic list: <group objectClass>, <URL attributeDescription>, <member attr
ibuteDescription>' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121
.1.15 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.11.1 NAME 'olcRefintAttribute'
DESC 'Attributes for referential integrity' EQUALITY caseIgnoreMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.11.2 NAME 'olcRefintNothing' D
ESC 'Replacement DN to supply when needed' SYNTAX 1.3.6.1.4.1.1466.115.121.
1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.11.3 NAME 'olcRefintModifiersN
ame' DESC 'The DN to use as modifiersName' SYNTAX 1.3.6.1.4.1.1466.115.121.
1.12 SINGLE-VALUE )
attributeTypes: ( 1.2.840.113556.1.2.102 NAME 'memberOf' DESC 'Group that th
e entry belongs to' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.12 USAGE dSAOperation X-ORIGIN 'iPlanet Delegated Administrator'
)
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.18.0 NAME 'olcMemberOfDN' DESC
'DN to be used as modifiersName' SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SING
LE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.18.1 NAME 'olcMemberOfDangling
' DESC 'Behavior with respect to dangling members, constrained to ignore, d
rop, error' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.18.2 NAME 'olcMemberOfRefInt'
DESC 'Take care of referential integrity' SYNTAX 1.3.6.1.4.1.1466.115.121.1
.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.18.3 NAME 'olcMemberOfGroupOC'
DESC 'Group objectClass' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.18.4 NAME 'olcMemberOfMemberAD
' DESC 'member attribute' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.18.5 NAME 'olcMemberOfMemberOf
AD' DESC 'memberOf attribute' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-V
ALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.18.7 NAME 'olcMemberOfDangling
Error' DESC 'Error code returned in case of dangling back reference' SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.1.1 NAME 'olcSpCheckpoint' DES
C 'ContextCSN checkpoint interval in ops and minutes' SYNTAX 1.3.6.1.4.1.14
66.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.1.2 NAME 'olcSpSessionlog' DES
C 'Session log size in ops' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VAL
UE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.1.3 NAME 'olcSpNoPresent' DESC
'Omit Present phase processing' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE
-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.1.4 NAME 'olcSpReloadHint' DES
C 'Observe Reload Hint in Request control' SYNTAX 1.3.6.1.4.1.1466.115.121.
1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.14.1 NAME 'olcTranslucentStric
t' DESC 'Reveal attribute deletion constraint violations' SYNTAX 1.3.6.1.4.
1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.14.2 NAME 'olcTranslucentNoGlu
e' DESC 'Disable automatic glue records for ADD and MODRDN' SYNTAX 1.3.6.1.
4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.14.3 NAME 'olcTranslucentLocal
' DESC 'Attributes to use in local search filter' SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.14.4 NAME 'olcTranslucentRemot
e' DESC 'Attributes to use in remote search filter' SYNTAX 1.3.6.1.4.1.1466
.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.14.5 NAME 'olcTranslucentBindL
ocal' DESC 'Enable local bind' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-V
ALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.14.6 NAME 'olcTranslucentPwMod
Local' DESC 'Enable local RFC 3062 Password Modify extended operation' SYNT
AX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.10.1 NAME 'olcUniqueBase' DESC
'Subtree for uniqueness searches' EQUALITY distinguishedNameMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.10.2 NAME 'olcUniqueIgnore' DE
SC 'Attributes for which uniqueness shall not be enforced' EQUALITY caseIgn
oreMatch ORDERING caseIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.10.3 NAME 'olcUniqueAttribute'
DESC 'Attributes for which uniqueness shall be enforced' EQUALITY caseIgno
reMatch ORDERING caseIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.10.4 NAME 'olcUniqueStrict' DE
SC 'Enforce uniqueness of null values' EQUALITY booleanMatch SYNTAX 1.3.6.1
.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.10.5 NAME 'olcUniqueURI' DESC
'List of keywords and LDAP URIs for a uniqueness domain' EQUALITY caseExact
Match ORDERING caseExactOrderingMatch SUBSTR caseExactSubstringsMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.13.1 NAME 'olcConstraintAttrib
ute' DESC 'constraint for list of attributes' EQUALITY caseIgnoreMatch SYNT
AX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.5.1 NAME 'olcValSortAttr' DESC
'Sorting rule for attribute under given DN' EQUALITY caseIgnoreMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.21.1 NAME 'olcSssVlvMax' DESC
'Maximum number of concurrent Sort requests' SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.21.2 NAME 'olcSssVlvMaxKeys' D
ESC 'Maximum number of Keys in a Sort request' SYNTAX 1.3.6.1.4.1.1466.115.
121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.21.3 NAME 'olcSssVlvMaxPerConn
' DESC 'Maximum number of concurrent paged search requests per connection'
SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.16 NAME 'pwdChangedTime' DESC 'The
time the password was last changed' EQUALITY generalizedTimeMatch ORDERING
generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-V
ALUE NO-USER-MODIFICATION USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.17 NAME 'pwdAccountLockedTime' DES
C 'The time an user account was locked' EQUALITY generalizedTimeMatch ORDER
ING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGL
E-VALUE USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.19 NAME 'pwdFailureTime' DESC 'The
timestamps of the last consecutive authentication failures' EQUALITY gener
alizedTimeMatch ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.24 NO-USER-MODIFICATION USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.20 NAME 'pwdHistory' DESC 'The his
tory of users passwords' EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.
115.121.1.40 NO-USER-MODIFICATION USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.21 NAME 'pwdGraceUseTime' DESC 'Th
e timestamps of the grace login once the password has expired' EQUALITY gen
eralizedTimeMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 NO-USER-MODIFICATION
USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.22 NAME 'pwdReset' DESC 'The indic
ation that the password has been reset' EQUALITY booleanMatch SYNTAX 1.3.6.
1.4.1.1466.115.121.1.7 SINGLE-VALUE USAGE directoryOperation )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.23 NAME 'pwdPolicySubentry' DESC '
The pwdPolicy subentry in effect for this object' EQUALITY distinguishedNam
eMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE USAGE directoryOpe
ration )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.12.1 NAME 'olcPPolicyDefault'
DESC 'DN of a pwdPolicy object for uncustomized objects' SYNTAX 1.3.6.1.4.1
.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.12.2 NAME 'olcPPolicyHashClear
text' DESC 'Hash passwords on add or modify' SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.12.4 NAME 'olcPPolicyForwardUp
dates' DESC 'Allow policy state updates to be forwarded via updateref' SYNT
AX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.12.3 NAME 'olcPPolicyUseLockou
t' DESC 'Warn clients with AccountLocked' SYNTAX 1.3.6.1.4.1.1466.115.121.1
.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.57 NAME 'entryExpireTimestamp' DESC
'RFC2589 OpenLDAP extension: expire time of a dynamic object, computed as
now + entryTtl' EQUALITY generalizedTimeMatch ORDERING generalizedTimeOrder
ingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALUE NO-USER-MODIFICA
TION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.9.1 NAME 'olcDDSstate' DESC 'R
FC2589 Dynamic directory services state' SYNTAX 1.3.6.1.4.1.1466.115.121.1.
7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.9.2 NAME 'olcDDSmaxTtl' DESC '
RFC2589 Dynamic directory services max TTL' SYNTAX 1.3.6.1.4.1.1466.115.121
.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.9.3 NAME 'olcDDSminTtl' DESC '
RFC2589 Dynamic directory services min TTL' SYNTAX 1.3.6.1.4.1.1466.115.121
.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.9.4 NAME 'olcDDSdefaultTtl' DE
SC 'RFC2589 Dynamic directory services default TTL' SYNTAX 1.3.6.1.4.1.1466
.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.9.5 NAME 'olcDDSinterval' DESC
'RFC2589 Dynamic directory services expiration task run interval' SYNTAX 1
.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.9.6 NAME 'olcDDStolerance' DES
C 'RFC2589 Dynamic directory services additional TTL in expiration scheduli
ng' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.3.9.7 NAME 'olcDDSmaxDynamicObje
cts' DESC 'RFC2589 Dynamic directory services max number of dynamic objects
' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.453.16.2.188 NAME 'authTimestamp' DESC 'last s
uccessful authentication using any method/mech' EQUALITY generalizedTimeMat
ch ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.
24 SINGLE-VALUE NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 1.3.6.1.4.1.4203.1.12.2.3.4.5.1 NAME 'olcLastBindPrecision
' DESC 'Precision of authTimestamp attribute' SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.1.55.0.1.1 NAME 'olmDbDirectory' DESC
'Path name of the directory where the database environment resides' SUP mo
nitoredInfo NO-USER-MODIFICATION USAGE dSAOperation )
attributeTypes: ( 2.5.4.2 NAME 'knowledgeInformation' DESC 'RFC2256: knowled
ge information' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.
15{32768} )
attributeTypes: ( 2.5.4.4 NAME ( 'sn' 'surname' ) DESC 'RFC2256: last (famil
y) name(s) for which the entity is known by' SUP name )
attributeTypes: ( 2.5.4.5 NAME 'serialNumber' DESC 'RFC2256: serial number o
f the entity' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.44{64} )
attributeTypes: ( 2.5.4.6 NAME ( 'c' 'countryName' ) DESC 'RFC4519: two-lett
er ISO-3166 country code' SUP name SYNTAX 1.3.6.1.4.1.1466.115.121.1.11 SIN
GLE-VALUE )
attributeTypes: ( 2.5.4.7 NAME ( 'l' 'localityName' ) DESC 'RFC2256: localit
y which this object resides in' SUP name )
attributeTypes: ( 2.5.4.8 NAME ( 'st' 'stateOrProvinceName' ) DESC 'RFC2256:
state or province which this object resides in' SUP name )
attributeTypes: ( 2.5.4.9 NAME ( 'street' 'streetAddress' ) DESC 'RFC2256: s
treet address of this object' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSub
stringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{128} )
attributeTypes: ( 2.5.4.10 NAME ( 'o' 'organizationName' ) DESC 'RFC2256: or
ganization this object belongs to' SUP name )
attributeTypes: ( 2.5.4.11 NAME ( 'ou' 'organizationalUnitName' ) DESC 'RFC2
256: organizational unit this object belongs to' SUP name )
attributeTypes: ( 2.5.4.12 NAME 'title' DESC 'RFC2256: title associated with
the entity' SUP name )
attributeTypes: ( 2.5.4.14 NAME 'searchGuide' DESC 'RFC2256: search guide, d
eprecated by enhancedSearchGuide' SYNTAX 1.3.6.1.4.1.1466.115.121.1.25 )
attributeTypes: ( 2.5.4.15 NAME 'businessCategory' DESC 'RFC2256: business c
ategory' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.15{128} )
attributeTypes: ( 2.5.4.16 NAME 'postalAddress' DESC 'RFC2256: postal addres
s' EQUALITY caseIgnoreListMatch SUBSTR caseIgnoreListSubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.41 )
attributeTypes: ( 2.5.4.17 NAME 'postalCode' DESC 'RFC2256: postal code' EQU
ALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.15{40} )
attributeTypes: ( 2.5.4.18 NAME 'postOfficeBox' DESC 'RFC2256: Post Office B
ox' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.
1.4.1.1466.115.121.1.15{40} )
attributeTypes: ( 2.5.4.19 NAME 'physicalDeliveryOfficeName' DESC 'RFC2256:
Physical Delivery Office Name' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSu
bstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{128} )
attributeTypes: ( 2.5.4.20 NAME 'telephoneNumber' DESC 'RFC2256: Telephone N
umber' EQUALITY telephoneNumberMatch SUBSTR telephoneNumberSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.50{32} )
attributeTypes: ( 2.5.4.21 NAME 'telexNumber' DESC 'RFC2256: Telex Number' S
YNTAX 1.3.6.1.4.1.1466.115.121.1.52 )
attributeTypes: ( 2.5.4.22 NAME 'teletexTerminalIdentifier' DESC 'RFC2256: T
eletex Terminal Identifier' SYNTAX 1.3.6.1.4.1.1466.115.121.1.51 )
attributeTypes: ( 2.5.4.23 NAME ( 'facsimileTelephoneNumber' 'fax' ) DESC 'R
FC2256: Facsimile (Fax) Telephone Number' SYNTAX 1.3.6.1.4.1.1466.115.121.1
.22 )
attributeTypes: ( 2.5.4.24 NAME 'x121Address' DESC 'RFC2256: X.121 Address'
EQUALITY numericStringMatch SUBSTR numericStringSubstringsMatch SYNTAX 1.3.
6.1.4.1.1466.115.121.1.36{15} )
attributeTypes: ( 2.5.4.25 NAME 'internationaliSDNNumber' DESC 'RFC2256: int
ernational ISDN number' EQUALITY numericStringMatch SUBSTR numericStringSub
stringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.36{16} )
attributeTypes: ( 2.5.4.26 NAME 'registeredAddress' DESC 'RFC2256: registere
d postal address' SUP postalAddress SYNTAX 1.3.6.1.4.1.1466.115.121.1.41 )
attributeTypes: ( 2.5.4.27 NAME 'destinationIndicator' DESC 'RFC2256: destin
ation indicator' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.44{128} )
attributeTypes: ( 2.5.4.28 NAME 'preferredDeliveryMethod' DESC 'RFC2256: pre
ferred delivery method' SYNTAX 1.3.6.1.4.1.1466.115.121.1.14 SINGLE-VALUE )
attributeTypes: ( 2.5.4.29 NAME 'presentationAddress' DESC 'RFC2256: present
ation address' EQUALITY presentationAddressMatch SYNTAX 1.3.6.1.4.1.1466.11
5.121.1.43 SINGLE-VALUE )
attributeTypes: ( 2.5.4.30 NAME 'supportedApplicationContext' DESC 'RFC2256:
supported application context' EQUALITY objectIdentifierMatch SYNTAX 1.3.6
.1.4.1.1466.115.121.1.38 )
attributeTypes: ( 2.5.4.31 NAME 'member' DESC 'RFC2256: member of a group' S
UP distinguishedName )
attributeTypes: ( 2.5.4.32 NAME 'owner' DESC 'RFC2256: owner (of the object)
' SUP distinguishedName )
attributeTypes: ( 2.5.4.33 NAME 'roleOccupant' DESC 'RFC2256: occupant of ro
le' SUP distinguishedName )
attributeTypes: ( 2.5.4.36 NAME 'userCertificate' DESC 'RFC2256: X.509 user
certificate, use ;binary' EQUALITY certificateExactMatch SYNTAX 1.3.6.1.4.1
.1466.115.121.1.8 )
attributeTypes: ( 2.5.4.37 NAME 'cACertificate' DESC 'RFC2256: X.509 CA cert
ificate, use ;binary' EQUALITY certificateExactMatch SYNTAX 1.3.6.1.4.1.146
6.115.121.1.8 )
attributeTypes: ( 2.5.4.38 NAME 'authorityRevocationList' DESC 'RFC2256: X.5
09 authority revocation list, use ;binary' SYNTAX 1.3.6.1.4.1.1466.115.121.
1.9 )
attributeTypes: ( 2.5.4.39 NAME 'certificateRevocationList' DESC 'RFC2256: X
.509 certificate revocation list, use ;binary' SYNTAX 1.3.6.1.4.1.1466.115.
121.1.9 )
attributeTypes: ( 2.5.4.40 NAME 'crossCertificatePair' DESC 'RFC2256: X.509
cross certificate pair, use ;binary' SYNTAX 1.3.6.1.4.1.1466.115.121.1.10 )
attributeTypes: ( 2.5.4.42 NAME ( 'givenName' 'gn' ) DESC 'RFC2256: first na
me(s) for which the entity is known by' SUP name )
attributeTypes: ( 2.5.4.43 NAME 'initials' DESC 'RFC2256: initials of some o
r all of names, but not the surname(s).' SUP name )
attributeTypes: ( 2.5.4.44 NAME 'generationQualifier' DESC 'RFC2256: name qu
alifier indicating a generation' SUP name )
attributeTypes: ( 2.5.4.45 NAME 'x500UniqueIdentifier' DESC 'RFC2256: X.500
unique identifier' EQUALITY bitStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.6 )
attributeTypes: ( 2.5.4.46 NAME 'dnQualifier' DESC 'RFC2256: DN qualifier' E
QUALITY caseIgnoreMatch ORDERING caseIgnoreOrderingMatch SUBSTR caseIgnoreS
ubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.44 )
attributeTypes: ( 2.5.4.47 NAME 'enhancedSearchGuide' DESC 'RFC2256: enhance
d search guide' SYNTAX 1.3.6.1.4.1.1466.115.121.1.21 )
attributeTypes: ( 2.5.4.48 NAME 'protocolInformation' DESC 'RFC2256: protoco
l information' EQUALITY protocolInformationMatch SYNTAX 1.3.6.1.4.1.1466.11
5.121.1.42 )
attributeTypes: ( 2.5.4.50 NAME 'uniqueMember' DESC 'RFC2256: unique member
of a group' EQUALITY uniqueMemberMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.34
)
attributeTypes: ( 2.5.4.51 NAME 'houseIdentifier' DESC 'RFC2256: house ident
ifier' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3
.6.1.4.1.1466.115.121.1.15{32768} )
attributeTypes: ( 2.5.4.52 NAME 'supportedAlgorithms' DESC 'RFC2256: support
ed algorithms' SYNTAX 1.3.6.1.4.1.1466.115.121.1.49 )
attributeTypes: ( 2.5.4.53 NAME 'deltaRevocationList' DESC 'RFC2256: delta r
evocation list; use ;binary' SYNTAX 1.3.6.1.4.1.1466.115.121.1.9 )
attributeTypes: ( 2.5.4.54 NAME 'dmdName' DESC 'RFC2256: name of DMD' SUP na
me )
attributeTypes: ( 2.5.4.65 NAME 'pseudonym' DESC 'X.520(4th): pseudonym for
the object' SUP name )
attributeTypes: ( 0.9.2342.19200300.100.1.3 NAME ( 'mail' 'rfc822Mailbox' )
DESC 'RFC1274: RFC822 Mailbox' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnor
eIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.25 NAME ( 'dc' 'domainComponent' )
DESC 'RFC1274/2247: domain component' EQUALITY caseIgnoreIA5Match SUBSTR c
aseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VAL
UE )
attributeTypes: ( 0.9.2342.19200300.100.1.37 NAME 'associatedDomain' DESC 'R
FC1274: domain associated with object' EQUALITY caseIgnoreIA5Match SUBSTR c
aseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.840.113549.1.9.1 NAME ( 'email' 'emailAddress' 'pkcs9e
mail' ) DESC 'RFC3280: legacy attribute for email addresses in DNs' EQUALIT
Y caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1
.1466.115.121.1.26{128} )
attributeTypes: ( 0.9.2342.19200300.100.1.2 NAME 'textEncodedORAddress' EQUA
LITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.4 NAME 'info' DESC 'RFC1274: gener
al information' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.15{2048} )
attributeTypes: ( 0.9.2342.19200300.100.1.5 NAME ( 'drink' 'favouriteDrink'
) DESC 'RFC1274: favorite drink' EQUALITY caseIgnoreMatch SUBSTR caseIgnore
SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.6 NAME 'roomNumber' DESC 'RFC1274:
room number' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.7 NAME 'photo' DESC 'RFC1274: phot
o (G3 fax)' SYNTAX 1.3.6.1.4.1.1466.115.121.1.23{25000} )
attributeTypes: ( 0.9.2342.19200300.100.1.8 NAME 'userClass' DESC 'RFC1274:
category of user' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.9 NAME 'host' DESC 'RFC1274: host
computer' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.10 NAME 'manager' DESC 'RFC1274: D
N of manager' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.12 )
attributeTypes: ( 0.9.2342.19200300.100.1.11 NAME 'documentIdentifier' DESC
'RFC1274: unique identifier of document' EQUALITY caseIgnoreMatch SUBSTR ca
seIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.12 NAME 'documentTitle' DESC 'RFC1
274: title of document' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstring
sMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.13 NAME 'documentVersion' DESC 'RF
C1274: version of document' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubst
ringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.14 NAME 'documentAuthor' DESC 'RFC
1274: DN of author of document' EQUALITY distinguishedNameMatch SYNTAX 1.3.
6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 0.9.2342.19200300.100.1.15 NAME 'documentLocation' DESC 'R
FC1274: location of document original' EQUALITY caseIgnoreMatch SUBSTR case
IgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.20 NAME ( 'homePhone' 'homeTelepho
neNumber' ) DESC 'RFC1274: home telephone number' EQUALITY telephoneNumberM
atch SUBSTR telephoneNumberSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.50 )
attributeTypes: ( 0.9.2342.19200300.100.1.21 NAME 'secretary' DESC 'RFC1274:
DN of secretary' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.12 )
attributeTypes: ( 0.9.2342.19200300.100.1.22 NAME 'otherMailbox' SYNTAX 1.3.
6.1.4.1.1466.115.121.1.39 )
attributeTypes: ( 0.9.2342.19200300.100.1.26 NAME 'aRecord' EQUALITY caseIgn
oreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 0.9.2342.19200300.100.1.27 NAME 'mDRecord' EQUALITY caseIg
noreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 0.9.2342.19200300.100.1.28 NAME 'mXRecord' EQUALITY caseIg
noreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 0.9.2342.19200300.100.1.29 NAME 'nSRecord' EQUALITY caseIg
noreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 0.9.2342.19200300.100.1.30 NAME 'sOARecord' EQUALITY caseI
gnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 0.9.2342.19200300.100.1.31 NAME 'cNAMERecord' EQUALITY cas
eIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 0.9.2342.19200300.100.1.38 NAME 'associatedName' DESC 'RFC
1274: DN of entry associated with domain' EQUALITY distinguishedNameMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 0.9.2342.19200300.100.1.39 NAME 'homePostalAddress' DESC '
RFC1274: home postal address' EQUALITY caseIgnoreListMatch SUBSTR caseIgnor
eListSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.41 )
attributeTypes: ( 0.9.2342.19200300.100.1.40 NAME 'personalTitle' DESC 'RFC1
274: personal title' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.41 NAME ( 'mobile' 'mobileTelephon
eNumber' ) DESC 'RFC1274: mobile telephone number' EQUALITY telephoneNumber
Match SUBSTR telephoneNumberSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121
.1.50 )
attributeTypes: ( 0.9.2342.19200300.100.1.42 NAME ( 'pager' 'pagerTelephoneN
umber' ) DESC 'RFC1274: pager telephone number' EQUALITY telephoneNumberMat
ch SUBSTR telephoneNumberSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.
50 )
attributeTypes: ( 0.9.2342.19200300.100.1.43 NAME ( 'co' 'friendlyCountryNam
e' ) DESC 'RFC1274: friendly country name' EQUALITY caseIgnoreMatch SUBSTR
caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 0.9.2342.19200300.100.1.44 NAME 'uniqueIdentifier' DESC 'R
FC1274: unique identifer' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.
115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.45 NAME 'organizationalStatus' DES
C 'RFC1274: organizational status' EQUALITY caseIgnoreMatch SUBSTR caseIgno
reSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.46 NAME 'janetMailbox' DESC 'RFC12
74: Janet mailbox' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Substrin
gsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.47 NAME 'mailPreferenceOption' DES
C 'RFC1274: mail preference option' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 0.9.2342.19200300.100.1.48 NAME 'buildingName' DESC 'RFC12
74: name of building' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 0.9.2342.19200300.100.1.49 NAME 'dSAQuality' DESC 'RFC1274
: DSA Quality' SYNTAX 1.3.6.1.4.1.1466.115.121.1.19 SINGLE-VALUE )
attributeTypes: ( 0.9.2342.19200300.100.1.50 NAME 'singleLevelQuality' DESC
'RFC1274: Single Level Quality' SYNTAX 1.3.6.1.4.1.1466.115.121.1.13 SINGLE
-VALUE )
attributeTypes: ( 0.9.2342.19200300.100.1.51 NAME 'subtreeMinimumQuality' DE
SC 'RFC1274: Subtree Mininum Quality' SYNTAX 1.3.6.1.4.1.1466.115.121.1.13
SINGLE-VALUE )
attributeTypes: ( 0.9.2342.19200300.100.1.52 NAME 'subtreeMaximumQuality' DE
SC 'RFC1274: Subtree Maximun Quality' SYNTAX 1.3.6.1.4.1.1466.115.121.1.13
SINGLE-VALUE )
attributeTypes: ( 0.9.2342.19200300.100.1.53 NAME 'personalSignature' DESC '
RFC1274: Personal Signature (G3 fax)' SYNTAX 1.3.6.1.4.1.1466.115.121.1.23
)
attributeTypes: ( 0.9.2342.19200300.100.1.54 NAME 'dITRedirect' DESC 'RFC127
4: DIT Redirect' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.11
5.121.1.12 )
attributeTypes: ( 0.9.2342.19200300.100.1.55 NAME 'audio' DESC 'RFC1274: aud
io (u-law)' SYNTAX 1.3.6.1.4.1.1466.115.121.1.4{25000} )
attributeTypes: ( 0.9.2342.19200300.100.1.56 NAME 'documentPublisher' DESC '
RFC1274: publisher of document' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreS
ubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 2.16.840.1.113730.3.1.1 NAME 'carLicense' DESC 'RFC2798: v
ehicle license or registration plate' EQUALITY caseIgnoreMatch SUBSTR caseI
gnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 2.16.840.1.113730.3.1.2 NAME 'departmentNumber' DESC 'RFC2
798: identifies a department within an organization' EQUALITY caseIgnoreMat
ch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 2.16.840.1.113730.3.1.241 NAME 'displayName' DESC 'RFC2798
: preferred name to be used when displaying entries' EQUALITY caseIgnoreMat
ch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SI
NGLE-VALUE )
attributeTypes: ( 2.16.840.1.113730.3.1.3 NAME 'employeeNumber' DESC 'RFC279
8: numerically identifies an employee within an organization' EQUALITY case
IgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.15 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113730.3.1.4 NAME 'employeeType' DESC 'RFC2798:
type of employment for a person' EQUALITY caseIgnoreMatch SUBSTR caseIgnor
eSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 0.9.2342.19200300.100.1.60 NAME 'jpegPhoto' DESC 'RFC2798:
a JPEG image' SYNTAX 1.3.6.1.4.1.1466.115.121.1.28 )
attributeTypes: ( 2.16.840.1.113730.3.1.39 NAME 'preferredLanguage' DESC 'RF
C2798: preferred written or spoken language for a person' EQUALITY caseIgno
reMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.
15 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113730.3.1.40 NAME 'userSMIMECertificate' DESC
'RFC2798: PKCS#7 SignedData used to support S/MIME' SYNTAX 1.3.6.1.4.1.1466
.115.121.1.5 )
attributeTypes: ( 2.16.840.1.113730.3.1.216 NAME 'userPKCS12' DESC 'RFC2798:
personal identity information, a PKCS #12 PFX' SYNTAX 1.3.6.1.4.1.1466.115
.121.1.5 )
attributeTypes: ( 2.16.840.1.113730.3.1.13 NAME 'mailLocalAddress' DESC 'RFC
822 email address of this recipient' EQUALITY caseIgnoreIA5Match SYNTAX 1.3
.6.1.4.1.1466.115.121.1.26{256} )
attributeTypes: ( 2.16.840.1.113730.3.1.18 NAME 'mailHost' DESC 'FQDN of the
SMTP/MTA of this recipient' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1
.1466.115.121.1.26{256} SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113730.3.1.47 NAME 'mailRoutingAddress' DESC 'R
FC822 routing address of this recipient' EQUALITY caseIgnoreIA5Match SYNTAX
1.3.6.1.4.1.1466.115.121.1.26{256} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.2.1.15 NAME 'rfc822MailMember' DESC 'r
fc822 mail address of group member(s)' EQUALITY caseIgnoreIA5Match SYNTAX 1
.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.1.1.1.2 NAME 'gecos' DESC 'The GECOS field; the co
mmon name' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.3 NAME 'homeDirectory' DESC 'The absolute pa
th to the home directory' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.146
6.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.4 NAME 'loginShell' DESC 'The path to the lo
gin shell' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.5 NAME 'shadowLastChange' EQUALITY integerMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.6 NAME 'shadowMin' EQUALITY integerMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.7 NAME 'shadowMax' EQUALITY integerMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.8 NAME 'shadowWarning' EQUALITY integerMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.9 NAME 'shadowInactive' EQUALITY integerMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.10 NAME 'shadowExpire' EQUALITY integerMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.11 NAME 'shadowFlag' EQUALITY integerMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.12 NAME 'memberUid' EQUALITY caseExactIA5Mat
ch SUBSTR caseExactIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26
)
attributeTypes: ( 1.3.6.1.1.1.1.13 NAME 'memberNisNetgroup' EQUALITY caseExa
ctIA5Match SUBSTR caseExactIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.26 )
attributeTypes: ( 1.3.6.1.1.1.1.14 NAME 'nisNetgroupTriple' DESC 'Netgroup t
riple' SYNTAX 1.3.6.1.1.1.0.0 )
attributeTypes: ( 1.3.6.1.1.1.1.15 NAME 'ipServicePort' EQUALITY integerMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.16 NAME 'ipServiceProtocol' SUP name )
attributeTypes: ( 1.3.6.1.1.1.1.17 NAME 'ipProtocolNumber' EQUALITY integerM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.18 NAME 'oncRpcNumber' EQUALITY integerMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.19 NAME 'ipHostNumber' DESC 'IP address' EQU
ALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{128} )
attributeTypes: ( 1.3.6.1.1.1.1.20 NAME 'ipNetworkNumber' DESC 'IP network'
EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{128} SINGL
E-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.21 NAME 'ipNetmaskNumber' DESC 'IP netmask'
EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{128} SINGL
E-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.22 NAME 'macAddress' DESC 'MAC address' EQUA
LITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{128} )
attributeTypes: ( 1.3.6.1.1.1.1.23 NAME 'bootParameter' DESC 'rpc.bootparamd
parameter' SYNTAX 1.3.6.1.1.1.0.1 )
attributeTypes: ( 1.3.6.1.1.1.1.24 NAME 'bootFile' DESC 'Boot image name' EQ
UALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.1.1.1.26 NAME 'nisMapName' SUP name )
attributeTypes: ( 1.3.6.1.1.1.1.27 NAME 'nisMapEntry' EQUALITY caseExactIA5M
atch SUBSTR caseExactIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.2
6{1024} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.4.1.6 NAME 'javaClassName' DESC 'Fully
qualified name of distinguished Java class or interface' EQUALITY caseExac
tMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.4.1.7 NAME 'javaCodebase' DESC 'URL(s)
specifying the location of class definition' EQUALITY caseExactIA5Match SY
NTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.4.1.13 NAME 'javaClassNames' DESC 'Ful
ly qualified Java class or interface name' EQUALITY caseExactMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.4.1.8 NAME 'javaSerializedData' DESC '
Serialized form of a Java object' SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SING
LE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.4.1.10 NAME 'javaFactory' DESC 'Fully
qualified Java class name of a JNDI object factory' EQUALITY caseExactMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.4.1.11 NAME 'javaReferenceAddress' DES
C 'Addresses associated with a JNDI Reference' EQUALITY caseExactMatch SYNT
AX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.4.1.12 NAME 'javaDoc' DESC 'The Java d
ocumentation for the class' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1
466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.4.1.14 NAME 'corbaIor' DESC 'Stringifi
ed interoperable object reference of a CORBA object' EQUALITY caseIgnoreIA5
Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.4.1.15 NAME 'corbaRepositoryId' DESC '
Repository ids of interfaces implemented by a CORBA object' EQUALITY caseEx
actMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 2.16.840.1.113730.3.1.198 NAME 'memberURL' DESC 'Identifie
s an URL associated with each member of a group. Any type of labeled URL ca
n be used.' SUP labeledURI )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.8.1.1 NAME 'dgIdentity' DESC 'Iden
tity to use when processing the memberURL' SUP distinguishedName SINGLE-VAL
UE )
attributeTypes: ( 1.3.6.1.4.1.4203.666.11.8.1.2 NAME 'dgAuthz' DESC 'Optiona
l authorization rules that determine who is allowed to assume the dgIdentit
y' EQUALITY authzMatch SYNTAX 1.3.6.1.4.1.4203.666.2.7 X-ORDERED 'VALUES' )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.1 NAME 'pwdAttribute' EQUALITY obj
ectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.2 NAME 'pwdMinAge' EQUALITY intege
rMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 S
INGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.3 NAME 'pwdMaxAge' EQUALITY intege
rMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 S
INGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.4 NAME 'pwdInHistory' EQUALITY int
egerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.2
7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.5 NAME 'pwdCheckQuality' EQUALITY
integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.6 NAME 'pwdMinLength' EQUALITY int
egerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.2
7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.7 NAME 'pwdExpireWarning' EQUALITY
integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121
.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.8 NAME 'pwdGraceAuthNLimit' EQUALI
TY integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.9 NAME 'pwdLockout' EQUALITY boole
anMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.10 NAME 'pwdLockoutDuration' EQUAL
ITY integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.
121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.11 NAME 'pwdMaxFailure' EQUALITY i
ntegerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1
.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.12 NAME 'pwdFailureCountInterval'
EQUALITY integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.13 NAME 'pwdMustChange' EQUALITY b
ooleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.14 NAME 'pwdAllowUserChange' EQUAL
ITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.15 NAME 'pwdSafeModify' EQUALITY b
ooleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.8.1.30 NAME 'pwdMaxRecordedFailure' EQ
UALITY integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.4754.1.99.1 NAME 'pwdCheckModule' DESC 'Loadab
le module that instantiates check_password() function' EQUALITY caseExactIA
5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 2.5.4.72 NAME 'role' DESC 'X.509 Role attribute, use ;bina
ry' SYNTAX 1.3.6.1.4.1.4203.666.11.10.2.6 )
attributeTypes: ( 2.5.4.75 NAME 'xmlPrivilegeInfo' DESC 'X.509 XML privilege
information attribute' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 2.5.4.58 NAME 'attributeCertificateAttribute' DESC 'X.509
Attribute certificate attribute, use ;binary' EQUALITY attributeCertificate
ExactMatch SYNTAX 1.3.6.1.4.1.4203.666.11.10.2.1 )
attributeTypes: ( 2.5.4.61 NAME 'aACertificate' DESC 'X.509 AA certificate a
ttribute, use ;binary' EQUALITY attributeCertificateExactMatch SYNTAX 1.3.6
.1.4.1.4203.666.11.10.2.1 )
attributeTypes: ( 2.5.4.62 NAME 'attributeDescriptorCertificate' DESC 'X.509
Attribute descriptor certificate attribute, use ;binary' EQUALITY attribut
eCertificateExactMatch SYNTAX 1.3.6.1.4.1.4203.666.11.10.2.1 )
attributeTypes: ( 2.5.4.59 NAME 'attributeCertificateRevocationList' DESC 'X
.509 Attribute certificate revocation list attribute, use ;binary' SYNTAX 1
.3.6.1.4.1.1466.115.121.1.9 X-EQUALITY 'certificateListExactMatch, not impl
emented yet' )
attributeTypes: ( 2.5.4.63 NAME 'attributeAuthorityRevocationList' DESC 'X.5
09 AA certificate revocation list attribute, use ;binary' SYNTAX 1.3.6.1.4.
1.1466.115.121.1.9 X-EQUALITY 'certificateListExactMatch, not implemented y
et' )
attributeTypes: ( 2.5.4.73 NAME 'delegationPath' DESC 'X.509 Delegation path
attribute, use ;binary' SYNTAX 1.3.6.1.4.1.4203.666.11.10.2.4 )
attributeTypes: ( 2.5.4.71 NAME 'privPolicy' DESC 'X.509 Privilege policy at
tribute, use ;binary' SYNTAX 1.3.6.1.4.1.4203.666.11.10.2.5 )
attributeTypes: ( 2.5.4.74 NAME 'protPrivPolicy' DESC 'X.509 Protected privi
lege policy attribute, use ;binary' EQUALITY attributeCertificateExactMatch
SYNTAX 1.3.6.1.4.1.4203.666.11.10.2.1 )
attributeTypes: ( 2.5.4.76 NAME 'xmlPrivPolicy' DESC 'X.509 XML Protected pr
ivilege policy attribute' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 2.5.4.7.1 NAME 'c-l' SUP l COLLECTIVE )
attributeTypes: ( 2.5.4.8.1 NAME 'c-st' SUP st COLLECTIVE )
attributeTypes: ( 2.5.4.9.1 NAME 'c-street' SUP street COLLECTIVE )
attributeTypes: ( 2.5.4.10.1 NAME 'c-o' SUP o COLLECTIVE )
attributeTypes: ( 2.5.4.11.1 NAME 'c-ou' SUP ou COLLECTIVE )
attributeTypes: ( 2.5.4.16.1 NAME 'c-PostalAddress' SUP postalAddress COLLEC
TIVE )
attributeTypes: ( 2.5.4.17.1 NAME 'c-PostalCode' SUP postalCode COLLECTIVE )
attributeTypes: ( 2.5.4.18.1 NAME 'c-PostOfficeBox' SUP postOfficeBox COLLEC
TIVE )
attributeTypes: ( 2.5.4.19.1 NAME 'c-PhysicalDeliveryOfficeName' SUP physica
lDeliveryOfficeName COLLECTIVE )
attributeTypes: ( 2.5.4.20.1 NAME 'c-TelephoneNumber' SUP telephoneNumber CO
LLECTIVE )
attributeTypes: ( 2.5.4.21.1 NAME 'c-TelexNumber' SUP telexNumber COLLECTIVE
)
attributeTypes: ( 2.5.4.23.1 NAME 'c-FacsimileTelephoneNumber' SUP facsimile
TelephoneNumber COLLECTIVE )
attributeTypes: ( 2.5.4.25.1 NAME 'c-InternationalISDNNumber' SUP internatio
nalISDNNumber COLLECTIVE )
attributeTypes: ( 1.3.6.1.4.1.5322.17.2.1 NAME 'authorizedService' DESC 'IAN
A GSS-API authorized service name' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.
4.1.1466.115.121.1.15{256} )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.0 NAME 'defaultServerList' DESC 'De
fault LDAP server host address used by a DUA' EQUALITY caseIgnoreMatch SYNT
AX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.1 NAME 'defaultSearchBase' DESC 'De
fault LDAP base DN used by a DUA' EQUALITY distinguishedNameMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.2 NAME 'preferredServerList' DESC '
Preferred LDAP server host addresses to be used by a DUA' EQUALI
TY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.3 NAME 'searchTimeLimit' DESC 'Maxi
mum time in seconds a DUA should allow for a search to complete'
EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.4 NAME 'bindTimeLimit' DESC 'Maximu
m time in seconds a DUA should allow for the bind operation to c
omplete' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-
VALUE )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.5 NAME 'followReferrals' DESC 'Tell
s DUA if it should follow referrals returned by a DSA search res
ult' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.16 NAME 'dereferenceAliases' DESC '
Tells DUA if it should dereference aliases' EQUALITY booleanMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.6 NAME 'authenticationMethod' DESC
'A keystring which identifies the type of authentication method
used to contact the DSA' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.7 NAME 'profileTTL' DESC 'Time to l
ive, in seconds, before a client DUA should re-read this configu
ration profile' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.14 NAME 'serviceSearchDescriptor' D
ESC 'LDAP search descriptor list used by a DUA' EQUALITY caseExactMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.9 NAME 'attributeMap' DESC 'Attribu
te mappings used by a DUA' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1
466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.10 NAME 'credentialLevel' DESC 'Ide
ntifies type of credentials a DUA should use when binding to the
LDAP server' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1
.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.11 NAME 'objectclassMap' DESC 'Obje
ctclass mappings used by a DUA' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.
4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.12 NAME 'defaultSearchScope' DESC '
Default search scope used by a DUA' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.
6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.13 NAME 'serviceCredentialLevel' DE
SC 'Identifies type of credentials a DUA should use when binding
to the LDAP server for a specific service' EQUALITY caseIgnoreI
A5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11.1.3.1.1.15 NAME 'serviceAuthenticationMetho
d' DESC 'Authentication method used by a service of the DUA' EQUALITY caseI
gnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.2.840.113533.7.68.10 NAME 'attributeCertificate' SYNTAX
1.3.6.1.4.1.1466.115.121.1.5 )
attributeTypes: ( 1.2.840.113533.7.68.0 NAME 'entrustCAInfo' SYNTAX 1.3.6.1.
4.1.1466.115.121.1.5 )
attributeTypes: ( 1.2.840.113533.7.68.30 NAME 'entrustPolicyCertificate' SYN
TAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.2.840.113533.7.68.22 NAME 'entrustRoamFileEncInfo' EQUAL
ITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.2.840.113533.7.79.0 NAME 'entrustRoamingCAPAB' EQUALITY
octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.2.840.113533.7.68.28 NAME 'entrustRoamingEOP' EQUALITY o
ctetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.2.840.113533.7.68.24 NAME 'entrustRoamingPAB' EQUALITY o
ctetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.2.840.113533.7.68.27 NAME 'entrustRoamingPRV' EQUALITY o
ctetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.2.840.113533.7.68.23 NAME 'entrustRoamingProfile' EQUALI
TY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.2.840.113533.7.68.25 NAME 'entrustRoamingRecipList' EQUA
LITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.2.840.113533.7.68.26 NAME 'entrustRoamingSLA' EQUALITY o
ctetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 2.16.840.1.114027.22.4 NAME 'entrustAttributeCertificate'
EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.2.840.113533.7.79.1 NAME 'entrustRoamingId' SUP uid )
attributeTypes: ( 1.3.6.1.4.1.5923.1.1.1.1 NAME 'eduPersonAffiliation' DESC
'eduPerson per Internet2 and EDUCAUSE' EQUALITY caseIgnoreMatch SUBSTR case
IgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.5923.1.1.1.2 NAME 'eduPersonNickname' DESC 'ed
uPerson per Internet2 and EDUCAUSE' EQUALITY caseIgnoreMatch SUBSTR caseIgn
oreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.5923.1.1.1.3 NAME 'eduPersonOrgDN' DESC 'eduPe
rson per Internet2 and EDUCAUSE' EQUALITY distinguishedNameMatch SYNTAX 1.3
.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5923.1.1.1.4 NAME 'eduPersonOrgUnitDN' DESC 'e
duPerson per Internet2 and EDUCAUSE' EQUALITY distinguishedNameMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.4.1.5923.1.1.1.5 NAME 'eduPersonPrimaryAffiliation
' DESC 'eduPerson per Internet2 and EDUCAUSE' EQUALITY caseIgnoreMatch SUBS
TR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VA
LUE )
attributeTypes: ( 1.3.6.1.4.1.5923.1.1.1.6 NAME 'eduPersonPrincipalName' DES
C 'eduPerson per Internet2 and EDUCAUSE' EQUALITY caseIgnoreMatch SUBSTR ca
seIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5923.1.1.1.7 NAME 'eduPersonEntitlement' DESC
'eduPerson per Internet2 and EDUCAUSE' EQUALITY caseExactMatch SYNTAX 1.3.6
.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.5923.1.1.1.8 NAME 'eduPersonPrimaryOrgUnitDN'
DESC 'eduPerson per Internet2 and EDUCAUSE' EQUALITY distinguishedNameMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5923.1.1.1.9 NAME 'eduPersonScopedAffiliation'
DESC 'eduPerson per Internet2 and EDUCAUSE' EQUALITY caseIgnoreMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5923.1.2.1.2 NAME 'eduOrgHomePageURI' DESC 'ed
uOrg per Internet2 and EDUCAUSE' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.
4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.5923.1.2.1.3 NAME 'eduOrgIdentityAuthNPolicyUR
I' DESC 'eduOrg per Internet2 and EDUCAUSE' EQUALITY caseExactIA5Match SYNT
AX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.5923.1.2.1.4 NAME 'eduOrgLegalName' DESC 'eduO
rg per Internet2 and EDUCAUSE' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.
1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.5923.1.2.1.5 NAME 'eduOrgSuperiorURI' DESC 'ed
uOrg per Internet2 and EDUCAUSE' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.
4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.5923.1.2.1.6 NAME 'eduOrgWhitePagesURI' DESC '
eduOrg per Internet2 and EDUCAUSE' EQUALITY caseExactIA5Match SYNTAX 1.3.6.
1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.1 NAME 'schacMotherTongue' DESC 'RFC
3066 code for prefered language of communication' EQUALITY caseExactMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.2 NAME 'schacGender' DESC 'Represent
ation of human sex (see ISO 5218)' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1
.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.3 NAME 'schacDateOfBirth' DESC 'Date
of birth (format YYYYMMDD, only numeric chars)' EQUALITY numericStringMatc
h ORDERING numericStringOrderingMatch SUBSTR numericStringSubstringsMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.36 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.4 NAME 'schacPlaceOfBirth' DESC 'Bir
th place of a person' EQUALITY caseIgnoreMatch ORDERING caseIgnoreOrderingM
atch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.5 NAME 'schacCountryOfCitizenship' D
ESC 'Country of citizenship of a person. Format two-letter acronym accordin
g to ISO 3166' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.1
5 )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.6 NAME 'schacSn1' DESC 'First surnam
e of a person' EQUALITY caseIgnoreMatch ORDERING caseIgnoreOrderingMatch SU
BSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.7 NAME 'schacSn2' DESC 'Second surna
me of a person' EQUALITY caseIgnoreMatch ORDERING caseIgnoreOrderingMatch S
UBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.8 NAME 'schacPersonalTitle' DESC 'RF
C1274: personal title' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstrings
Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.9 NAME 'schacHomeOrganization' DESC
'Domain name of the home organization' EQUALITY caseIgnoreMatch SUBSTR case
IgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.10 NAME 'schacHomeOrganizationType'
DESC 'Type of the home organization' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.
1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.11 NAME 'schacCountryOfResidence' DE
SC 'Country of citizenship of a person. Format two-letter acronym according
to ISO 3166' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15
)
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.12 NAME 'schacUserPresenceID' DESC '
Used to store a set of values related to the network presence' EQUALITY cas
eExactMatch SUBSTR caseExactSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121
.1.15 )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.13 NAME 'schacPersonalPosition' DESC
'Position inside an institution' EQUALITY caseIgnoreMatch SUBSTR caseIgnor
eSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.14 NAME 'schacPersonalUniqueCode' DE
SC 'unique code for the subject' EQUALITY caseIgnoreMatch ORDERING caseIgno
reOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.11
5.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.15 NAME 'schacPersonalUniqueID' DESC
'Unique identifier for the subject' EQUALITY caseExactMatch ORDERING caseE
xactOrderingMatch SUBSTR caseExactSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.17 NAME 'schacExpiryDate' DESC 'Date
from which the set of data is to be considered invalid (format YYYYMMDDhhm
mssZ)' EQUALITY generalizedTimeMatch ORDERING generalizedTimeOrderingMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.18 NAME 'schacUserPrivateAttribute'
DESC 'Set of denied access attributes' EQUALITY caseIgnoreIA5Match SUBSTR c
aseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.19 NAME 'schacUserStatus' DESC 'Used
to store a set of status of a person as user of services' EQUALITY caseIgn
oreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1
.15 )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.20 NAME 'schacProjectMembership' DES
C 'Name of the project' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstring
sMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.25178.1.2.21 NAME 'schacProjectSpecificRole' D
ESC 'Used to store a set of roles of a person inside a project' EQUALITY ca
seIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.
121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.25178.1.0.2.3 NAME 'schacYearOfBirth' DESC 'Ye
ar of birth (format YYYY, only numeric chars)' EQUALITY numericStringMatch
ORDERING numericStringOrderingMatch SUBSTR numericStringSubstringsMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.36 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.2428.20.0.0 NAME 'dNSTTL' DESC 'An integer den
oting time to live' EQUALITY integerMatch ORDERING integerOrderingMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.0.1 NAME 'dNSClass' DESC 'The class of
a resource record' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115
.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.11 NAME 'wKSRecord' DESC 'a well kno
wn service description, RFC 1035' EQUALITY caseIgnoreIA5Match SUBSTR caseIg
noreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.12 NAME 'pTRRecord' DESC 'domain nam
e pointer, RFC 1035' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Substr
ingsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.13 NAME 'hInfoRecord' DESC 'host inf
ormation, RFC 1035' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Substri
ngsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.14 NAME 'mInfoRecord' DESC 'mailbox
or mail list information, RFC 1035' EQUALITY caseIgnoreIA5Match SUBSTR case
IgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.16 NAME 'tXTRecord' DESC 'text strin
g, RFC 1035' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.17 NAME 'rPRecord' DESC 'for Respons
ible Person, RFC 1183' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Subs
tringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.18 NAME 'aFSDBRecord' DESC 'for AFS
Data Base location, RFC 1183' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnore
IA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.24 NAME 'SigRecord' DESC 'Signature,
RFC 2535' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.25 NAME 'KeyRecord' DESC 'Key, RFC 2
535' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.27 NAME 'gPosRecord' DESC 'Geographi
cal Position, RFC 1712' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Sub
stringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.28 NAME 'aAAARecord' DESC 'IPv6 addr
ess, RFC 1886' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.29 NAME 'LocRecord' DESC 'Location,
RFC 1876' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.30 NAME 'nXTRecord' DESC 'non-exista
nt, RFC 2535' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMat
ch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.33 NAME 'sRVRecord' DESC 'service lo
cation, RFC 2782' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Substring
sMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.35 NAME 'nAPTRRecord' DESC 'Naming A
uthority Pointer, RFC 2915' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA
5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.36 NAME 'kXRecord' DESC 'Key Exchang
e Delegation, RFC 2230' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Sub
stringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.37 NAME 'certRecord' DESC 'certifica
te, RFC 2538' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMat
ch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.38 NAME 'a6Record' DESC 'A6 Record T
ype, RFC 2874' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.39 NAME 'dNameRecord' DESC 'Non-Term
inal DNS Name Redirection, RFC 2672' EQUALITY caseIgnoreIA5Match SUBSTR cas
eIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.42 NAME 'aPLRecord' DESC 'Lists of A
ddress Prefixes, RFC 3123' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5
SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.43 NAME 'dSRecord' DESC 'Delegation
Signer, RFC 3658' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Substring
sMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.44 NAME 'sSHFPRecord' DESC 'SSH Key
Fingerprint, RFC 4255' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Subs
tringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.45 NAME 'iPSecKeyRecord' DESC 'SSH K
ey Fingerprint, RFC 4025' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5S
ubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.46 NAME 'rRSIGRecord' DESC 'RRSIG, R
FC 3755' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SY
NTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.47 NAME 'nSECRecord' DESC 'NSEC, RFC
3755' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNT
AX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.48 NAME 'dNSKeyRecord' DESC 'DNSKEY,
RFC 3755' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.49 NAME 'dHCIDRecord' DESC 'DHCID, R
FC 4701' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SY
NTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.51 NAME 'nSec3ParamRecord' DESC 'par
ameters for NSEC3, RFC 5155' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreI
A5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.52 NAME 'TLSARecord' DESC 'DNS-Based
Authentication of Named Entities - Transport Layer Security Protocol, RFC
6698' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.99 NAME 'sPFRecord' DESC 'Sender Pol
icy Framework, RFC 4408' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Su
bstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.257 NAME 'CAARecord' DESC 'Certifica
tion Authority Authorization, RFC 6844' EQUALITY caseIgnoreIA5Match SUBSTR
caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.20.1.32769 NAME 'DLVRecord' DESC 'RFC 443
1: DNSSEC Lookaside Validation' EQUALITY caseIgnoreIA5Match SUBSTR caseIgno
reIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.1.1.1.28 NAME 'nisPublickey' DESC 'nisPublickey' E
QUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.1.1.1.29 NAME 'nisSecretkey' DESC 'nisSecretkey' E
QUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.1.1.1.30 NAME 'nisDomain' SUP name )
attributeTypes: ( 2.16.840.1.113730.3.1.30 NAME 'mgrpRFC822MailMember' DESC
'mgrpRFC822MailMember' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.
115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.1.1.12 NAME 'nisNetIdUser' DESC 'nisNe
tIdUser' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.1.1.13 NAME 'nisNetIdGroup' DESC 'nisN
etIdGroup' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26
)
attributeTypes: ( 1.3.6.1.4.1.42.2.27.1.1.14 NAME 'nisNetIdHost' DESC 'nisNe
tIdHost' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.15 NAME 'SolarisLDAPServers' DESC
'SolarisLDAPServers' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.16 NAME 'SolarisSearchBaseDN' DESC
'SolarisSearchBaseDN' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.17 NAME 'SolarisCacheTTL' DESC 'So
larisCacheTTL' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 S
INGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.18 NAME 'SolarisBindDN' DESC 'Sola
risBindDN' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.19 NAME 'SolarisBindPassword' DESC
'SolarisBindPassword' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.20 NAME 'SolarisAuthMethod' DESC '
SolarisAuthMethod' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.21 NAME 'SolarisTransportSecurity'
DESC 'SolarisTransportSecurity' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.24 NAME 'SolarisDataSearchDN' DESC
'SolarisDataSearchDN' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.25 NAME 'SolarisSearchScope' DESC
'SolarisSearchScope' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.26 NAME 'SolarisSearchTimeLimit' D
ESC 'SolarisSearchTimeLimit' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.
115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.27 NAME 'SolarisPreferedServer' DE
SC 'SolarisPreferedServer' SUP name )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.28 NAME 'SolarisPreferedServerOnly
' DESC 'SolarisPreferedServerOnly' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.42.2.27.5.1.29 NAME 'SolarisSearchReferral' DE
SC 'SolarisSearchReferral' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.1466.101.120.31 NAME 'homeFax' SYNTAX 1.3.6.1.
4.1.1466.115.121.1.22 )
attributeTypes: ( 2.16.128.113533.1.1400.1 NAME 'thumbnailPhoto' SYNTAX 1.3.
6.1.4.1.1466.115.121.1.28 )
attributeTypes: ( 2.16.128.113533.1.1400.2 NAME 'thumbnailLogo' SYNTAX 1.3.6
.1.4.1.1466.115.121.1.28 )
attributeTypes: ( 1.3.6.1.4.1.1466.101.120.34 NAME 'middleName' SUP name )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.1 NAME ( 'xmozillanickname' 'mozilla
Nickname' ) SUP name )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.2 NAME ( 'xmozillausehtmlmail' 'mozi
llaUseHtmlMail' ) SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.3 NAME 'mozillaSecondEmail' EQUALITY
caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.
1466.115.121.1.26{256} )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.4 NAME 'mozillaHomeLocalityName' EQU
ALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.15{128} )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.5 NAME 'mozillaPostalAddress2' EQUAL
ITY caseIgnoreListMatch SUBSTR caseIgnoreListSubstringsMatch SYNTAX 1.3.6.1
.4.1.1466.115.121.1.41 )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.6 NAME 'mozillaHomePostalAddress2' E
QUALITY caseIgnoreListMatch SUBSTR caseIgnoreListSubstringsMatch SYNTAX 1.3
.6.1.4.1.1466.115.121.1.41 )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.7 NAME 'mozillaHomeState' SUP name )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.8 NAME 'mozillaHomePostalCode' EQUAL
ITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.146
6.115.121.1.15{40} )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.9 NAME 'mozillaHomeCountryName' SUP
name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.10 NAME 'mozillaHomeFriendlyCountryN
ame' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6
.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.11 NAME ( 'homeurl' 'mozillaHomeUrl'
) EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.26{256} )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.12 NAME ( 'workurl' 'mozillaWorkUrl'
) EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.26{256} )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.13 NAME 'nsAIMid' DESC 'AOL Instant
Messenger (AIM) Identity' EQUALITY telephoneNumberMatch SUBSTR telephoneNum
berSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.50 )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.96 NAME ( 'custom1' 'mozillaCustom1'
) SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.97 NAME ( 'custom2' 'mozillaCustom2'
) SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.98 NAME ( 'custom3' 'mozillaCustom3'
) SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.13769.2.1.99 NAME ( 'custom4' 'mozillaCustom4'
) SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.24 NAME 'sambaLMPassword' DESC 'LanMa
nager Password' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121
.1.26{32} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.25 NAME 'sambaNTPassword' DESC 'MD4 h
ash of the unicode password' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1
.1466.115.121.1.26{32} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.26 NAME 'sambaAcctFlags' DESC 'Accoun
t Flags' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{1
6} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.27 NAME 'sambaPwdLastSet' DESC 'Times
tamp of the last password update' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.
1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.28 NAME 'sambaPwdCanChange' DESC 'Tim
estamp of when the user is allowed to update the password' EQUALITY integer
Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.29 NAME 'sambaPwdMustChange' DESC 'Ti
mestamp of when the password will expire' EQUALITY integerMatch SYNTAX 1.3.
6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.30 NAME 'sambaLogonTime' DESC 'Timest
amp of last logon' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.
27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.31 NAME 'sambaLogoffTime' DESC 'Times
tamp of last logoff' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.32 NAME 'sambaKickoffTime' DESC 'Time
stamp of when the user will be logged off automatically' EQUALITY integerMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.48 NAME 'sambaBadPasswordCount' DESC
'Bad password attempt count' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.
115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.49 NAME 'sambaBadPasswordTime' DESC '
Time of the last bad password attempt' EQUALITY integerMatch SYNTAX 1.3.6.1
.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.55 NAME 'sambaLogonHours' DESC 'Logon
Hours' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{42
} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.33 NAME 'sambaHomeDrive' DESC 'Driver
letter of home directory mapping' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6
.1.4.1.1466.115.121.1.26{4} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.34 NAME 'sambaLogonScript' DESC 'Logo
n script path' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.1
5{255} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.35 NAME 'sambaProfilePath' DESC 'Roam
ing profile path' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.15{255} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.36 NAME 'sambaUserWorkstations' DESC
'List of user workstations the user is allowed to logon to' EQUALITY caseIg
noreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{255} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.37 NAME 'sambaHomePath' DESC 'Home di
rectory UNC path' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.15{128} )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.38 NAME 'sambaDomainName' DESC 'Windo
ws NT domain to which the user belongs' EQUALITY caseIgnoreMatch SYNTAX 1.3
.6.1.4.1.1466.115.121.1.15{128} )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.47 NAME 'sambaMungedDial' DESC 'Base6
4 encoded user parameter string' EQUALITY caseExactMatch SYNTAX 1.3.6.1.4.1
.1466.115.121.1.15{1050} )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.54 NAME 'sambaPasswordHistory' DESC '
Concatenated MD5 hashes of the salted NT passwords used on this account' EQ
UALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{32} )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.20 NAME 'sambaSID' DESC 'Security ID'
EQUALITY caseIgnoreIA5Match SUBSTR caseExactIA5SubstringsMatch SYNTAX 1.3.
6.1.4.1.1466.115.121.1.26{64} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.23 NAME 'sambaPrimaryGroupSID' DESC '
Primary Group Security ID' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1
466.115.121.1.26{64} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.51 NAME 'sambaSIDList' DESC 'Security
ID List' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
64} )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.19 NAME 'sambaGroupType' DESC 'NT Gro
up Type' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-
VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.21 NAME 'sambaNextUserRid' DESC 'Next
NT rid to give our for users' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.146
6.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.22 NAME 'sambaNextGroupRid' DESC 'Nex
t NT rid to give out for groups' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.39 NAME 'sambaNextRid' DESC 'Next NT
rid to give out for anything' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.40 NAME 'sambaAlgorithmicRidBase' DES
C 'Base at which the samba RID generation algorithm should operate' EQUALIT
Y integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.41 NAME 'sambaShareName' DESC 'Share
Name' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-
VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.42 NAME 'sambaOptionName' DESC 'Optio
n Name' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.43 NAME 'sambaBoolOption' DESC 'A boo
lean option' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SING
LE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.44 NAME 'sambaIntegerOption' DESC 'An
integer option' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.45 NAME 'sambaStringOption' DESC 'A s
tring option' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.
26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.46 NAME 'sambaStringListOption' DESC
'A string list option' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115
.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.53 NAME 'sambaTrustFlags' DESC 'Trust
Password Flags' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.26 )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.58 NAME 'sambaMinPwdLength' DESC 'Min
imal password length (default: 5)' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1
.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.59 NAME 'sambaPwdHistoryLength' DESC
'Length of Password History Entries (default: 0 => off)' EQUALITY integerMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.60 NAME 'sambaLogonToChgPwd' DESC 'Fo
rce Users to logon for password change (default: 0 => off, 2 => on)' EQUALI
TY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.61 NAME 'sambaMaxPwdAge' DESC 'Maximu
m password age, in seconds (default: -1 => never expire passwords)' EQUALIT
Y integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.62 NAME 'sambaMinPwdAge' DESC 'Minimu
m password age, in seconds (default: 0 => allow immediate password change)'
EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.63 NAME 'sambaLockoutDuration' DESC '
Lockout duration in minutes (default: 30, -1 => forever)' EQUALITY integerM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.64 NAME 'sambaLockoutObservationWindo
w' DESC 'Reset time after lockout in minutes (default: 30)' EQUALITY intege
rMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.65 NAME 'sambaLockoutThreshold' DESC
'Lockout users after bad logon attempts (default: 0 => off)' EQUALITY integ
erMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.66 NAME 'sambaForceLogoff' DESC 'Disc
onnect Users outside logon hours (default: -1 => off, 0 => on)' EQUALITY in
tegerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.67 NAME 'sambaRefuseMachinePwdChange'
DESC 'Allow Machine Password changes (default: 0 => off)' EQUALITY integer
Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.68 NAME 'sambaClearTextPassword' DESC
'Clear text password (used for trusted domain passwords)' EQUALITY octetSt
ringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.69 NAME 'sambaPreviousClearTextPasswo
rd' DESC 'Previous clear text password (used for trusted domain passwords)'
EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.70 NAME 'sambaTrustType' DESC 'Type o
f trust' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-
VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.71 NAME 'sambaTrustAttributes' DESC '
Trust attributes for a trusted domain' EQUALITY integerMatch SYNTAX 1.3.6.1
.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.72 NAME 'sambaTrustDirection' DESC 'D
irection of a trust' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.73 NAME 'sambaTrustPartner' DESC 'Ful
ly qualified name of the domain with which a trust exists' EQUALITY caseIgn
oreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{128} )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.74 NAME 'sambaFlatName' DESC 'NetBIOS
name of a domain' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121
.1.15{128} )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.75 NAME 'sambaTrustAuthOutgoing' DESC
'Authentication information for the outgoing portion of a trust' EQUALITY
caseExactMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{1050} )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.76 NAME 'sambaTrustAuthIncoming' DESC
'Authentication information for the incoming portion of a trust' EQUALITY
caseExactMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{1050} )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.77 NAME 'sambaSecurityIdentifier' DES
C 'SID of a trusted domain' EQUALITY caseIgnoreIA5Match SUBSTR caseExactIA5
SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{64} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.78 NAME 'sambaTrustForestTrustInfo' D
ESC 'Forest trust information for a trusted domain object' EQUALITY caseExa
ctMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{1050} )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.79 NAME 'sambaTrustPosixOffset' DESC
'POSIX offset of a trust' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115
.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7165.2.1.80 NAME 'sambaSupportedEncryptionType
s' DESC 'Supported encryption types of a trust' EQUALITY integerMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5322.10.1.1 NAME 'krb5PrincipalName' DESC 'The
unparsed Kerberos principal name' EQUALITY caseExactIA5Match SYNTAX 1.3.6.
1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5322.10.1.2 NAME 'krb5KeyVersionNumber' EQUALI
TY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5322.10.1.3 NAME 'krb5MaxLife' EQUALITY intege
rMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5322.10.1.4 NAME 'krb5MaxRenew' EQUALITY integ
erMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5322.10.1.5 NAME 'krb5KDCFlags' EQUALITY integ
erMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5322.10.1.6 NAME 'krb5EncryptionType' EQUALITY
integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 1.3.6.1.4.1.5322.10.1.7 NAME 'krb5ValidStart' EQUALITY gen
eralizedTimeMatch ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.
1466.115.121.1.24 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5322.10.1.8 NAME 'krb5ValidEnd' EQUALITY gener
alizedTimeMatch ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.24 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5322.10.1.9 NAME 'krb5PasswordEnd' EQUALITY ge
neralizedTimeMatch ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1
.1466.115.121.1.24 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5322.10.1.10 NAME 'krb5Key' DESC 'Encoded ASN1
Key as an octet string' SYNTAX 1.3.6.1.4.1.1466.115.121.1.5 )
attributeTypes: ( 1.3.6.1.4.1.5322.10.1.11 NAME 'krb5PrincipalRealm' DESC 'D
istinguished name of krb5Realm entry' SUP distinguishedName )
attributeTypes: ( 1.3.6.1.4.1.5322.10.1.12 NAME 'krb5RealmName' EQUALITY oct
etStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40{128} )
attributeTypes: ( 2.16.840.1.113719.1.301.4.1.1 NAME 'krbPrincipalName' EQUA
LITY caseExactIA5Match SUBSTR caseExactSubstringsMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.26 )
attributeTypes: ( 1.2.840.113554.1.4.1.6.1 NAME 'krbCanonicalName' EQUALITY
caseExactIA5Match SUBSTR caseExactSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.26 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.3.1 NAME 'krbPrincipalType' EQUA
LITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.5.1 NAME 'krbUPEnabled' DESC 'Bo
olean' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.6.1 NAME 'krbPrincipalExpiration
' EQUALITY generalizedTimeMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE
-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.8.1 NAME 'krbTicketFlags' EQUALI
TY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.9.1 NAME 'krbMaxTicketLife' EQUA
LITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.10.1 NAME 'krbMaxRenewableAge' E
QUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.14.1 NAME 'krbRealmReferences' E
QUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.15.1 NAME 'krbLdapServers' EQUAL
ITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.17.1 NAME 'krbKdcServers' EQUALI
TY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.18.1 NAME 'krbPwdServers' EQUALI
TY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.24.1 NAME 'krbHostServer' EQUALI
TY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.25.1 NAME 'krbSearchScope' EQUAL
ITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.26.1 NAME 'krbPrincipalReference
s' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.28.1 NAME 'krbPrincNamingAttr' E
QUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.29.1 NAME 'krbAdmServers' EQUALI
TY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.30.1 NAME 'krbMaxPwdLife' EQUALI
TY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.31.1 NAME 'krbMinPwdLife' EQUALI
TY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.32.1 NAME 'krbPwdMinDiffChars' E
QUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.33.1 NAME 'krbPwdMinLength' EQUA
LITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.34.1 NAME 'krbPwdHistoryLength'
EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5322.21.2.1 NAME 'krbPwdMaxFailure' EQUALITY i
ntegerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5322.21.2.2 NAME 'krbPwdFailureCountInterval'
EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5322.21.2.3 NAME 'krbPwdLockoutDuration' EQUAL
ITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.2.840.113554.1.4.1.6.2 NAME 'krbPwdAttributes' EQUALITY
integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.2.840.113554.1.4.1.6.3 NAME 'krbPwdMaxLife' EQUALITY int
egerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.2.840.113554.1.4.1.6.4 NAME 'krbPwdMaxRenewableLife' EQU
ALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.2.840.113554.1.4.1.6.5 NAME 'krbPwdAllowedKeysalts' EQUA
LITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.36.1 NAME 'krbPwdPolicyReference
' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SING
LE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.37.1 NAME 'krbPasswordExpiration
' EQUALITY generalizedTimeMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE
-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.39.1 NAME 'krbPrincipalKey' EQUA
LITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.40.1 NAME 'krbTicketPolicyRefere
nce' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 S
INGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.41.1 NAME 'krbSubTrees' EQUALITY
distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.42.1 NAME 'krbDefaultEncSaltType
s' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.43.1 NAME 'krbSupportedEncSaltTy
pes' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.44.1 NAME 'krbPwdHistory' EQUALI
TY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.45.1 NAME 'krbLastPwdChange' EQU
ALITY generalizedTimeMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALU
E )
attributeTypes: ( 1.3.6.1.4.1.5322.21.2.5 NAME 'krbLastAdminUnlock' EQUALITY
generalizedTimeMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.46.1 NAME 'krbMKey' EQUALITY oct
etStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.47.1 NAME 'krbPrincipalAliases'
EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.48.1 NAME 'krbLastSuccessfulAuth
' EQUALITY generalizedTimeMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE
-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.49.1 NAME 'krbLastFailedAuth' EQ
UALITY generalizedTimeMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VAL
UE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.50.1 NAME 'krbLoginFailedCount'
EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.301.4.51.1 NAME 'krbExtraData' EQUALIT
Y octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.52.1 NAME 'krbObjectReferences'
EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.301.4.53.1 NAME 'krbPrincContainerRef'
EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113730.3.8.15.2.1 NAME 'krbPrincipalAuthInd' EQ
UALITY caseExactMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.5322.21.2.4 NAME 'krbAllowedToDelegateTo' EQUA
LITY caseExactIA5Match SUBSTR caseExactSubstringsMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.1.1 NAME ( 'esgSid' 'esgStreamId' )
DESC 'String uniquely identifying each stream' EQUALITY caseExactMatch SUBS
TR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VA
LUE )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.1.2 NAME ( 'esgSN' 'esgSessionName'
) DESC 'Session name/title' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubst
ringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{128} )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.1.3 NAME ( 'esgInfo' 'esgInformation
' ) DESC 'Short description' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubs
tringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.1.4 NAME 'esgInfoUri' DESC 'URI to m
ore Information' SUP labeledURI )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.4.1 NAME 'esgContact' DESC 'Other co
ntact Information' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.4.2 NAME 'esgContactMail' DESC 'Emai
l-address to contact-person' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreI
A5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256} )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.4.3 NAME 'esgContactPhone' DESC 'Pho
ne number to contact-person' EQUALITY telephoneNumberMatch SUBSTR telephone
NumberSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.50{32} )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.4.4 NAME 'esgContactDN' DESC 'LDAP D
N to contact-person' SUP distinguishedName )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.1.6 NAME ( 'esgCategory' 'esgCat' )
DESC 'Meta-category: meeting, broadcast, test etc.' EQUALITY caseIgnoreMatc
h SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{64}
)
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.1.7 NAME 'esgTool' DESC 'Tool that m
ade the announcement (SDP: a=tool:...)' EQUALITY caseIgnoreMatch SUBSTR cas
eIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.1.8 NAME 'esgSource' DESC 'How the a
nnouncement entered the system' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreS
ubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.3.1 NAME 'esgFormat' DESC 'Media for
mat' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6
.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.3.10 NAME 'esgStreamUri' DESC 'Direc
t absolute url to stream' SUP labeledURI )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.3.11 NAME 'esgSdpUri' DESC 'Url to f
ile in sdp-format, if any' SUP labeledURI )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.2.1 NAME 'esgAlwaysOn' DESC 'Whether
the stream is permanent/on-demand or temporary/live' EQUALITY booleanMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.2.2 NAME 'esgFirstShown' DESC 'When
the stream starts to be transmitted for the first time' EQUALITY generalize
dTimeMatch ORDERING generalizedTimeOrderingMatch SUBSTR caseIgnoreSubstring
sMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.2.3 NAME 'esgFinalEnd' DESC 'When th
e stream will no longer be transmitted' EQUALITY generalizedTimeMatch ORDER
ING generalizedTimeOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.24 )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.2.4 NAME 'esgDuration' DESC 'Duratio
n of stream if temporary' EQUALITY numericStringMatch SUBSTR numericStringS
ubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.36 )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.2.5 NAME 'esgRepeatInterval' DESC 'F
rom SDP: r=repeatinterval duration offset [offset [offset ...]]' EQUALITY n
umericStringMatch SUBSTR numericStringSubstringsMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.36 )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.2.6 NAME 'esgIntervalOffset' DESC 'F
rom SDP: r=repeatinterval duration offset [offset [offset ...]]' EQUALITY n
umericStringMatch SUBSTR numericStringSubstringsMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.36 )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.2.8 NAME 'esgTotalDuration' DESC 'Le
ngth if on-demand stream, else: finalend - firsthown' EQUALITY numericStrin
gMatch SUBSTR numericStringSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.36 )
attributeTypes: ( 1.3.6.1.4.1.2428.70.1.1.255 NAME 'esgSdp' DESC 'File in sd
p-format, if any' SYNTAX 1.3.6.1.4.1.1466.115.121.1.5 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.1 NAME 'dhcpPrimaryDN' DESC 'The
DN of the dhcpServer which is the primary server for the configuration.' E
QUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-
VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.2 NAME 'dhcpSecondaryDN' DESC 'T
he DN of dhcpServer(s) which provide backup service for the configuration.'
EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.3 NAME 'dhcpStatements' DESC 'Fl
exible storage for specific data depending on what object this exists in. L
ike conditional statements, server parameters, etc. This allows the standar
d to evolve without needing to adjust the schema.' EQUALITY caseIgnoreIA5Ma
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.4 NAME 'dhcpRange' DESC 'The sta
rting & ending IP Addresses in the range (inclusive), separated by a hyphen
; if the range only contains one address, then just the address can be spec
ified with no hyphen. Each range is defined as a separate value.' EQUALITY
caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.5 NAME 'dhcpPermitList' DESC 'Th
is attribute contains the permit lists associated with a pool. Each permit
list is defined as a separate value.' EQUALITY caseIgnoreIA5Match SYNTAX 1.
3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.6 NAME 'dhcpNetMask' DESC 'The s
ubnet mask length for the subnet. The mask can be easily computed from thi
s length.' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGL
E-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.7 NAME 'dhcpOption' DESC 'Encode
d option values to be sent to clients. Each value represents a single opti
on and contains (OptionTag, Length, OptionValue) encoded in the format used
by DHCP.' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26
)
attributeTypes: ( 2.16.840.1.113719.1.203.4.8 NAME 'dhcpClassData' DESC 'Enc
oded text string or list of bytes expressed in hexadecimal, separated by co
lons. Clients match subclasses based on matching the class data with the r
esults of match or spawn with statements in the class name declarations.' E
QUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALU
E )
attributeTypes: ( 2.16.840.1.113719.1.203.4.9 NAME 'dhcpOptionsDN' DESC 'The
distinguished name(s) of the dhcpOption objects containing the configurati
on options provided by the server.' EQUALITY distinguishedNameMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.10 NAME 'dhcpHostDN' DESC 'the d
istinguished name(s) of the dhcpHost objects.' EQUALITY distinguishedNameMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.11 NAME 'dhcpPoolDN' DESC 'The d
istinguished name(s) of pools.' EQUALITY distinguishedNameMatch SYNTAX 1.3.
6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.12 NAME 'dhcpGroupDN' DESC 'The
distinguished name(s) of the groups.' EQUALITY distinguishedNameMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.13 NAME 'dhcpSubnetDN' DESC 'The
distinguished name(s) of the subnets.' EQUALITY distinguishedNameMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.14 NAME 'dhcpLeaseDN' DESC 'The
distinguished name of a client address.' EQUALITY distinguishedNameMatch SY
NTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.15 NAME 'dhcpLeasesDN' DESC 'The
distinguished name(s) client addresses.' EQUALITY distinguishedNameMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.16 NAME 'dhcpClassesDN' DESC 'Th
e distinguished name(s) of a class(es) in a subclass.' EQUALITY distinguish
edNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.17 NAME 'dhcpSubclassesDN' DESC
'The distinguished name(s) of subclass(es).' EQUALITY distinguishedNameMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.18 NAME 'dhcpSharedNetworkDN' DE
SC 'The distinguished name(s) of sharedNetworks.' EQUALITY distinguishedNam
eMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.19 NAME 'dhcpServiceDN' DESC 'Th
e DN of dhcpService object(s)which contain the configuration information. E
ach dhcpServer object has this attribute identifying the DHCP configuration
(s) that the server is associated with.' EQUALITY distinguishedNameMatch SY
NTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.20 NAME 'dhcpVersion' DESC 'The
version attribute of this object.' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6
.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.21 NAME 'dhcpImplementation' DES
C 'Description of the DHCP Server implementation e.g. DHCP Servers vendor.'
EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VA
LUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.22 NAME 'dhcpAddressState' DESC
'This stores information about the current binding-status of an address. F
or dynamic addresses managed by DHCP, the values should be restricted to th
e following: "FREE", "ACTIVE", "EXPIRED", "RELEASED", "RESET", "ABANDONED",
"BACKUP". For other addresses, it SHOULD be one of the following: "UNKNOW
N", "RESERVED" (an address that is managed by DHCP that is reserved for a s
pecific client), "RESERVED-ACTIVE" (same as reserved, but address is curren
tly in use), "ASSIGNED" (assigned manually or by some other mechanism), "UN
ASSIGNED", "NOTASSIGNABLE".' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1
.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.23 NAME 'dhcpExpirationTime' DES
C 'This is the time the current lease for an address expires.' EQUALITY gen
eralizedTimeMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.24 NAME 'dhcpStartTimeOfState' D
ESC 'This is the time of the last state change for a leased address.' EQUAL
ITY generalizedTimeMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALUE
)
attributeTypes: ( 2.16.840.1.113719.1.203.4.25 NAME 'dhcpLastTransactionTime
' DESC 'This is the last time a valid DHCP packet was received from the cli
ent.' EQUALITY generalizedTimeMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SI
NGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.26 NAME 'dhcpBootpFlag' DESC 'Th
is indicates whether the address was assigned via BOOTP.' EQUALITY booleanM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.27 NAME 'dhcpDomainName' DESC 'T
his is the name of the domain sent to the client by the server. It is esse
ntially the same as the value for DHCP option 15 sent to the client, and re
presents only the domain - not the full FQDN. To obtain the full FQDN assi
gned to the client you must prepend the "dhcpAssignedHostName" to this valu
e with a ".".' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.
1.26 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.28 NAME 'dhcpDnsStatus' DESC 'Th
is indicates the status of updating DNS resource records on behalf of the c
lient by the DHCP server for this address. The value is a 16-bit bitmask.'
EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.29 NAME 'dhcpRequestedHostName'
DESC 'This is the hostname that was requested by the client.' EQUALITY case
IgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.30 NAME 'dhcpAssignedHostName' D
ESC 'This is the actual hostname that was assigned to a client. It may not
be the name that was requested by the client. The fully qualified domain n
ame can be determined by appending the value of "dhcpDomainName" (with a do
t separator) to this name.' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.
1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.31 NAME 'dhcpReservedForClient'
DESC 'The distinguished name of a "dhcpClient" that an address is reserved
for. This may not be the same as the "dhcpAssignedToClient" attribute if t
he address is being reassigned but the current lease has not yet expired.'
EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE
-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.32 NAME 'dhcpAssignedToClient' D
ESC 'This is the distinguished name of a "dhcpClient" that an address is cu
rrently assigned to. This attribute is only present in the class when the
address is leased.' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.33 NAME 'dhcpRelayAgentInfo' DES
C 'If the client request was received via a relay agent, this contains info
rmation about the relay agent that was available from the DHCP request. Th
is is a hex-encoded option value.' EQUALITY octetStringMatch SYNTAX 1.3.6.1
.4.1.1466.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.34 NAME 'dhcpHWAddress' DESC 'Th
e clients hardware address that requested this IP address.' EQUALITY caseIg
noreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.35 NAME 'dhcpHashBucketAssignmen
t' DESC 'HashBucketAssignment bit map for the DHCP Server, as defined in DH
C Load Balancing Algorithm [RFC 3074].' EQUALITY octetStringMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.36 NAME 'dhcpDelayedServiceParam
eter' DESC 'Delay in seconds corresponding to Delayed Service Parameter con
figuration, as defined in DHC Load Balancing Algorithm [RFC 3074]. ' EQUAL
ITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.37 NAME 'dhcpMaxClientLeadTime'
DESC 'Maximum Client Lead Time configuration in seconds, as defined in DHCP
Failover Protocol [FAILOVR]' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.38 NAME 'dhcpFailOverEndpointSta
te' DESC 'Server (Failover Endpoint) state, as defined in DHCP Failover Pro
tocol [FAILOVR]' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.26 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.39 NAME 'dhcpErrorLog' DESC 'Gen
eric error log attribute that allows logging error conditions within a dhcp
Service or a dhcpSubnet, like no IP addresses available for lease.' EQUALIT
Y caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.40 NAME 'dhcpLocatorDN' DESC 'Th
e DN of dhcpLocator object which contain the DNs of all DHCP configuration
objects. There will be a single dhcpLocator object in the tree with links t
o all the DHCP objects in the tree' EQUALITY distinguishedNameMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.41 NAME 'dhcpKeyAlgorithm' DESC
'Algorithm to generate TSIG Key' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1
.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.42 NAME 'dhcpKeySecret' DESC 'Se
cret to generate TSIG Key' EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.146
6.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.43 NAME 'dhcpDnsZoneServer' DESC
'Master server of the DNS Zone' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1
.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 2.16.840.1.113719.1.203.4.44 NAME 'dhcpKeyDN' DESC 'The DN
s of TSIG Key to use in secure dynamic updates. In case of locator object,
this will be list of TSIG keys. In case of DHCP Service, Shared Network, S
ubnet and DNS Zone, it will be a single key.' EQUALITY distinguishedNameMat
ch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.45 NAME 'dhcpZoneDN' DESC 'The D
Ns of DNS Zone. In case of locator object, this will be list of DNS Zones i
n the tree. In case of DHCP Service, Shared Network and Subnet, it will be
a single DNS Zone.' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.46 NAME 'dhcpFailOverPrimaryServ
er' DESC 'IP address or DNS name of the server playing primary role in DHC
Load Balancing and Fail over.' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4
.1.1466.115.121.1.26 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.47 NAME 'dhcpFailOverSecondarySe
rver' DESC 'IP address or DNS name of the server playing secondary role in
DHC Load Balancing and Fail over.' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6
.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.48 NAME 'dhcpFailOverPrimaryPort
' DESC 'Port on which primary server listens for connections from its fail
over peer (secondary server)' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.27 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.49 NAME 'dhcpFailOverSecondaryPo
rt' DESC 'Port on which secondary server listens for connections from its f
ail over peer (primary server)' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.27 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.50 NAME 'dhcpFailOverResponseDel
ay' DESC 'Maximum response time in seconds, before Server assumes that conn
ection to fail over peer has failed' EQUALITY integerMatch SYNTAX 1.3.6.1.4
.1.1466.115.121.1.27 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.51 NAME 'dhcpFailOverUnackedUpda
tes' DESC 'Number of BNDUPD messages that server can send before it receive
s BNDACK from its fail over peer' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.
1466.115.121.1.27 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.52 NAME 'dhcpFailOverSplit' DESC
'Split between the primary and secondary servers for fail over purpose' EQ
UALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.53 NAME 'dhcpFailOverLoadBalance
Time' DESC 'Cutoff time in seconds, after which load balance is disabled' E
QUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.54 NAME 'dhcpFailOverPeerDN' DES
C 'The DNs of Fail over peers. In case of locator object, this will be list
of fail over peers in the tree. In case of Subnet and pool, it will be a s
ingle Fail Over Peer' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.55 NAME 'dhcpServerDN' DESC 'Lis
t of all DHCP Servers in the tree. Used by dhcpLocatorObject' EQUALITY dis
tinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 2.16.840.1.113719.1.203.4.56 NAME 'dhcpComments' DESC 'Gen
eric attribute that allows coments within any DHCP object' EQUALITY caseIg
noreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.10 NAME 'dlzZoneName' DESC 'DNS zone
name - domain name not including host name' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.20 NAME 'dlzHostName' DESC 'Host por
tion of a domain name' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.30 NAME 'dlzData' DESC 'Data for the
resource record' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.40 NAME 'dlzType' DESC 'DNS record t
ype - A, SOA, NS, MX, etc...' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.50 NAME 'dlzSerial' DESC 'SOA record
serial number' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.60 NAME 'dlzRefresh' DESC 'SOA recor
d refresh time in seconds' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.11
5.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.70 NAME 'dlzRetry' DESC 'SOA retry t
ime in seconds' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.80 NAME 'dlzExpire' DESC 'SOA expire
time in seconds' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.2
7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.90 NAME 'dlzMinimum' DESC 'SOA minim
um time in seconds' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1
.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.100 NAME 'dlzAdminEmail' DESC 'E-mai
l address of person responsible for this zone - @ should be replaced with .
(period)' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.110 NAME 'dlzPrimaryNS' DESC 'Primar
y name server for this zone - should be host name not IP address' SUP name
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.120 NAME 'dlzIPAddr' DESC 'IP addres
s - IPV4 should be in dot notation xxx.xxx.xxx.xxx IPV6 should be in colon
notation xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx' EQUALITY caseExactIA5Matc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{40} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.130 NAME 'dlzCName' DESC 'DNS cname'
SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.140 NAME 'dlzPreference' DESC 'DNS M
X record preference. Lower numbers have higher preference' EQUALITY intege
rMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.150 NAME 'dlzTTL' DESC 'DNS time to
live - how long this record can be cached by caching DNS servers' EQUALITY
integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.18420.1.1.160 NAME 'dlzRecordID' DESC 'Unique
ID for each DLZ resource record' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.31 NAME 'automountMapName' DESC 'automount M
ap Name' EQUALITY caseExactIA5Match SUBSTR caseExactIA5SubstringsMatch SYNT
AX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.32 NAME 'automountKey' DESC 'Automount Key v
alue' EQUALITY caseExactIA5Match SUBSTR caseExactIA5SubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.1.1.33 NAME 'automountInformation' DESC 'Automou
nt information' EQUALITY caseExactIA5Match SUBSTR caseExactIA5SubstringsMat
ch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.37 NAME 'x509CRLThisUpdate' DESC '
Date at which this revocation list was issued - see RFC3280 5.1.2.4' EQUALI
TY generalizedTimeMatch ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.
1.4.1.1466.115.121.1.24 SINGLE-VALUE )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.38 NAME 'x509CRLNextUpdate' DESC '
Date by which the next revocation list in this series will be issued, see
- RFC3280 5.1.2.5' EQUALITY generalizedTimeMatch ORDERING generalizedTimeOr
deringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALUE )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.102 NAME 'x509CRLNumber' DESC 'seq
uence number of issued CRL - see RFC3280 5.2.3' EQUALITY integerMatch ORDER
ING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE
)
attributeTypes: ( 1.2.826.0.1.3344810.1.1.48 NAME 'x509CRLDPRfc822Name' DESC
'Internet electronic mail address of the issuing distribution point, se
e RFC3280 5.2.5' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Substrings
Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.49 NAME 'x509CRLDPDnsName' DESC 'I
nternet domain name of the issuing distribution point, see RFC3280 5.2.5'
EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.
6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.50 NAME 'x509CRLDPDN' DESC 'Distin
guished name of the issuing distribution point, see RFC3280 5.2.5' EQUALIT
Y distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.51 NAME 'x509CRLDPURI' DESC 'Unifo
rm Resource Identifier of the issuing distribution point, see RFC3280 5.2
.5' EQUALITY caseExactIA5Match SUBSTR caseExactIA5SubstringsMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.52 NAME 'x509CRLDPIpAddress' DESC
'Internet Protocol address, of the issuing distribution point, see RFC3280
5.2.5' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.53 NAME 'x509CRLDPRegisteredID' DE
SC 'Any registered OID of the certificate issuer, see RFC3280 5.2.5' EQUAL
ITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.54 NAME 'x509CRLDPOnlyUserCerts' D
ESC 'If true, the CRL only contains revocations for end-entity certs, see
RFC3280 5.2.5' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.55 NAME 'x509CRLDPOnlyCACerts' DES
C 'If true, the CRL only contains revocations for CA certs, see RFC3280 5.
2.5' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.56 NAME 'x509CRLDPOnlySomeReasons'
DESC 'If true, the CRL only contains some revocation reason codes, see RF
C3280 5.2.5' EQUALITY bitStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.6 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.57 NAME 'x509CRLDPOnlyAttCerts' DE
SC 'If true, the CRL only contains revocations for attribute certs, see RF
C3280 5.2.5' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.58 NAME 'x509CRLDPindirect' DESC '
If true, the CRL is an indirect CRL, see RFC3280 5.2.5' EQUALITY booleanMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.59 NAME 'x509CRLDeltaIndicator' DE
SC 'Indicates this is a delta CRL, and the value points to the sequence nu
mber of the issued base CRL to which this is a delta - see RFC3280 5.2.4'
EQUALITY integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.146
6.115.121.1.27 SINGLE-VALUE )
attributeTypes:: KCAxLjIuODI2LjAuMS4zMzQ0ODEwLjEuMS4zOSBOQU1FICd4NTA5Q1JMQ2V
ydFJldm9jYXRpb25EYXRlJyBERVNDICdEYXRlL3RpbWUgdGhlIENBIGFjdHVhbGx5IHJldm9rZW
QgdGhlIGNlcnRpZmljYXRlLCBzZWUg4oCTICAJUkZDMzI4MCA1LjEuMi42JyBFUVVBTElUWSBnZ
W5lcmFsaXplZFRpbWVNYXRjaCBPUkRFUklORyBnZW5lcmFsaXplZFRpbWVPcmRlcmluZ01hdGNo
IFNZTlRBWCAxLjMuNi4xLjQuMS4xNDY2LjExNS4xMjEuMS4yNCBTSU5HTEUtVkFMVUUgKQ==
attributeTypes: ( 1.2.826.0.1.3344810.1.1.40 NAME 'x509CRLCertInvalidityDate
' DESC 'date at which it is known or suspected that the private key was co
mpromised, see RFC3280 5.3.3' EQUALITY generalizedTimeMatch ORDERING genera
lizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-VALUE )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.41 NAME 'x509CRLCertIssuerRfc822Na
me' DESC 'Internet electronic mail address of the certificate issuer, see
RFC3280 5.3.4' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.42 NAME 'x509CRLCertIssuerDnsName'
DESC 'Internet domain name of the certificate issuer, see RFC3280 5.3.4'
EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.
6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.43 NAME 'x509CRLCertIssuerDN' DESC
'Distinguished name of the certificate issuer, see RFC3280 5.3.4' EQUALIT
Y distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.44 NAME 'x509CRLCertIssuerURI' DES
C 'Uniform Resource Identifier of the certificate issuer, see RFC3280 5.3.
4' EQUALITY caseExactIA5Match SUBSTR caseExactIA5SubstringsMatch SYNTAX 1.3
.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.45 NAME 'x509CRLCertIssuerIpAddres
s' DESC 'Internet Protocol address, of the certificate issuer, see RFC3280
5.3.4' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.46 NAME 'x509CRLCertIssuerRegister
edID' DESC 'Any registered OID of the certificate issuer, see RFC3280 5.3.
4' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.47 NAME 'x509CRLCertReasonCode' DE
SC 'An integer code indicating the reason for the revocation, see RFC3280
5.3.1' EQUALITY integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4
.1.1466.115.121.1.27 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.103 NAME 'x509CRLCertHoldInstructi
onCode' DESC 'Any registered OID indicating a hold instruction, see RFC328
0 5.3.2' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.3
8 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.1 NAME 'x509version' DESC 'X.509 V
ersion of the certificate, or of the CRL' EQUALITY integerMatch SYNTAX 1.3.
6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.2 NAME 'x509serialNumber' DESC 'Un
ique integer for each certificate issued by a particular CA' EQUALITY inte
gerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.3 NAME 'x509signatureAlgorithm' DE
SC 'OID of the algorithm used by the CA in signing the CRL or the certific
ate' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 SI
NGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.4 NAME 'x509issuer' DESC 'Distingu
ished name of the entity who has signed and issued the certificate' EQUALI
TY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.5 NAME 'x509validityNotBefore' DES
C 'Date on which the certificate validity period begins' EQUALITY generaliz
edTimeMatch ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.24 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.6 NAME 'x509validityNotAfter' DESC
'Date on which the certificate validity period ends' EQUALITY generalizedT
imeMatch ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.
121.1.24 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.7 NAME 'x509subject' DESC 'Disting
uished name of the entity associated with this public-key' EQUALITY distin
guishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.8 NAME 'x509subjectPublicKeyInfoAl
gorithm' DESC 'OID identifying the algorithm associated with the certified
public key' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121
.1.38 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.11 NAME 'x509authorityKeyIdentifie
r' DESC 'Key Identifier field of the Authority Key Identifier extension' E
QUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.12 NAME 'x509authorityCertIssuer'
DESC 'Authority Cert Issuer field of the Authority Key Identifier extensio
n' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SIN
GLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.13 NAME 'x509authorityCertSerialNu
mber' DESC 'Authority Cert Serial Number field of the Authority Key Identi
fier extension' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.14 NAME 'x509subjectKeyIdentifier'
DESC 'Key identifier which must be unique with respect to all key identif
iers for the subject' EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115
.121.1.40 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.15 NAME 'x509keyUsage' DESC 'Purpo
se for which the certified public key is used' EQUALITY caseIgnoreMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.16 NAME 'x509policyInformationIden
tifier' DESC 'OID which indicates the policy under which the certificate h
as been issued and the purposes for which the certificate may be used' EQU
ALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 SINGLE-VAL
UE )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.17 NAME 'x509subjectRfc822Name' DE
SC 'Internet electronic mail address of the entity associated with this pu
blic-key' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.18 NAME 'x509subjectDnsName' DESC
'Internet domain name of the entity associated with this public-key' EQUAL
ITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4
.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.19 NAME 'x509subjectDirectoryName'
DESC 'Distinguished name of the entity associated with this public-key' E
QUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.20 NAME 'x509subjectUniformResourc
eIdentifier' DESC 'Uniform Resource Identifier for the World-Wide Web of t
he entity associated with this public-key' EQUALITY caseExactIA5Match SUBST
R caseExactIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.21 NAME 'x509subjectIpAddress' DES
C 'Internet Protocol address of the entity associated with this public-key
' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.22 NAME 'x509subjectRegisteredID'
DESC 'OID of any registered object identifying the entity associated with
this public-key' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115
.121.1.38 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.23 NAME 'x509issuerRfc822Name' DES
C 'Internet electronic mail address of the entity who has signed and issue
d the certificate' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Substrin
gsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.24 NAME 'x509issuerDnsName' DESC '
Internet domain name of the entity who has signed and issued the certifica
te' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.25 NAME 'x509issuerDirectoryName'
DESC 'Distinguished name of the entity who has signed and issued the certi
ficate' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.1
2 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.26 NAME 'x509issuerUniformResource
Identifier' DESC 'Uniform Resource Identifier for the World-Wide Web of th
e entity who has signed and issued the certificate' EQUALITY caseExactIA5Ma
tch SUBSTR caseExactIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26
)
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.27 NAME 'x509issuerIpAddress' DESC
'Internet Protocol address of the entity who has signed and issued the ce
rtificate' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.28 NAME 'x509issuerRegisteredID' D
ESC 'OID of any registered object identifying the entity who has signed an
d issued the certificate' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1
.1466.115.121.1.38 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.29 NAME 'x509basicConstraintsCa' D
ESC 'Identifies whether the subject of the certificate is a CA' EQUALITY b
ooleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.30 NAME 'x509extKeyUsage' DESC 'Pu
rposes for which the certified public key may be used, identified by an OI
D' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.3.32 NAME 'x509fullCRLDistributionPo
intURI' DESC 'URI type of DistributionPointName for the full CRL' EQUALITY
caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.4.74 NAME 'x509certLocation' DESC 'P
ointer to a x509certificate Entry' EQUALITY distinguishedNameMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.4.75 NAME 'x509certHolder' DESC 'Poi
nter to the directory entry of the end entity to which this certificate wa
s issued' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1
.12 )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.4.76 NAME 'x509userCert' DESC 'Compl
ete x.509 user certificate' SUP userCertificate SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.1.5.4.77 NAME 'x509caCert' DESC 'Complet
e x.509 CA certificate' SUP caCertificate SINGLE-VALUE )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.60 NAME 'x509issuerSerial' DESC 'U
sed to hold the RDN of a certificate entry, formed by concatenating the AC
serial number and issuer fields ' EQUALITY distinguishedNameMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.61 NAME 'x509ACHolderPKCSerialNumb
er' DESC 'The serial number of the PKC of the AC holder - see RFC3281 4.2.
2' EQUALITY integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.62 NAME 'x509ACHolderPKCissuerDN'
DESC 'Distinguished name of the issuer of the PKC belonging to the AC hold
er - see RFC3281 4.2.2' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1
.1466.115.121.1.12 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.63 NAME 'x509ACHolderRfc822Name' D
ESC 'Internet electronic mail address of the AC holder - see RFC3281 4.2.
2' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.64 NAME 'x509ACHolderDNSName' DESC
'Internet domain name of the AC Holder, see RFC3281 4.2.2' EQUALITY caseI
gnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.65 NAME 'x509ACHolderDN' DESC 'Dis
tinguished name of the AC Holder, see RFC3281 4.2.2' EQUALITY distinguishe
dNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.66 NAME 'x509ACHolderURI' DESC 'Un
iform Resource Identifier of the AC Holder - see RFC3281 4.2.2' EQUALITY
caseExactIA5Match SUBSTR caseExactIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.146
6.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.67 NAME 'x509ACHolderIPAddress' DE
SC 'Internet Protocol address of the AC Holder, see RFC3281 4.2.2' EQUALIT
Y caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1
.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.68 NAME 'x509ACHolderRegisteredID'
DESC 'Any registered OID of the AC holder, see RFC3281 4.2.2' EQUALITY ob
jectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 )
attributeTypes:: KCAxLjIuODI2LjAuMS4zMzQ0ODEwLjEuMS42OSBOQU1FICd4NTA5QUNPYmp
lY3REaWdlc3QnIERFU0MgJ0hvbGRzIHRoZSBoYXNoIHZhbHVlIG9mIHRoZSBvYmplY3QgaWRlbn
RpZmllZCBieSAJeDUwOUFDRGlnZXN0ZWRPYmplY3RUeXBlIOKAkyBzZWUgUkZDIDMyODEsIHNlY
3Rpb24gNy4zJyBFUVVBTElUWSBiaXRTdHJpbmdNYXRjaCBTWU5UQVggMS4zLjYuMS40LjEuMTQ2
Ni4xMTUuMTIxLjEuNiBTSU5HTEUtVkFMVUUgKQ==
attributeTypes: ( 1.2.826.0.1.3344810.1.1.70 NAME 'x509ACDigestAlgorithm' DE
SC 'OID of the hashing algorithm used to create the Object digest, see RFC
3281, section 7.3' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.38 SINGLE-VALUE )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.71 NAME 'x509ACDigestedObjectType'
DESC 'Type of object being digested - see RFC3281, section 7.3' EQUALITY i
ntegerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1
.27 SINGLE-VALUE )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.72 NAME 'x509ACAuditID' DESC 'Iden
tity of holder used in audit trails - see RFC3281 4.3.1' EQUALITY octetStri
ngMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.73 NAME 'x509ACTargetRfc822Name' D
ESC 'Internet electronic mail address of the ACs Target - see RFC3281 4.3
.2' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.74 NAME 'x509ACTargetDNSName' DESC
'Internet domain name of the ACs Target, see RFC3281 4.3.2' EQUALITY case
IgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.
115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.75 NAME 'x509ACTargetDN' DESC 'Dis
tinguished name of the ACs Target, see RFC3281 4.3.2' EQUALITY distinguishe
dNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.76 NAME 'x509ACTargetURI' DESC 'Un
iform Resource Identifier of the ACs Target - see RFC3281 4.3.2' EQUALITY
caseExactIA5Match SUBSTR caseExactIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.77 NAME 'x509ACTargetIPAddress' DE
SC 'Internet Protocol address of the ACs Target, see RFC3281 4.3.2' EQUALI
TY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.
1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.78 NAME 'x509ACTargetRegisteredID'
DESC 'Any registered OID of the ACs Target, see RFC3281 4.3.2' EQUALITY o
bjectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.79 NAME 'x509ACTargetGroupRfc822Na
me' DESC 'Internet electronic mail address of the ACs Target group - see
RFC3281 4.3.2' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.80 NAME 'x509ACTargetGroupDNSName'
DESC 'Internet domain name of the ACs Target group, see RFC3281 4.3.2' EQ
UALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.
1.4.1.1466.115.121.1.26 )
attributeTypes:: KCAxLjIuODI2LjAuMS4zMzQ0ODEwLjEuMS44MSBOQU1FICd4NTA5QUNUYXJ
nZXRHcm91cEROJyBERVNDICdEaXN0aW5ndWlzaGVkIG5hbWUgb2YgdGhlIEFD4oCZcyBUYXJnZX
QgZ3JvdXAsIHNlZSAJUkZDMzI4MSA0LjMuMicgRVFVQUxJVFkgZGlzdGluZ3Vpc2hlZE5hbWVNY
XRjaCBTWU5UQVggMS4zLjYuMS40LjEuMTQ2Ni4xMTUuMTIxLjEuMTIgKQ==
attributeTypes:: KCAxLjIuODI2LjAuMS4zMzQ0ODEwLjEuMS44MiBOQU1FICd4NTA5QUNUYXJ
nZXRHcm91cFVSSScgREVTQyAnVW5pZm9ybSBSZXNvdXJjZSBJZGVudGlmaWVyIG9mIHRoZSBBQ+
KAmXMgVGFyZ2V0IGdyb3VwICAJLSBzZWUgUkZDMzI4MSA0LjMuMicgRVFVQUxJVFkgY2FzZUV4Y
WN0SUE1TWF0Y2ggU1VCU1RSIGNhc2VFeGFjdElBNVN1YnN0cmluZ3NNYXRjaCBTWU5UQVggMS4z
LjYuMS40LjEuMTQ2Ni4xMTUuMTIxLjEuMjYgKQ==
attributeTypes: ( 1.2.826.0.1.3344810.1.1.83 NAME 'x509ACTargetGroupIPAddres
s' DESC 'Internet Protocol address of the ACs Target group, see RFC3281 4.
3.2' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.84 NAME 'x509ACTargetGroupRegister
edID' DESC 'Any registered OID of the ACs Target group, see RFC3281 4.3.2'
EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.85 NAME 'x509ACNoRevocation' DESC
'If true, the AC will never be revoked, see RFC3281 section 4.3.6' EQUALIT
Y booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.86 NAME 'x509DPRfc822Name' DESC 'I
nternet electronic mail address of the distribution point, see RFC3280
section 4.2.1.14' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Substring
sMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.87 NAME 'x509DPDNSName' DESC 'Inte
rnet domain name of the distribution point, see RFC3280 section 4.2.1.14'
EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.
6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.88 NAME 'x509DPDN' DESC 'Distingui
shed name of the distribution point, see RFC3280 section 4.2.1.14' EQUALIT
Y distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.89 NAME 'x509DPURI' DESC 'Uniform
Resource Identifier of the distribution point, see RFC3280 section 4.2.1.
14' EQUALITY caseExactIA5Match SUBSTR caseExactIA5SubstringsMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.90 NAME 'x509DPIPAddress' DESC 'In
ternet Protocol address of the distribution point, see RFC3280 section 4.2
.1.14' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNT
AX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.91 NAME 'x509DPRegisteredID' DESC
'Any registered OID of the distribution point, see RFC3280 section 4.2.1.1
4' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.92 NAME 'x509DPrelativeToIssuer' D
ESC 'RDN of the distribution point, relative to the issuer, see RFC3280 s
ection 4.2.1.14' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.11
5.121.1.12 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.93 NAME 'x509DPissuerRfc822Name' D
ESC 'Internet electronic mail address of the distribution point CRL iss
uer, see RFC3280 section 4.2.1.14' EQUALITY caseIgnoreIA5Match SUBSTR caseI
gnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.94 NAME 'x509DPissuerDNSName' DESC
'Internet domain name of the distribution point CRL issuer, see RFC3280 s
ection 4.2.1.14' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Substrings
Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.95 NAME 'x509DPissuerDN' DESC 'Dis
tinguished name of the distribution point CRL issuer, see RFC3280 section
4.2.1.14' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.12 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.96 NAME 'x509DPissuerURI' DESC 'Un
iform Resource Identifier of the distribution point CRL issuer, see RFC32
80 section 4.2.1.14' EQUALITY caseExactIA5Match SUBSTR caseExactIA5Substrin
gsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.97 NAME 'x509DPissuerIPAddress' DE
SC 'Internet Protocol address of the distribution point CRL issuer, see RF
C3280 section 4.2.1.14' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Sub
stringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.98 NAME 'x509DPissuerRegisteredID'
DESC 'Any registered OID of the distribution point CRL issuer, see RFC32
80 section 4.2.1.14' EQUALITY objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.38 )
attributeTypes: ( 1.2.826.0.1.3344810.1.1.99 NAME 'x509DPReasonCodes' DESC '
The reason codes used by a DP, see RFC3280 section 4.2.1.14' EQUALITY bitS
tringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.6 )
attributeTypes: ( 1.3.6.1.1.11.1.2.1 NAME 'vPIMTelephoneNumber' DESC 'draft-
ietf-vpim-vpimdir: The full E.164 form of the telephone number, including a
ny sub-addressing portion' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.44{20} )
attributeTypes: ( 1.3.6.1.1.11.1.2.2 NAME 'vPIMRfc822Mailbox' DESC 'draft-ie
tf-vpim-vpimdir: stores the inter-domain SMTP address of the voice mailbox
associated with a given telephone number' EQUALITY caseIgnoreIA5Match SYNTA
X 1.3.6.1.4.1.1466.115.121.1.26{256} )
attributeTypes: ( 1.3.6.1.1.11.1.2.3 NAME 'vPIMSpokenName' DESC 'draft-ietf-
vpim-vpimdir: the spoken name of the user in the voice of the user' EQUALIT
Y octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40{20000} SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.1.11.1.2.4 NAME 'vPIMTextName' DESC 'draft-ietf-vp
im-vpimdir: consistent with the unstructured text name databases used for c
alling name delivery service of caller ID' EQUALITY caseIgnoreMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15{20} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.11.1.2.5 NAME 'vPIMSupportedAudioMediaTypes' DES
C 'draft-ietf-vpim-vpimdir: MIME audio subtype(s) of encodings that can be
received at the address specified in vPIMRfc822Mailbox' EQUALITY caseIgnore
IA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.1.11.1.2.6 NAME 'vPIMSupportedMessageContext' DESC
'draft-ietf-vpim-vpimdir: provides guidance to the sender about the messag
e contexts the recipient is likely to accept' EQUALITY caseIgnoreIA5Match S
YNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.1.11.1.2.7 NAME 'vPIMExtendedAbsenceStatus' DESC '
draft-ietf-vpim-vpimdir: indicates to the subscriber whether the recipient
is accepting messages during his absence' EQUALITY caseIgnoreIA5Match SYNTA
X 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.11.1.2.8 NAME 'vPIMSupportedUABehaviors' DESC 'd
raft-ietf-vpim-vpimdir: list of the attributes considered optional by VPIM
and other vendor-specific attributes maybe supported by the recipient' EQUA
LITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.1.11.1.2.9 NAME 'vPIMMaxMessageSize' DESC 'draft-i
etf-vpim-vpimdir: maximum message length in seconds the receiving mailbox a
ccepts' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-V
ALUE )
attributeTypes: ( 1.3.6.1.1.11.1.2.10 NAME 'vPIMSubMailboxes' DESC 'draft-ie
tf-vpim-vpimdir: indicates the presence of sub-mailboxes' EQUALITY numericS
tringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.36{4} )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.1 NAME 'AstContext' DESC 'Asterisk C
ontext' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.2 NAME 'AstExtension' DESC 'Asterisk
Extension' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.3 NAME 'AstPriority' DESC 'Asterisk
Priority' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.4 NAME 'AstApplication' DESC 'Asteri
sk Application' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.5 NAME 'AstApplicationData' DESC 'As
terisk Application Data' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstrin
gsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.6 NAME 'AstAccountAMAFlags' DESC 'As
terisk Account AMA Flags' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstri
ngsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.7 NAME 'AstAccountCallerID' DESC 'As
terisk Account CallerID' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstrin
gsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.8 NAME 'AstAccountContext' DESC 'Ast
erisk Account Context' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstrings
Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.9 NAME 'AstAccountMailbox' DESC 'Ast
erisk Account Mailbox' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstrings
Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.10 NAME 'AstMD5secret' DESC 'Asteris
k Account MD5 Secret' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.11 NAME 'AstAccountDeny' DESC 'Aster
isk Account Deny' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.12 NAME 'AstAccountPermit' DESC 'Ast
erisk Account Permit' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.13 NAME 'AstAccountQualify' DESC 'As
terisk Account Qualify' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstring
sMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.14 NAME 'AstAccountType' DESC 'Aster
isk Account Type' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.15 NAME 'AstAccountDisallowedCodec'
DESC 'Asterisk Account Disallowed Codec' EQUALITY caseIgnoreMatch SUBSTR ca
seIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.16 NAME 'AstAccountExpirationTimesta
mp' DESC 'Asterisk Account Expiration Timestamp' EQUALITY caseIgnoreMatch S
UBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.17 NAME 'AstAccountRegistrationConte
xt' DESC 'Asterisk Account Registration Context' EQUALITY caseIgnoreMatch S
UBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.18 NAME 'AstAccountRegistrationExten
' DESC 'Asterisk Account Registration Extension' EQUALITY caseIgnoreMatch S
UBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.19 NAME 'AstAccountNoTransfer' DESC
'Asterisk Account No Transfer' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSu
bstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.20 NAME 'AstAccountCallGroup' DESC '
Asterisk Account Call Group' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubs
tringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.21 NAME 'AstAccountCanReinvite' DESC
'Asterisk Account Can Reinvite' EQUALITY caseIgnoreMatch SUBSTR caseIgnore
SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.22 NAME 'AstAccountDTMFMode' DESC 'A
sterisk Account DTMF Flags' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubst
ringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.23 NAME 'AstAccountFromUser' DESC 'A
sterisk Account From User' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.24 NAME 'AstAccountFromDomain' DESC
'Asterisk Account From Domain' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSu
bstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.25 NAME 'AstAccountFullContact' DESC
'Asterisk Account Full Contact' EQUALITY caseIgnoreMatch SUBSTR caseIgnore
SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.26 NAME 'AstAccountHost' DESC 'Aster
isk Account Host' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.27 NAME 'AstAccountInsecure' DESC 'A
sterisk Account Insecure' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstri
ngsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.28 NAME 'AstAccountNAT' DESC 'Asteri
sk Account NAT' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.29 NAME 'AstAccountPickupGroup' DESC
'Asterisk Account PickupGroup' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreS
ubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.30 NAME 'AstAccountPort' DESC 'Aster
isk Account Port' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.31 NAME 'AstAccountRestrictCID' DESC
'Asterisk Account Restrict CallerID' EQUALITY caseIgnoreMatch SUBSTR caseI
gnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.32 NAME 'AstAccountRTPTimeout' DESC
'Asterisk Account RTP Timeout' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSu
bstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.33 NAME 'AstAccountRTPHoldTimeout' D
ESC 'Asterisk Account RTP Hold Timeout' EQUALITY caseIgnoreMatch SUBSTR cas
eIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.34 NAME 'AstAccountRealmedPassword'
DESC 'Asterisk Account Realmed Password' EQUALITY caseIgnoreMatch SUBSTR ca
seIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.35 NAME 'AstAccountAllowedCodec' DES
C 'Asterisk Account Allowed Codec' EQUALITY caseIgnoreMatch SUBSTR caseIgno
reSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.36 NAME 'AstAccountMusicOnHold' DESC
'Asterisk Account Music On Hold' EQUALITY caseIgnoreMatch SUBSTR caseIgnor
eSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.37 NAME 'AstAccountCanCallForward' D
ESC 'Asterisk Account Can Call Forward' EQUALITY caseIgnoreMatch SUBSTR cas
eIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.38 NAME 'AstAccountSecret' DESC 'Ast
erisk Account Secret' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.39 NAME 'AstAccountName' DESC 'Aster
isk Account Username' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.40 NAME 'AstConfigFilename' DESC 'As
terisk LDAP Configuration Filename' EQUALITY caseIgnoreMatch SUBSTR caseIgn
oreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.41 NAME 'AstConfigCategory' DESC 'As
terisk LDAP Configuration Category' EQUALITY caseIgnoreMatch SUBSTR caseIgn
oreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.42 NAME 'AstConfigCategoryMetric' DE
SC 'Asterisk LDAP Configuration Category Metric' EQUALITY caseIgnoreMatch S
UBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.43 NAME 'AstConfigVariableName' DESC
'Asterisk LDAP Configuration Variable Name' EQUALITY caseIgnoreMatch SUBST
R caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.44 NAME 'AstConfigVariableValue' DES
C 'Asterisk LDAP Configuration Variable Value' EQUALITY caseIgnoreMatch SUB
STR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.45 NAME 'AstConfigCommented' DESC 'A
sterisk LDAP Configuration Commented' EQUALITY caseIgnoreMatch SUBSTR caseI
gnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.46 NAME 'AstAccountIPAddress' DESC '
Asterisk Account IP Address' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubs
tringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.47 NAME 'AstAccountDefaultUser' DESC
'Asterisk Account Default User' EQUALITY caseIgnoreMatch SUBSTR caseIgnore
SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.48 NAME 'AstAccountRegistrationServe
r' DESC 'Asterisk Account Registration Server' EQUALITY caseIgnoreMatch SUB
STR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.49 NAME 'AstAccountLastQualifyMillis
econds' DESC 'Asterisk Account Last Qualify Milliseconds' EQUALITY caseIgno
reMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.
15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.50 NAME 'AstAccountCallLimit' DESC '
Asterisk Account Call Limit' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubs
tringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.51 NAME 'AstVoicemailMailbox' DESC '
Asterisk voicemail mailbox' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubst
ringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.52 NAME 'AstVoicemailPassword' DESC
'Asterisk voicemail password' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSub
stringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.53 NAME 'AstVoicemailFullname' DESC
'Asterisk voicemail fullname' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSub
stringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.54 NAME 'AstVoicemailEmail' DESC 'As
terisk voicemail email' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstring
sMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.55 NAME 'AstVoicemailPager' DESC 'As
terisk voicemail pager' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstring
sMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.56 NAME 'AstVoicemailOptions' DESC '
Asterisk voicemail options' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubst
ringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.57 NAME 'AstVoicemailTimestamp' DESC
'Asterisk voicemail timestamp' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreS
ubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.58 NAME 'AstVoicemailContext' DESC '
Asterisk voicemail context' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubst
ringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.59 NAME 'AstAccountSubscribeContext'
DESC 'Asterisk subscribe context' EQUALITY caseIgnoreMatch SUBSTR caseIgno
reSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.61 NAME 'AstAccountUserAgent' DESC '
Asterisk account user context' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSu
bstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.62 NAME 'AstAccountLanguage' DESC 'A
sterisk account user language' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSu
bstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.63 NAME 'AstAccountTransport' DESC '
Asterisk account transport type' EQUALITY caseIgnoreMatch SUBSTR caseIgnore
SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.64 NAME 'AstAccountPromiscRedir' DES
C 'Asterisk account promiscous redirects' EQUALITY caseIgnoreMatch SUBSTR c
aseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.65 NAME 'AstAccountAccountCode' DESC
'Asterisk account billing code' EQUALITY caseIgnoreMatch SUBSTR caseIgnore
SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.66 NAME 'AstAccountSetVar' DESC 'Ast
erisk account setvar' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.67 NAME 'AstAccountAllowOverlap' DES
C 'Asterisk account allow overlap dialing' EQUALITY caseIgnoreMatch SUBSTR
caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.68 NAME 'AstAccountVideoSupport' DES
C 'Asterisk account video support' EQUALITY caseIgnoreMatch SUBSTR caseIgno
reSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.69 NAME 'AstAccountIgnoreSDPVersion'
DESC 'Asterisk account ignore SDP version' EQUALITY caseIgnoreMatch SUBSTR
caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.22736.5.4.70 NAME 'AstAccountPathSupport' DESC
'Asterisk account support Path RFC 3327' EQUALITY caseIgnoreMatch SUBSTR c
aseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.8 NAME 'pgpBaseKeySpaceDN' DESC 'Poin
ts to DN of the object that will store the PGP keys.' SYNTAX 1.3.6.1.4.1.14
66.115.121.1.12 SINGLE-VALUE X-ORIGIN 'Pretty Good Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.9 NAME 'pgpSoftware' DESC 'pgpSoftwar
e attribute for PGP' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE X-OR
IGIN 'Pretty Good Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.10 NAME 'pgpVersion' DESC 'pgpVersion
attribute for PGP' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE X-ORI
GIN 'Pretty Good Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.11 NAME 'pgpKey' DESC 'pgpKey attribu
te for PGP' SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE X-ORIGIN 'Pre
tty Good Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.12 NAME 'pgpCertID' DESC 'pgpCertID a
ttribute for PGP' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE X-ORIGIN 'Pretty Good Pr
ivacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.13 NAME 'pgpDisabled' DESC 'pgpDisabl
ed attribute for PGP' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.
121.1.15 SINGLE-VALUE X-ORIGIN 'Pretty Good Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.14 NAME 'pgpKeyID' DESC 'pgpKeyID att
ribute for PGP' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch S
YNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE X-ORIGIN 'Pretty Good Priv
acy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.15 NAME 'pgpKeyType' DESC 'pgpKeyType
attribute for PGP' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMat
ch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE X-ORIGIN 'Pretty Good
Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.16 NAME 'pgpUserID' DESC 'User ID(s)
associated with the PGP key.' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSub
stringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORIGIN 'Pretty Good Pri
vacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.17 NAME 'pgpKeyCreateTime' DESC 'pgpK
eyCreateTime attribute for PGP' EQUALITY caseIgnoreMatch ORDERING caseIgnor
eOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115
.121.1.15 SINGLE-VALUE X-ORIGIN 'Pretty Good Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.18 NAME 'pgpSignerID' DESC 'pgpSigner
ID attribute for PGP' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORIGIN 'Pretty Good Privacy (PG
P)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.19 NAME 'pgpRevoked' DESC 'pgpRevoked
attribute for PGP' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.15 SINGLE-VALUE X-ORIGIN 'Pretty Good Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.20 NAME 'pgpSubKeyID' DESC 'Sub-key I
D(s) of the PGP key.' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-ORIGIN 'Pretty Good Privacy (PG
P)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.21 NAME 'pgpKeySize' DESC 'pgpKeySize
attribute for PGP' EQUALITY caseIgnoreMatch ORDERING caseIgnoreOrderingMat
ch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 X-
ORIGIN 'Pretty Good Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.22 NAME 'pgpKeyExpireTime' DESC 'pgpK
eyExpireTime attribute for PGP' EQUALITY caseIgnoreMatch ORDERING caseIgnor
eOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115
.121.1.15 SINGLE-VALUE X-ORIGIN 'Pretty Good Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.6 NAME 'pgpReconData' DESC 'PGP defin
ed attributed containing reconstruction data' SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.40 SINGLE-VALUE X-ORIGIN 'Pretty Good Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.7 NAME 'pgpReconCertID' DESC 'PGP def
ined attribute containing the certID of the key' EQUALITY caseIgnoreMatch S
UBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE
-VALUE X-ORIGIN 'Pretty Good Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.2 NAME 'pgpElementType' DESC 'PGP def
ined attribute containing the type of the pref object' EQUALITY caseIgnoreM
atch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15
SINGLE-VALUE X-ORIGIN 'Pretty Good Privacy (PGP)' )
attributeTypes: ( 1.3.6.1.4.1.3401.8.2.3 NAME 'pgpData' DESC 'PGP defined at
tribute containing the admin pref data' SYNTAX 1.3.6.1.4.1.1466.115.121.1.4
0 SINGLE-VALUE X-ORIGIN 'Pretty Good Privacy (PGP)' )
attributeTypes: ( 1.2.840.113556.1.4.478 NAME 'calCalURI' DESC 'URI to a sna
pshot of the users entire default calendar' EQUALITY caseIgnoreMatch SUBSTR
caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALU
E )
attributeTypes: ( 1.2.840.113556.1.4.479 NAME 'calFBURL' DESC 'URI to the us
ers default free/busy time data' EQUALITY caseIgnoreMatch SUBSTR caseIgnore
SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.2.840.113556.1.4.480 NAME 'calCAPURI' DESC 'URI used to
communicate with the users calendar' EQUALITY caseIgnoreMatch SUBSTR caseIg
noreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.2.840.113556.1.4.481 NAME 'calCalAdrURI' DESC 'URI to wh
ich event requests should be sent for the user' EQUALITY caseIgnoreMatch SU
BSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-
VALUE )
attributeTypes: ( 1.2.840.113556.1.4.482 NAME 'calOtherCalURIs' DESC 'URIs t
o snapshots of non-default calendars belonging to the user' EQUALITY caseIg
noreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.15 )
attributeTypes: ( 1.2.840.113556.1.4.483 NAME 'calOtherFBURLs' DESC 'URIs to
non-default free/busy data belonging to the user' EQUALITY caseIgnoreMatch
SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.2.840.113556.1.4.484 NAME 'calOtherCAPURIs' DESC 'URIs t
o non-default calendars belonging to the user' EQUALITY caseIgnoreMatch SUB
STR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.2.840.113556.1.4.485 NAME 'calOtherCalAdrURIs' DESC 'URI
s of destinations for event requests to non-default calendars' EQUALITY cas
eIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.15 )
attributeTypes: ( 1.3.6.1.4.1.13040.2.1.1 NAME 'hordePrefs' DESC 'Horde Pref
erences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{1
024} )
attributeTypes: ( 1.3.6.1.4.1.13040.3.1.1 NAME 'impPrefs' DESC 'IMP Preferen
ces' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{1024}
)
attributeTypes: ( 1.3.6.1.4.1.13040.4.1.1 NAME 'turbaPrefs' DESC 'Turba Pref
erences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{1
024} )
attributeTypes: ( 1.3.6.1.4.1.13040.4.1.2 NAME 'turbaType' DESC 'Turba Objec
t Type: Contact/List' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Subst
ringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{8} )
attributeTypes: ( 1.3.6.1.4.1.13040.4.1.3 NAME 'turbaMembers' DESC 'Encoded
members of a Turba list' SUP name )
attributeTypes: ( 1.3.6.1.4.1.13040.4.1.4 NAME 'turbaPGPPublicKey' DESC 'PGP
/GPG Public Key' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.26{4000} )
attributeTypes: ( 1.3.6.1.4.1.13040.5.1.1 NAME 'kronolithPrefs' DESC 'Kronol
ith Preferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.26{1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.6.1.1 NAME 'nagPrefs' DESC 'Nag Preferen
ces' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{1024}
)
attributeTypes: ( 1.3.6.1.4.1.13040.7.1.1 NAME 'gollemPrefs' DESC 'Gollem Pr
eferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26
{1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.8.1.1 NAME 'choraPrefs' DESC 'Chora Pref
erences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{1
024} )
attributeTypes: ( 1.3.6.1.4.1.13040.9.1.1 NAME 'mnemoPrefs' DESC 'Mnemo Pref
erences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{1
024} )
attributeTypes: ( 1.3.6.1.4.1.13040.10.1.1 NAME 'trollPrefs' DESC 'Troll Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.11.1.1 NAME 'klutzPrefs' DESC 'Klutz Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.12.1.1 NAME 'jonahPrefs' DESC 'Jonah Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.13.1.1 NAME 'hermesPrefs' DESC 'Hermes P
references' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.2
6{1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.14.1.1 NAME 'junoPrefs' DESC 'Juno Prefe
rences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{10
24} )
attributeTypes: ( 1.3.6.1.4.1.13040.15.1.1 NAME 'treanPrefs' DESC 'Trean Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.16.1.1 NAME 'whupsPrefs' DESC 'Whups Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.17.1.1 NAME 'ingoPrefs' DESC 'Ingo Prefe
rences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{10
24} )
attributeTypes: ( 1.3.6.1.4.1.13040.18.1.1 NAME 'anselPrefs' DESC 'Ansel Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.19.1.1 NAME 'geniePrefs' DESC 'Genie Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.20.1.1 NAME 'scryPrefs' DESC 'Scry Prefe
rences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{10
24} )
attributeTypes: ( 1.3.6.1.4.1.13040.21.1.1 NAME 'wickedPrefs' DESC 'Wicked P
references' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.2
6{1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.22.1.1 NAME 'agoraPrefs' DESC 'Agora Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.24.1.1 NAME 'goopsPrefs' DESC 'Goops Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.25.1.1 NAME 'merkPrefs' DESC 'Merk Prefe
rences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{10
24} )
attributeTypes: ( 1.3.6.1.4.1.13040.26.1.1 NAME 'mimpPrefs' DESC 'MIMP Prefe
rences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{10
24} )
attributeTypes: ( 1.3.6.1.4.1.13040.27.1.1 NAME 'mottlePrefs' DESC 'Mottle P
references' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.2
6{1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.28.1.1 NAME 'nicPrefs' DESC 'NIC Prefere
nces' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{1024
} )
attributeTypes: ( 1.3.6.1.4.1.13040.29.1.1 NAME 'occamPrefs' DESC 'Occam Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.30.1.1 NAME 'odinPrefs' DESC 'Odin Prefe
rences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{10
24} )
attributeTypes: ( 1.3.6.1.4.1.13040.31.1.1 NAME 'rakimPrefs' DESC 'Rakim Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.32.1.1 NAME 'seshaPrefs' DESC 'Sesha Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.33.1.1 NAME 'swooshPrefs' DESC 'Swoosh P
references' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.2
6{1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.34.1.1 NAME 'thorPrefs' DESC 'Thor Prefe
rences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{10
24} )
attributeTypes: ( 1.3.6.1.4.1.13040.35.1.1 NAME 'ulaformPrefs' DESC 'Ulaform
Preferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1
.26{1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.36.1.1 NAME 'volosPrefs' DESC 'Volos Pre
ferences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{
1024} )
attributeTypes: ( 1.3.6.1.4.1.13040.37.1.1 NAME 'jetaPrefs' DESC 'Jeta Prefe
rences' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{10
24} )
attributeTypes: ( 1.3.6.1.4.1.412.100.1.2.5 NAME 'arrayIndex' DESC 'the inde
x of this child' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1
.15 )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.101 NAME 'dlmIdentifyingDescriptio
n' DESC 'A free-form string providing explanation and details be
hind the entries in the dlmOtherIdentifyingInfo attribute.' EQUA
LITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.112 NAME 'dlmOtherIdentifyingInfo'
DESC 'OtherIdentifyingInfo captures additional data, beyond tha
t of Tag information, that could be used to identify a Physical
Element. One example is bar code data associated with an Element
that also has an asset tag. Note that if only bar code data is
available and is unique/able to be used as an Element key, this
property would be NULL and the bar code data used as
the class key, in the Tag property.' EQUALITY caseIgnoreMatch SYNTAX 1.3.6
.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.1.2.1 NAME 'orderedCimKeys' DESC 'The
model path for the instance (without propagated keys). May be us
ed as an RDN' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.1.2.2 NAME 'orderedCimModelPath' DESC
'The model path for the instance (with propagated keys). May be
used as an RDN' OBSOLETE EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.103 NAME 'dlmCaption' DESC 'The Ca
ption property is a short textual description (oneline string) o
f the object.' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.1
5{64} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.104 NAME 'dlmDescription' DESC 'Th
e Description property provides a textual description of the obje
ct.' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-V
ALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.105 NAME 'dlmInstallDate' DESC 'A
datetime value indicating when the object was installed. A lack
of a value does not indicate that the object is not installed.'
EQUALITY generalizedTimeMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 SINGLE-V
ALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.106 NAME 'dlmName' DESC 'The Name
property defines the label by which the object is known. When su
bclassed, the Name property can be overridden to be a Key proper
ty.' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} SIN
GLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.107 NAME 'dlmStatus' DESC 'A strin
g indicating the current status of the object. Various operation
al and non-operational statuses are defined. Operational statuse
s are "OK", "Degraded", "Stressed" and "Pred Fail". "Stressed"
indicates that the Element is functioning, but needs a
ttention. Examples of "Stressed" states are overload, overheate
d, etc. The condition "Pred Fail" (failure predicted) indicates
that an Element is functioning properly but predicting a failure
in the near future. An example is a SMART-enabled hard drive.
[...]' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.15{10} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.108 NAME 'dlmCreationClassName' DE
SC 'CreationClassName indicates the name of the class or the su
bclass used in the creation of an instance. When used with the o
ther key properties of this class, this property allows all ins
tances of this class and its subclasses to be uniquely identifie
d.' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} SING
LE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.119 NAME 'dlmNameFormat' DESC 'The
System object and its derivatives are Top Level Objects of CIM.
They provide the scope for numerous components. Having unique S
ystem keys is required. A heuristic can be defined in individual
System subclasses to attempt to always generate the
same System Name Key. The NameFormat property identifies how the
System name was generated, using the subclass" heuristic.' EQUA
LITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{64} SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.120 NAME 'dlmPrimaryOwnerContact'
DESC 'A string that provides information on how the primary syst
em owner can be reached (e.g. phone number, email address, ...).
' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} SINGLE
-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.121 NAME 'dlmPrimaryOwnerName' DES
C 'The name of the primary system owner.' EQUALITY caseIgnoreMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.15{64} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.122 NAME 'dlmRoles' DESC 'An array
(bag) of strings that specify the roles this System plays in th
e IT-environment. Subclasses of System may override this proper
ty to define explicit Roles values. Alternately, a Working Group
may describe the heuristics, conventions and guidelines
for specifying Roles. For example, for an instance of a netw
orking system, the Roles property might contain the string, "Swi
tch" or "Bridge".' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121
.1.15 )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.123 NAME 'dlmDedicated' DESC 'Enum
eration indicating whether the ComputerSystem is a special-purp
ose System (ie, dedicated to a particular use), versus being "ge
neral purpose". For example, one could specify that the System i
s dedicated to "Print" (value=11) or acts as a "Hub"
(value=8). Values are 0="Not Dedicated", 1="Unknown", 2="Other"
, 3="Storage", 4="Router", 5="Switch", 6="Layer 3 Switch", 7="Ce
ntral Office Switch", 8="Hub", 9="Access Server", 10="Firewall",
11="Print", 12="I/O", 13="Web Caching", 14="Manageme
nt"' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.136 NAME 'dlmStartMode' DESC 'Star
tMode is a string value indicating whether the Service is automa
tically started by a System, Operating System, etc. or only star
ted upon request. Value Mapping are "Automatic", "Manual"' EQUA
LITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{10} SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.137 NAME 'dlmStarted' DESC 'Starte
d is a boolean indicating whether the Service has been started (
TRUE), or stopped (FALSE).' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALU
E )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.139 NAME 'dlmSettingID' DESC 'The
identifier by which the Setting object is known.' EQUALITY caseI
gnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.159 NAME 'dlmElementSettingElement
Ref' DESC 'The ManagedSystemElement. Values of this attribute po
int to entries of class dlmManagedSystemElement.' EQUALITY disti
nguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.160 NAME 'dlmElementSettingSetting
Ref' DESC 'The Setting object associated with the ManagedSystem
Element. Values of this attribute point to entries of class dlmS
etting.' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.
12 )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.186 NAME 'dlmMemberOfCollectionCol
lectionRef' DESC 'The Collection that aggregates members. Values of
this attribute point to entries of class dlmCollection.' EQUALITY dist
inguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.4.1.412.100.2.2.187 NAME 'dlmMemberOfCollectionMem
berRef' DESC 'The aggregated member of the collection. Values of
this attribute point to entries of class dlmManagedElement.' EQ
UALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.4.1.10126.7.1.3.1.8 NAME 'dlm1FilterListDirection'
DESC 'This defines whether the FilterList is used for input, outp
ut, or both input and output filtering. All values are used with r
espect to the interface for which the FilterList applies.
"Not Applicable" (0) is used when there is no direction applicabl
e to the FilterList. "Input" (1) is used when the FilterList appli
es to packets that are inbound on the related interface.
"Output" (2) is used when the FilterList applies to packe
ts that are outbound on the related interface. "Both" (3)
is used to indicate that the direction is immaterial, e.g., to fi
lter on a source subnet regardless of whether the flow is
inbound or outbound. "Mirrored" (4) is also applicable to
both inbound and outbound flow processing, but indicates that th
e filter criteria are applied asymmetrically to traffic in both di
rections and, thus, specifies the reversal of source and
destination criteria (as opposed to the equality of these criteria
as indicated by "Both"). The match conditions in the aggregated
FilterEntryBase subclass instances are defined from the pe
rspective of outbound flows and applied to inbound flows as well b
y reversing the source and destination criteria. So, for example,
consider a FilterList with 3 FilterEntries indicating des
tination port = 80, and source and destination addresses of a and
b, respectively. Then, for the outbound direction, the filter
entries match as specified and the mirror (for the inbound di
rection) matches on source port = 80 and source and destination ad
dresses of b and a, respectively.), Values are "Not Appli
cable", "Input", "Output", "Both", "Mirrored"' EQUALITY caseIgnore
Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.7.1.3.1.1 NAME 'dlm1FilterEntryBaseIsNeg
ated' DESC 'Boolean indicating that the match condition described
in the properties of the FilterEntryBase subclass should be negate
d.' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.10126.7.1.3.1.2 NAME 'dlmProtocolType' DESC 'P
rotocolType is an enumeration that provides additional information
that can be used to help categorize and classify different instan
ces of this class. Values are "Unknown", "Other", "IPv4", "IPv6",
"IPX", "AppleTalk", "DECnet", "SNA", "CONP", "CLNP", "VINES",
"XNS", "ATM", "Frame Relay", "Ethernet", "TokenRing", "FDDI",
"Infiniband", "Fibre Channel", "ISDN BRI Endpoint", "ISDN B Chann
el Endpoint", "ISDN D Channel Endpoint"' EQUALITY caseIgnoreMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.7.1.3.1.3 NAME 'dlmOtherTypeDescription'
DESC 'A string describing the type of ProtocolEndpoint that this
instance is when the Type property of this class (or any of its s
ubclasses) is set to "Other". The format of the string inserted in
this property should be similar in format to the values defined f
or the Type property. This property should be set to NULL when the
Type property is any value other than "Other".' EQUALITY caseIgno
reMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.7.1.3.1.4 NAME 'dlmIPAddress' DESC 'The
IP address that this ProtocolEndpoint represents, formatted accord
ing to the appropriate convention as defined in the AddressType pr
operty of this class (e.g., 171.79.6.40).' EQUALITY caseIgnoreMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.7.1.3.1.5 NAME 'dlmIPSubnetMask' DESC 'T
he mask for the IP address of this ProtocolEndpoint, formatted acc
ording to the appropriate convention as defined in the AddressType
property of this class (e.g., 255.255.252.0).' EQUALITY caseIgnor
eMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.7.1.3.1.6 NAME 'dlmIPAddressType' DESC '
An enumeration that describes the format of the address property.
Whenever possible, IPv4-compatible addresses should be used instea
d of native IPv6 addresses (see RFC 2373, section 2.5.4). In order
to have a consistent format for IPv4 addresses in a mixed IPv4/v6
environment, all IPv4 addresses and both IPv4-compatible IPv6 add
resses and IPv4-mapped IPv6 addresses, per RFC 2373, section
2.5.4, should be formatted in standard IPv4 format. However, t
his (the 2.2) version of the Network Common Model will not explici
tly support mixed IPv4/IPv6 environments. This will be added in a
future release. Values are "Unknown", "IPv4", "IPv6".' EQUALITY ca
seIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.10126.7.1.3.1.7 NAME 'dlmIPVersionSupport' DES
C 'It is not possible to tell from the address alone if a given IP
ProtocolEndpoint can support IPv4 and IPv6, or just one of these.
This property explicitly defines the support for different version
s of IP that this IPProtocolEndpoint has. More implementa
tion experience is needed in order to correctly model mixed IPv4/I
Pv6 networks; therefore, this version (2.2) of the Network Common
Model will not support mixed IPv4/IPv6 environments. This will be
looked at further in a future version. Values are "Unknow
n", "IPv4 Only", "IPv6 Only".' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.
1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.412.100.4.2.18 NAME 'dlmBiometric' DESC 'Biome
tric information used to identify a person. The property value
is left null or set to "N/A" for non-human user or a user not u
sing biometric information for authentication. Values are 0="N/
A", 1="Other", 2="Facial", 3="Retina", 4="Mark", 5="F
inger", 6="Voice", 7="DNA-RNA", 8="EEG".' EQUALITY integerMatch SYNTAX 1.3.
6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 1.3.6.1.4.1.412.100.4.2.19 NAME 'dlmElementID' DESC 'The E
lementID property uniquely specifies the ManagedElement object i
nstance that is the user represented by the UsersAccess object i
nstance. The ElementID is formatted similarly to a model path
except that the property-value pairs are ordered in al
phabetical order (US ASCII lexical order).' EQUALITY caseIgnoreMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.4.2.41 NAME 'dlmElementAsUserAnteceden
tRef' DESC 'The ManagedElement that has UsersAccess. The value
of this attribute points to an entry of class dlm1ManagedElement
.' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SIN
GLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.4.2.42 NAME 'dlmElementAsUserDependent
Ref' DESC 'The "owned" UsersAccess. Values of this attribute poi
nt to entries of class dlm1UsersAccess.' EQUALITY distinguishedNameMatch SY
NTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.4.1.412.100.4.2.57 NAME 'dlmUsersCredentialAnteced
entRef' DESC 'The issued credential that may be used. Values of
this attribute point to entries of class dlm1Credential.' EQUALI
TY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.4.1.412.100.4.2.58 NAME 'dlmUsersCredentialDepende
ntRef' DESC 'The UsersAccess that has use of a credential. Value
s of this attribute point to entries of class dlm1UsersAccess.'
EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.4.1.412.100.4.2.26 NAME 'dlmRemoteID' DESC 'Remote
ID is the name by which the user is known at the KDC security ser
vice.' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15{256} S
INGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.4.2.28 NAME 'dlmAlgorithm' DESC 'algor
ithm names the transformation algorithm, if any, used to protect
passwords before use in the protocol. For instance, Kerberos doe
sn"t store passwords as the shared secret, but rather, a hash of
the password.' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.4.2.29 NAME 'dlmProtocol' DESC 'protoc
ol names the protocol with which the SharedSecret is used.' EQUAL
ITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.412.100.4.2.30 NAME 'dlmSecret' DESC 'secret i
s the secret known by the Users Access.' EQUALITY caseIgnoreMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.6.2.15 NAME 'pcimRoles' DESC 'RFC 3703: Each val
ue of this attribute represents a role-combination.' EQUALITY caseIgnoreMat
ch ORDERING caseIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.1.6.2.3 NAME 'pcimKeywords' DESC 'RFC 3703: A set
of keywords to assist directory clients in locating the policy objects appl
icable to them.' EQUALITY caseIgnoreMatch ORDERING caseIgnoreOrderingMatch
SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.1.6.2.4 NAME 'pcimGroupName' DESC 'RFC 3703: The u
ser-friendly name of this policy group.' EQUALITY caseIgnoreMatch ORDERING
caseIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1
.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.6.2.5 NAME 'pcimRuleName' DESC 'RFC 3703: The us
er-friendly name of this policy rule.' EQUALITY caseIgnoreMatch ORDERING ca
seIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.6.2.6 NAME 'pcimRuleEnabled' DESC 'RFC 3703: An
integer indicating whether a policy rule is administratively enabled (value
=1), disabled (value=2), or enabled for debug (value=3).' EQUALITY integerM
atch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SIN
GLE-VALUE )
attributeTypes: ( 1.3.6.1.1.6.2.11 NAME 'pcimRuleUsage' DESC 'RFC 3703: This
attribute is a free-form sting providing guidelines on how this policy sho
uld be used.' EQUALITY caseIgnoreMatch ORDERING caseIgnoreOrderingMatch SUB
STR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-V
ALUE )
attributeTypes: ( 1.3.6.1.1.6.2.13 NAME 'pcimRuleMandatory' DESC 'RFC 3703:
If TRUE, indicates that for this policy rule, the evaluation of its conditi
ons and execution of its actions (if the condition is satisfied) is require
d.' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.1.6.2.16 NAME 'pcimConditionGroupNumber' DESC 'RFC
3703: The number of the group to which a policy condition belongs. This i
s used to form the DNF or CNF expression associated with a policy rule.' EQ
UALITY integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.6.2.17 NAME 'pcimConditionNegated' DESC 'RFC 370
3: If TRUE (FALSE), it indicates that a policy condition IS (IS NOT) negate
d in the DNF or CNF expression associated with a policy rule.' EQUALITY boo
leanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.6.2.18 NAME 'pcimConditionName' DESC 'RFC 3703:
A user-friendly name for a policy condition.' EQUALITY caseIgnoreMatch ORDE
RING caseIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.
1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.6.2.19 NAME 'pcimConditionDN' DESC 'RFC 3703: A
DN that references an instance of a reusable policy condition.' EQUALITY di
stinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.6.2.23 NAME 'pcimActionOrder' DESC 'RFC 3703: An
integer indicating the relative order of an action in the context of a pol
icy rule.' EQUALITY integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6
.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.6.2.22 NAME 'pcimActionName' DESC 'RFC 3703: A u
ser-friendly name for a policy action.' EQUALITY caseIgnoreMatch ORDERING c
aseIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.
1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.6.2.24 NAME 'pcimActionDN' DESC 'RFC 3703: A DN
that references a reusable policy action.' EQUALITY distinguishedNameMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.6.2.36 NAME 'pcimRepositoryName' DESC 'RFC 3703:
The user-friendly name of this policy repository.' EQUALITY caseIgnoreMatc
h ORDERING caseIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.1 NAME 'pcelsPolicySetName' DESC 'RFC 4104:
User-friendly name of a policy set' EQUALITY caseIgnoreMatch ORDERING caseI
gnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.2 NAME 'pcelsDecisionStrategy' DESC 'RFC 410
4: Evaluation method for the components of a pcelsPolicySet' EQUALITY integ
erMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.3 NAME 'pcelsPolicySetList' DESC 'RFC 4104:
Unordered set of DNs of pcelsPolicySetAssociation entries' EQUALITY disting
uishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.1.9.2.4 NAME 'pcelsPriority' DESC 'RFC 4104: Prior
ity of a component' EQUALITY integerMatch ORDERING integerOrderingMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.5 NAME 'pcelsPolicySetDN' DESC 'RFC 4104: DN
of a pcelsPolicySet entry' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.
4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.62 NAME 'pcelsRuleValidityPeriodList' DESC '
RFC 4104: Unordered set of DNs of pcimRuleValidityAssociation entries' EQUA
LITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.1.9.2.6 NAME 'pcelsConditionListType' DESC 'RFC 41
04: Indicates the type of condition aggregation' EQUALITY integerMatch ORDE
RING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.1.9.2.7 NAME 'pcelsConditionList' DESC 'RFC 4104:
Unordered set of DNs of pcelsConditionAssociation entries' EQUALITY disting
uishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.1.9.2.8 NAME 'pcelsActionList' DESC 'RFC 4104: Uno
rdered set of DNs of pcelsActionAssociation entries' EQUALITY distinguished
NameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.1.9.2.9 NAME 'pcelsSequencedActions' DESC 'RFC 410
4: Indicates the importance of action sequencing' EQUALITY integerMatch ORD
ERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALU
E )
attributeTypes: ( 1.3.6.1.1.9.2.10 NAME 'pcelsExecutionStrategy' DESC 'RFC 4
104: Indicates the action execution strategy' EQUALITY integerMatch ORDERIN
G integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.11 NAME 'pcelsVariableDN' DESC 'RFC 4104: DN
of a pcelsVariable entry' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4
.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.12 NAME 'pcelsValueDN' DESC 'RFC 4104: DN of
a pcelsValueAuxClass entry' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1
.4.1.1466.115.121.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.13 NAME 'pcelsIsMirrored' DESC 'RFC 4104: In
dicates whether the mirrored traffic matches' EQUALITY booleanMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.14 NAME 'pcelsVariableName' DESC 'RFC 4104:
The user-friendly name of a variable.' EQUALITY caseIgnoreMatch ORDERING ca
seIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.15 NAME 'pcelsExpectedValueList' DESC 'RFC 4
104: Unordered set of DNs of pcelsValueAuxClass entries representing
expected values for a policy variable' EQUALITY distinguishedNameMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.1.9.2.16 NAME 'pcelsVariableModelClass' DESC 'RFC
4104: Identifies a CIM class' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.17 NAME 'pcelsVariableModelProperty' DESC 'R
FC 4104: Identifies the property of a CIM class.' EQUALITY caseIgnoreMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.18 NAME 'pcelsExpectedValueTypes' DESC 'RFC
4104: Identifies subclasses of pcelsValueAuxClass by name' EQUALITY caseIgn
oreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.1.9.2.19 NAME 'pcelsValueName' DESC 'RFC 4104: The
user-friendly name of a value' EQUALITY caseIgnoreMatch ORDERING caseIgnor
eOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115
.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.20 NAME 'pcelsIPv4AddrList' DESC 'RFC 4104:
Unordered set of IPv4 addresses, IPv4 address ranges or hosts' EQUAL
ITY caseIgnoreMatch ORDERING caseIgnoreOrderingMatch SUBSTR caseIgnoreSubst
ringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.1.9.2.21 NAME 'pcelsIPv6AddrList' DESC 'RFC 4104:
Unordered set of IPv6 addresses, IPv6 address ranges or hosts' EQUAL
ITY caseIgnoreMatch ORDERING caseIgnoreOrderingMatch SUBSTR caseIgnoreSubst
ringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.1.9.2.22 NAME 'pcelsMACAddrList' DESC 'RFC 4104: U
nordered set of MAC addresses or MAC address ranges' EQUALITY caseIgnoreMat
ch ORDERING caseIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.1.9.2.23 NAME 'pcelsStringList' DESC 'RFC 4104: Un
ordered set of strings with wildcards' EQUALITY caseIgnoreMatch ORDERING ca
seIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.1.9.2.24 NAME 'pcelsBitStringList' DESC 'RFC 4104:
Unordered set of bit strings or bit string ranges' EQUALITY caseIgnoreMatc
h ORDERING caseIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.1.9.2.25 NAME 'pcelsIntegerList' DESC 'RFC 4104: U
nordered set of integers or integer ranges' EQUALITY caseIgnoreMatch ORDERI
NG caseIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.
4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.1.9.2.26 NAME 'pcelsBoolean' DESC 'RFC 4104: Boole
an value' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-
VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.27 NAME 'pcelsReusableContainerName' DESC 'R
FC 4104: User-friendly name of a reusable policy container' EQUALITY caseIg
noreMatch ORDERING caseIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.28 NAME 'pcelsReusableContainerList' DESC 'R
FC 4104: Unordered set of DNs of pcelsReusableContainer entries' EQUALITY d
istinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.1.9.2.29 NAME 'pcelsRole' DESC 'RFC 4104: String r
epresenting a role.' EQUALITY caseIgnoreMatch ORDERING caseIgnoreOrderingMa
tch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 S
INGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.30 NAME 'pcelsRoleCollectionName' DESC 'RFC
4104: User-friendly name of a role collection' EQUALITY caseIgnoreMatch ORD
ERING caseIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6
.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.31 NAME 'pcelsElementList' DESC 'RFC 4104: U
nordered set of managed elements' EQUALITY distinguishedNameMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.1.9.2.32 NAME 'pcelsFilterName' DESC 'RFC 4104: Us
er-friendly name of a filter entry' EQUALITY caseIgnoreMatch ORDERING caseI
gnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.33 NAME 'pcelsFilterIsNegated' DESC 'RFC 410
4: Indicates whether the filter is negated' EQUALITY booleanMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.34 NAME 'pcelsIPHdrVersion' DESC 'RFC 4104:
IP version' EQUALITY integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.
6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.35 NAME 'pcelsIPHdrSourceAddress' DESC 'RFC
4104: Source IP address' EQUALITY octetStringMatch ORDERING octetStringOrde
ringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.36 NAME 'pcelsIPHdrSourceAddressEndOfRange'
DESC 'RFC 4104: End of a range of source IP addresses' EQUALITY octetString
Match ORDERING octetStringOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.4
0 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.37 NAME 'pcelsIPHdrSourceMask' DESC 'RFC 410
4: Mask to be used in comparing the source IP address' EQUALITY octetString
Match ORDERING octetStringOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.4
0 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.38 NAME 'pcelsIPHdrDestAddress' DESC 'RFC 41
04: Destination IP address' EQUALITY octetStringMatch ORDERING octetStringO
rderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.39 NAME 'pcelsIPHdrDestAddressEndOfRange' DE
SC 'RFC 4104: End of a range of destination IP addresses' EQUALITY octetStr
ingMatch ORDERING octetStringOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.40 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.40 NAME 'pcelsIPHdrDestMask' DESC 'RFC 4104:
Mask to be used in comparing the destination IP address' EQUALITY octetStr
ingMatch ORDERING octetStringOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.
1.40 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.41 NAME 'pcelsIPHdrProtocolID' DESC 'RFC 410
4: IP protocol type' EQUALITY integerMatch ORDERING integerOrderingMatch SY
NTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.42 NAME 'pcelsIPHdrSourcePortStart' DESC 'RF
C 4104: Lower end of a range of UDP or TCP source ports' EQUALITY integerMa
tch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SING
LE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.43 NAME 'pcelsIPHdrSourcePortEnd' DESC 'RFC
4104: Upper end of a range of UDP or TCP source ports' EQUALITY integerMatc
h ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE
-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.44 NAME 'pcelsIPHdrDestPortStart' DESC 'RFC
4104: Lower end of a range of UDP or TCP destination ports' EQUALITY intege
rMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 S
INGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.45 NAME 'pcelsIPHdrDestPortEnd' DESC 'RFC 41
04: Upper end of a range of UDP or TCP destination ports' EQUALITY integerM
atch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SIN
GLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.46 NAME 'pcelsIPHdrDSCPList' DESC 'RFC 4104:
DSCP values' EQUALITY integerMatch ORDERING integerOrderingMatch SYNTAX 1.
3.6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 1.3.6.1.1.9.2.47 NAME 'pcelsIPHdrFlowLabel' DESC 'RFC 4104
: IP flow label' EQUALITY octetStringMatch ORDERING octetStringOrderingMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.48 NAME 'pcels8021HdrSourceMACAddress' DESC
'RFC 4104: Source MAC address' EQUALITY octetStringMatch ORDERING octetStri
ngOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.49 NAME 'pcels8021HdrSourceMACMask' DESC 'RF
C 4104: Source MAC address mask' EQUALITY octetStringMatch ORDERING octetSt
ringOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.50 NAME 'pcels8021HdrDestMACAddress' DESC 'R
FC 4104: Destination MAC address' EQUALITY octetStringMatch ORDERING octetS
tringOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.51 NAME 'pcels8021HdrDestMACMask' DESC 'RFC
4104: Destination MAC address mask' EQUALITY octetStringMatch ORDERING octe
tStringOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.52 NAME 'pcels8021HdrProtocolID' DESC 'RFC 4
104: Ethernet protocol ID' EQUALITY integerMatch ORDERING integerOrderingMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 1.3.6.1.1.9.2.53 NAME 'pcels8021HdrPriority' DESC 'RFC 410
4: 802.1Q priority' EQUALITY integerMatch ORDERING integerOrderingMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 1.3.6.1.1.9.2.54 NAME 'pcels8021HdrVLANID' DESC 'RFC 4104:
802.1Q VLAN ID' EQUALITY integerMatch ORDERING integerOrderingMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 1.3.6.1.1.9.2.55 NAME 'pcelsFilterListName' DESC 'RFC 4104
: User-friendly name of a FilterList' EQUALITY caseIgnoreMatch ORDERING cas
eIgnoreOrderingMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.56 NAME 'pcelsFilterDirection' DESC 'RFC 410
4: Direction to which this filter is applied' EQUALITY integerMatch ORDERIN
G integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.57 NAME 'pcelsFilterEntryList' DESC 'RFC 410
4: Unordered set of DNs of pcelsFilterEntryBase entries' EQUALITY distingui
shedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.1.9.2.58 NAME 'pcelsVendorVariableData' DESC 'RFC
4104: Mechanism for representing variables that have not been specif
ically modeled' EQUALITY octetStringMatch ORDERING octetStringOrderingMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.3.6.1.1.9.2.59 NAME 'pcelsVendorVariableEncoding' DESC '
RFC 4104: Identifies the format and semantics for policy variables' EQUALIT
Y objectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.1.9.2.60 NAME 'pcelsVendorValueData' DESC 'RFC 410
4: Mechanism for representing values that have not been specifically
modeled' EQUALITY octetStringMatch ORDERING octetStringOrderingMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.3.6.1.1.9.2.61 NAME 'pcelsVendorValueEncoding' DESC 'RFC
4104: Identifies the format and semantics for policy values' EQUALITY obje
ctIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.7924.2.1.1.1 NAME 'demailMaxAuthLevel' DESC 'd
escribes the maximum authentification the person is capable of (NORMAL/HIGH
/VERY HIGH)' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.15953.9.1.1 NAME 'sudoUser' DESC 'User(s) who
may run sudo' EQUALITY caseExactIA5Match SUBSTR caseExactIA5SubstringsMatc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.15953.9.1.2 NAME 'sudoHost' DESC 'Host(s) who
may run sudo' EQUALITY caseExactIA5Match SUBSTR caseExactIA5SubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.15953.9.1.3 NAME 'sudoCommand' DESC 'Command(s
) to be executed by sudo' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.146
6.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.15953.9.1.4 NAME 'sudoRunAs' DESC 'User(s) imp
ersonated by sudo' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.26 )
attributeTypes: ( 1.3.6.1.4.1.15953.9.1.5 NAME 'sudoOption' DESC 'Options(s)
followed by sudo' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.26 )
attributeTypes: ( 1.3.6.1.4.1.15953.9.1.6 NAME 'sudoRunAsUser' DESC 'User(s)
impersonated by sudo' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.15953.9.1.7 NAME 'sudoRunAsGroup' DESC 'Group(
s) impersonated by sudo' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466
.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.15953.9.1.8 NAME 'sudoNotBefore' DESC 'Start o
f time interval for which the entry is valid' EQUALITY generalizedTimeMatch
ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24
)
attributeTypes: ( 1.3.6.1.4.1.15953.9.1.9 NAME 'sudoNotAfter' DESC 'End of t
ime interval for which the entry is valid' EQUALITY generalizedTimeMatch OR
DERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 )
attributeTypes: ( 1.3.6.1.4.1.15953.9.1.10 NAME 'sudoOrder' DESC 'an integer
to order the sudoRole entries' EQUALITY integerMatch ORDERING integerOrder
ingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 )
attributeTypes: ( 1.3.6.1.4.1.24552.500.1.1.1.13 NAME 'sshPublicKey' DESC 'M
ANDATORY: OpenSSH Public key' EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.
1466.115.121.1.40 )
attributeTypes: ( 1.3.6.1.4.1.34380.1.1.3.10 NAME 'puppetClass' DESC 'Puppet
Node Class' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.
26 )
attributeTypes: ( 1.3.6.1.4.1.34380.1.1.3.9 NAME 'parentNode' DESC 'Puppet P
arent Node' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.2
6 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.34380.1.1.3.11 NAME 'environment' DESC 'Puppet
Node Environment' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.
121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.34380.1.1.3.12 NAME 'puppetVar' DESC 'A variab
le setting for puppet' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.
115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.29426.2.2.1.1 NAME 'DKIMSelector' DESC 'Select
or name associated with DKIM signing key' EQUALITY caseExactIA5Match SYNTAX
1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.29426.2.2.1.2 NAME 'DKIMKey' DESC 'DKIM signin
g key' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SING
LE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.29426.2.2.1.3 NAME 'DKIMIdentity' DESC 'The Ag
ent or User Identifier (AUID)' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.
1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.29426.2.2.1.4 NAME 'DKIMDomain' DESC 'DKIM sen
der domain' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.19937.1.1.1 NAME 'quota' DESC 'Quotas (FileSys
tem:BlocksSoft,BlocksHard,InodesSoft,InodesHard)' EQUALITY caseIgnoreIA5Mat
ch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{255} )
attributeTypes: ( 1.3.6.1.3.1.1.1.1.2.1 NAME 'tacacsClient' DESC 'Valid clie
nt address range for this user, in CIDR notation' EQUALITY caseExactIA5Matc
h SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{20} )
attributeTypes: ( 1.3.6.1.3.1.1.1.1.2.2 NAME 'tacacsMember' DESC 'Tacacs gro
up membership' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1
.26{40} )
attributeTypes: ( 1.3.6.1.3.1.1.1.1.2.3 NAME 'tacacsProfile' DESC 'Tacacs us
er profile' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26
{1024} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.3.1.1.1.1.2.8 NAME 'tacacsFlag' DESC 'Arbitrary te
xt, may be used by LDAP filters' EQUALITY caseExactIA5Match SYNTAX 1.3.6.1.
4.1.1466.115.121.1.26{40} )
attributeTypes: ( 1.3.6.1.4.1.3.8.1.1.1 NAME 'cmusaslsecretCRAM-MD5' DESC 'P
rehashed password as described in CRAM-MD5' EQUALITY octetStringMatch SYNTA
X 1.3.6.1.4.1.1466.115.121.1.40{32} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.3.8.1.1.2 NAME 'cmusaslsecretDIGEST-MD5' DESC
'Shared secret for DIGEST-MD5' EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1
.1466.115.121.1.40{16} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.3.8.1.1.3 NAME 'cmusaslsecretOTP' DESC 'OTP se
cret' EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.3.6.1.4.1.3.8.1.1.4 NAME 'cmusaslsecretSRP' DESC 'base64
encoded SRP secret' EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.
121.1.40 )
attributeTypes: ( 1.3.6.1.4.1.3.8.1.1.5 NAME 'cmusaslsecretPLAIN' DESC 'PLAI
N secret' EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.40 )
attributeTypes: ( 1.3.6.1.4.1.31103.1.1 NAME 'fedfsUuid' DESC 'A UUID used b
y NSDB' EQUALITY uuidMatch ORDERING uuidOrderingMatch SYNTAX 1.3.6.1.1.16.1
SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.4 NAME 'fedfsFsnUuid' DESC 'The FSN UU
ID component of an FSN' SUP fedfsUuid SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.11 NAME 'fedfsFsnTTL' DESC 'Time to li
ve of an FSN tree' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.
27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.14 NAME 'fedfsNceDN' DESC 'NCE Disting
uished Name' EQUALITY distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.12 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.8 NAME 'fedfsFslUuid' DESC 'UUID of an
FSL' SUP fedfsUuid SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.12 NAME 'fedfsAnnotation' DESC 'Annota
tion of an object' SUP name )
attributeTypes: ( 1.3.6.1.4.1.31103.1.13 NAME 'fedfsDescr' DESC 'Description
of an object' SUP name )
attributeTypes: ( 1.3.6.1.4.1.31103.1.120 NAME 'fedfsNfsURI' DESC 'Location
of fileset' SUP labeledURI SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.103 NAME 'fedfsNfsCurrency' DESC 'up-t
o-date measure of the data' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.104 NAME 'fedfsNfsGenFlagWritable' DES
C 'Indicates if the file system is writable' EQUALITY booleanMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.105 NAME 'fedfsNfsGenFlagGoing' DESC '
Indicates if the file system is going' EQUALITY booleanMatch SYNTAX 1.3.6.1
.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.106 NAME 'fedfsNfsGenFlagSplit' DESC '
Indicates if there are multiple file systems' EQUALITY booleanMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.107 NAME 'fedfsNfsTransFlagRdma' DESC
'Indicates if the transport supports RDMA' EQUALITY booleanMatch SYNTAX 1.3
.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.108 NAME 'fedfsNfsClassSimul' DESC 'Th
e simultaneous-use class of the file system' EQUALITY integerMatch SYNTAX 1
.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.109 NAME 'fedfsNfsClassHandle' DESC 'T
he handle class of the file system' EQUALITY integerMatch SYNTAX 1.3.6.1.4.
1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.110 NAME 'fedfsNfsClassFileid' DESC 'T
he fileid class of the file system' EQUALITY integerMatch SYNTAX 1.3.6.1.4.
1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.111 NAME 'fedfsNfsClassWritever' DESC
'The write-verifier class of the file system' EQUALITY integerMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.112 NAME 'fedfsNfsClassChange' DESC 'T
he change class of the file system' EQUALITY integerMatch SYNTAX 1.3.6.1.4.
1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.113 NAME 'fedfsNfsClassReaddir' DESC '
The readdir class of the file system' EQUALITY integerMatch SYNTAX 1.3.6.1.
4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.114 NAME 'fedfsNfsReadRank' DESC 'The
read rank of the file system' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.115 NAME 'fedfsNfsReadOrder' DESC 'The
read order of the file system' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.116 NAME 'fedfsNfsWriteRank' DESC 'The
write rank of the file system' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.117 NAME 'fedfsNfsWriteOrder' DESC 'Th
e write order of the file system' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.
1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.118 NAME 'fedfsNfsVarSub' DESC 'Indica
tes if variable substitution is present' EQUALITY booleanMatch SYNTAX 1.3.6
.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.31103.1.19 NAME 'fedfsNfsValidFor' DESC 'Valid
for time' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGL
E-VALUE )
attributeTypes: ( 0.0.8.350.1.1.1.1.1 NAME 'commURI' DESC 'Labeled URI forma
t to point to the distinguished name of the commUniqueId' EQUALITY caseExac
tMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 0.0.8.350.1.1.2.1.1 NAME 'commUniqueId' DESC 'To hold the
endpoints unique Id' EQUALITY caseIgnoreIA5Match SUBSTR caseIgnoreIA5Substr
ingsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 0.0.8.350.1.1.2.1.2 NAME 'commOwner' DESC 'Labeled URI to
point back to the original owner' EQUALITY caseExactMatch SYNTAX 1.3.6.1.4.
1.1466.115.121.1.15 )
attributeTypes: ( 0.0.8.350.1.1.2.1.3 NAME 'commPrivate' DESC 'To decide whe
ther the entry is visible to world or not' SYNTAX 1.3.6.1.4.1.1466.115.121.
1.26 )
attributeTypes: ( 0.0.8.350.1.1.6.1.1 NAME 'SIPIdentitySIPURI' DESC 'Univers
al Resource Indicator of the SIP UA' EQUALITY caseExactMatch SUBSTR caseExa
ctSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 0.0.8.350.1.1.6.1.2 NAME 'SIPIdentityRegistrarAddress' DES
C 'specifies the location of the registrar' EQUALITY caseIgnoreIA5Match SYN
TAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 0.0.8.350.1.1.6.1.3 NAME 'SIPIdentityProxyAddress' DESC 'S
pecifies the location of the SIP Proxy' EQUALITY caseIgnoreIA5Match SYNTAX
1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 0.0.8.350.1.1.6.1.4 NAME 'SIPIdentityAddress' DESC 'IP add
ress of the UA' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121
.1.26 )
attributeTypes: ( 0.0.8.350.1.1.6.1.5 NAME 'SIPIdentityPassword' DESC 'The u
ser agent SIP password ' EQUALITY octetStringMatch SYNTAX 1.3.6.1.4.1.1466.
115.121.1.40 )
attributeTypes: ( 0.0.8.350.1.1.6.1.6 NAME 'SIPIdentityUserName' DESC 'The u
ser agent user name.' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsM
atch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 0.0.8.350.1.1.6.1.7 NAME 'SIPIdentityServiceLevel' DESC 'T
o define services that a user can belong to.' EQUALITY caseIgnoreIA5Match S
UBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.1 NAME 'radiusArapFeatures' EQUALI
TY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.2 NAME 'radiusArapSecurity' EQUALI
TY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.3 NAME 'radiusArapZoneAccess' EQUA
LITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.44 NAME 'radiusAuthType' DESC 'con
trolItem: Auth-Type' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.11
5.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.4 NAME 'radiusCallbackId' DESC 're
plyItem: Callback-Id' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.5 NAME 'radiusCallbackNumber' DESC
'replyItem: Callback-Number' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.
1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.6 NAME 'radiusCalledStationId' DES
C 'controlItem: Called-Station-Id' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6
.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.7 NAME 'radiusCallingStationId' DE
SC 'controlItem: Calling-Station-Id' EQUALITY caseIgnoreIA5Match SYNTAX 1.3
.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.8 NAME 'radiusClass' DESC 'replyIt
em: Class' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26
)
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.45 NAME 'radiusClientIPAddress' EQ
UALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.9 NAME 'radiusFilterId' DESC 'repl
yItem: Filter-Id' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.10 NAME 'radiusFramedAppleTalkLink
' DESC 'replyItem: Framed-AppleTalk-Link' EQUALITY caseIgnoreIA5Match SYNTA
X 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.11 NAME 'radiusFramedAppleTalkNetw
ork' DESC 'replyItem: Framed-AppleTalk-Network' EQUALITY caseIgnoreIA5Match
SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.12 NAME 'radiusFramedAppleTalkZone
' DESC 'replyItem: Framed-AppleTalk-Zone' EQUALITY caseIgnoreIA5Match SYNTA
X 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.13 NAME 'radiusFramedCompression'
DESC 'replyItem: Framed-Compression' EQUALITY caseIgnoreIA5Match SYNTAX 1.3
.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.14 NAME 'radiusFramedIPAddress' DE
SC 'replyItem: Framed-IP-Address' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.
1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.15 NAME 'radiusFramedIPNetmask' DE
SC 'replyItem: Framed-IP-Netmask' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.
1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.16 NAME 'radiusFramedIPXNetwork' D
ESC 'replyItem: Framed-IPX-Network' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.
6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.17 NAME 'radiusFramedMTU' DESC 're
plyItem: Framed-MTU' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.11
5.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.18 NAME 'radiusFramedProtocol' DES
C 'replyItem: Framed-Protocol' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4
.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.19 NAME 'radiusFramedRoute' DESC '
replyItem: Framed-Route' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.146
6.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.20 NAME 'radiusFramedRouting' DESC
'replyItem: Framed-Routing' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1
.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.46 NAME 'radiusGroupName' EQUALITY
caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.47 NAME 'radiusHint' EQUALITY case
IgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.48 NAME 'radiusHuntgroupName' EQUA
LITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.21 NAME 'radiusIdleTimeout' DESC '
replyItem: Idle-Timeout' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.146
6.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.22 NAME 'radiusLoginIPHost' DESC '
replyItem: Login-IP-Host' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.14
66.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.23 NAME 'radiusLoginLATGroup' DESC
'replyItem: Login-LAT-Group' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.
1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.24 NAME 'radiusLoginLATNode' DESC
'replyItem: Login-LAT-Node' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.
1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.25 NAME 'radiusLoginLATPort' DESC
'replyItem: Login-LAT-Port' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.
1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.26 NAME 'radiusLoginLATService' DE
SC 'replyItem: Login-LAT-Service' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.
1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.27 NAME 'radiusLoginService' DESC
'replyItem: Login-Service' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1
466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.28 NAME 'radiusLoginTCPPort' DESC
'replyItem: Login-TCP-Port' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.
1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.29 NAME 'radiusPasswordRetry' EQUA
LITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.30 NAME 'radiusPortLimit' DESC 're
plyItem: Port-Limit' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.11
5.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.49 NAME 'radiusProfileDN' EQUALITY
distinguishedNameMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.12 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.31 NAME 'radiusPrompt' EQUALITY ca
seIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.50 NAME 'radiusProxyToRealm' EQUAL
ITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.51 NAME 'radiusReplicateToRealm' D
ESC 'control:Replicate-To-Realm' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1
.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.52 NAME 'radiusRealm' EQUALITY cas
eIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.32 NAME 'radiusServiceType' DESC '
replyItem: Service-Type' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.146
6.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.33 NAME 'radiusSessionTimeout' DES
C 'replyItem: Session-Timeout' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4
.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.34 NAME 'radiusTerminationAction'
DESC 'replyItem: Termination-Action' EQUALITY caseIgnoreIA5Match SYNTAX 1.3
.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.35 NAME 'radiusTunnelAssignmentId'
EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.36 NAME 'radiusTunnelMediumType' E
QUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.37 NAME 'radiusTunnelPassword' EQU
ALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE
)
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.38 NAME 'radiusTunnelPreference' E
QUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.39 NAME 'radiusTunnelPrivateGroupI
d' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.40 NAME 'radiusTunnelServerEndpoin
t' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.41 NAME 'radiusTunnelType' EQUALIT
Y caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.42 NAME 'radiusVSA' EQUALITY caseI
gnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.43 NAME 'radiusTunnelClientEndpoin
t' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.53 NAME 'radiusSimultaneousUse' DE
SC 'controlItem: Simultaneous-Use' SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SIN
GLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.54 NAME 'radiusLoginTime' EQUALITY
caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.55 NAME 'radiusUserCategory' EQUAL
ITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.56 NAME 'radiusStripUserName' SYNT
AX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.57 NAME 'dialupAccess' EQUALITY ca
seIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.58 NAME 'radiusExpiration' DESC 'c
ontrolItem: Expiration' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466
.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.59 NAME 'radiusAttribute' DESC 'co
ntrolItem: $GENERIC$' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.61 NAME 'radiusNASIpAddress' EQUAL
ITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.62 NAME 'radiusReplyMessage' DESC
'replyItem: Reply-Message' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.1
466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.63 NAME 'radiusControlAttribute' D
ESC 'controlItem: $GENERIC$' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1
.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.64 NAME 'radiusReplyAttribute' DES
C 'replyItem: $GENERIC$' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1.146
6.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.4.3.1.65 NAME 'radiusRequestAttribute' D
ESC 'requestItem: $GENERIC$' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.4.1
.1466.115.121.1.26 )
attributeTypes: ( 1.3.6.1.4.1.11344.1.100.2.1 NAME 'radiusClientIdentifier'
DESC 'Client Identifier' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstrin
gsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.1.100.2.2 NAME 'radiusClientSecret' DESC
'Client Secret' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.1.100.2.3 NAME 'radiusClientShortname' D
ESC 'Client Shortname' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstrings
Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.1.100.2.4 NAME 'radiusClientVirtualServe
r' DESC 'VirtualServer' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstring
sMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.1.100.2.5 NAME 'radiusClientType' DESC '
Client Type' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNT
AX 1.3.6.1.4.1.1466.115.121.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.1.100.2.6 NAME 'radiusClientRequireMa' D
ESC 'Require Message Authenticator' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.
1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.11344.1.100.2.7 NAME 'radiusClientComment' DES
C 'Client comment' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121
.1.15 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.2 NAME 'dateOfBirth' DESC 'Date o
f birth (format YYYY-MM-DD, see ISO 8601)' EQUALITY caseExactIA5Match SUBST
R caseExactIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{10} SING
LE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.12 NAME 'birthPlace' DESC 'Place
of birth' SUP l SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.14 NAME 'birthName' DESC 'Last na
me at time of birth, e.g. maiden name' SUP sn SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.7 NAME 'gender' DESC 'Representat
ion of human sex (see ISO 5218)' EQUALITY integerMatch SYNTAX 1.3.6.1.4.1.1
466.115.121.1.27{1} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.9 NAME 'businessTitle' DESC 'Busi
ness title describing the kind of job a person does' SUP title )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.15 NAME 'academicTitle' DESC 'Aca
demic title a person is allowed to use' SUP title )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.10 NAME 'nickName' DESC 'A nick n
ame of a person' SUP name )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.11 NAME 'euVATId' DESC 'value add
ed tax ID of company within EU' EQUALITY caseIgnoreIA5Match SYNTAX 1.3.6.1.
4.1.1466.115.121.1.26{20} )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.13 NAME 'labeledBICandIBAN' DESC
'international bank arrangement consisting of BIC, IBAN and optional label
(format: "BIC:<BIC>,IBAN:<IBAN>#<Label>")' EQUALITY caseIgnoreMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.15{100} )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.17 NAME 'delegatesTo' DESC 'DN of
entity to which tasks are delegated' SUP distinguishedName )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.19 NAME 'germanTaxNr' DESC 'tax I
D of person or company within Germany' SUP uniqueIdentifier EQUALITY caseIg
noreMatch )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.20 NAME 'germanUniqueTaxIDNr' DES
C 'tax ID of person or company within Germany' EQUALITY caseIgnoreMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.15{20} )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.3 NAME 'musicalInstrument' DESC '
Commonly used name of a musical instrument.' SUP name )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.4 NAME 'musicalOrchestra' DESC 'C
ommonly used name of a musical orchestra or band.' SUP name )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.5 NAME 'musicalArtistName' DESC '
Commonly used artist name of this individual.' SUP name )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.661 NAME 'germanBankAccountNumber
' DESC 'The 8-digits number of a german bank account without spaces' SYNTAX
1.3.6.1.4.1.1466.115.121.1.36{10} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.662 NAME 'germanBankCode' DESC 'T
he 8-digits number of a german bank code (BLZ) without spaces' SYNTAX 1.3.6
.1.4.1.1466.115.121.1.36{8} SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.663 NAME 'germanBankName' DESC 'T
he name of a german bank registered in the BLZ table published by Deutsche
Bundesbank.' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.664 NAME 'germanBankAccountInfo'
DESC 'Composed field containing a one-line human-readable representation of
all necessary information.' SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.665 NAME 'germanBankAccountHolder
' DESC 'The name of the holder of a german bank account commonly used as re
cipient name.' SUP name SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.18 NAME 'intlMailAddr' DESC 'Inte
rnationalized Email Address' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubs
tringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.1 NAME 'oathSecret' DESC 'OA
TH-LDAP: Shared Secret (possibly encrypted with public key in oathEncCert)'
EQUALITY octetStringMatch SUBSTR octetStringSubstringsMatch SYNTAX 1.3.6.1
.4.1.1466.115.121.1.40{2000} SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.2 NAME 'oathTokenSerialNumbe
r' DESC 'OATH-LDAP: Proprietary hardware token serial number assigned by ve
ndor' SUP serialNumber SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.3 NAME 'oathTokenIdentifier'
DESC 'OATH-LDAP: Globally unique OATH token identifier' SUP uniqueIdentifi
er SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.4 NAME 'oathParamsEntry' DES
C 'OATH-LDAP: DN pointing to OATH parameter/policy object' SUP distinguishe
dName SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.5 NAME 'oathOTPLength' DESC
'OATH-LDAP: Length of OTP (number of digits)' EQUALITY integerMatch ORDERIN
G integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE X-
ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.6 NAME 'oathHMACAlgorithm' D
ESC 'OATH-LDAP: HMAC algorithm used for generating OTP values' EQUALITY obj
ectIdentifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 SINGLE-VALUE X-ORIG
IN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.7 NAME 'oathTimestamp' DESC
'OATH-LDAP: Timestamp (not directly used).' EQUALITY generalizedTimeMatch O
RDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 S
INGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.7.1 NAME 'oathLastFailure' D
ESC 'OATH-LDAP: Timestamp of last failed OATH validation' SUP oathTimestamp
SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.7.2 NAME 'oathLastLogin' DES
C 'OATH-LDAP: Timestamp of last successful OATH validation' SUP oathTimesta
mp SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.7.3 NAME 'oathSecretTime' DE
SC 'OATH-LDAP: Timestamp of generation of oathSecret attribute.' SUP oathTi
mestamp SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.8 NAME 'oathSecretMaxAge' DE
SC 'OATH-LDAP: Time in seconds for which the shared secret (oathSecret) wil
l be valid from oathSecretTime value.' EQUALITY integerMatch ORDERING integ
erOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE X-ORIGIN
'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.11 NAME 'oathSecretLength' D
ESC 'OATH-LDAP: Length of plain-text shared secret (number of bytes)' EQUAL
ITY integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.
121.1.27 SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.9 NAME 'oathToken' DESC 'OAT
H-LDAP: DN pointing to OATH token object' SUP distinguishedName SINGLE-VALU
E X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.10 NAME 'oathCounter' DESC '
OATH-LDAP: Counter for OATH data (not directly used)' EQUALITY integerMatch
ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-
VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.10.1 NAME 'oathFailureCount'
DESC 'OATH-LDAP: OATH failure counter' SUP oathCounter SINGLE-VALUE X-ORIG
IN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.10.7 NAME 'oathMaxUsageCount
' DESC 'OATH-LDAP: Maximum number of times a token can be used' SUP oathCou
nter SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.10.5 NAME 'oathThrottleLimit
' DESC 'OATH-LDAP: Failure throttle limit' SUP oathCounter SINGLE-VALUE X-O
RIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.12 NAME 'oathEncCert' DESC '
OATH-LDAP: X.509 public key certificate to be used for encrypting new share
d secrets' EQUALITY certificateExactMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1
.8 SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.14 NAME 'oathTokenPIN' DESC
'OATH-LDAP: Configuration PIN (possibly encrypted with oathEncCert)' EQUALI
TY octetStringMatch SUBSTR octetStringSubstringsMatch SYNTAX 1.3.6.1.4.1.14
66.115.121.1.40{2000} SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.13 NAME 'oathResultCode' DES
C 'OATH-LDAP: LDAP resultCode to use in response' EQUALITY integerMatch ORD
ERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALU
E X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.13.1 NAME 'oathSuccessResult
Code' DESC 'OATH-LDAP: success resultCode to use in bind/compare response'
SUP oathResultCode X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.13.2 NAME 'oathFailureResult
Code' DESC 'OATH-LDAP: failure resultCode to use in bind/compare response'
SUP oathResultCode X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.15 NAME 'oathMessage' DESC '
OATH-LDAP: success diagnosticMessage to use in bind/compare response' EQUAL
ITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.146
6.115.121.1.15{1024} SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.15.1 NAME 'oathSuccessMessag
e' DESC 'OATH-LDAP: success diagnosticMessage to use in bind/compare respon
se' SUP oathMessage X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.15.2 NAME 'oathFailureMessag
e' DESC 'OATH-LDAP: failure diagnosticMessage to use in bind/compare respon
se' SUP oathMessage X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.9.1 NAME 'oathHOTPToken' DES
C 'OATH-LDAP: DN pointing to OATH/HOTP token object' SUP oathToken SINGLE-V
ALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.10.2 NAME 'oathHOTPCounter'
DESC 'OATH-LDAP: Counter for HOTP' SUP oathCounter SINGLE-VALUE X-ORIGIN 'O
ATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.10.3 NAME 'oathHOTPLookAhead
' DESC 'OATH-LDAP: Look-ahead window for HOTP' SUP oathCounter SINGLE-VALUE
X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.5.1 NAME 'oathHOTPParams' DE
SC 'OATH-LDAP: DN pointing to HOTP parameter object' SUP oathParamsEntry SI
NGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.5.2 NAME 'oathTOTPParams' DE
SC 'OATH-LDAP: DN pointing to TOTP parameter object' SUP oathParamsEntry SI
NGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.9.2 NAME 'oathTOTPToken' DES
C 'OATH-LDAP: DN pointing to OATH/TOTP token object' SUP oathToken SINGLE-V
ALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.4.1 NAME 'oathTOTPTimeStepPe
riod' DESC 'OATH-LDAP: Time window for TOTP (seconds)' EQUALITY integerMatc
h ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE
-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4226.4.10.6 NAME 'oathTOTPLastTimeS
tep' DESC 'OATH-LDAP: Last time step seen for TOTP (time/period)' SUP oathC
ounter SINGLE-VALUE X-ORIGIN 'OATH-LDAP' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.42.1 DESC 'Test attribute type with
out NAME' SUP name )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.42.2 NAME 'X-experimentalFlag' DESC
'Test attribute type with Boolean syntax' EQUALITY booleanMatch SYNTAX 1.3
.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.42.3 DESC 'Test attribute type with
"double quotes" in DESC' SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.330 NAME 'msPwdResetPasswordHash'
DESC 'Non-salted hash of temporary reset password (hex-bytes)' EQUALITY ca
seIgnoreIA5Match SUBSTR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.146
6.115.121.1.26{256} )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.331 NAME 'msPwdResetTimestamp' DE
SC 'Time at which the temporary password was set.' EQUALITY generalizedTime
Match ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121
.1.24 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.332 NAME 'msPwdResetExpirationTim
e' DESC 'Time until the temporary password will be valid.' EQUALITY general
izedTimeMatch ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466
.115.121.1.24 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.333 NAME 'msPwdResetEnabled' DESC
'Flag which finally enables password reset.' EQUALITY booleanMatch SYNTAX
1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.334 NAME 'msPwdResetAdminPw' DESC
'Clear-text part of temporary password to be read by admin' EQUALITY caseI
gnoreIA5Match SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{256} )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.335 NAME 'msPwdResetMaxAge' DESC
'Time span (secs) after which the temporary password will be invalid.' EQUA
LITY integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115
.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.336 NAME 'msPwdResetHashAlgorithm
' DESC 'Hash algorithm used for the temporary passwords' EQUALITY objectIde
ntifierMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.38 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.337 NAME 'msPwdResetPwLen' DESC '
Length of generated reset password' EQUALITY integerMatch ORDERING integerO
rderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.4.338 NAME 'msPwdResetAdminPwLen' D
ESC 'Length of admin password part of generated reset password (must be les
ser than msPwdResetPwLen)' EQUALITY integerMatch ORDERING integerOrderingMa
tch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.42 NAME 'aeRoot' DESC 'AE-DIR
: DN of aeRoot entry (to be placed in rootDSE)' SUP distinguishedName SINGL
E-VALUE X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.43 NAME 'defaultNamingContext
' DESC 'DN of default search base (to be placed in rootDSE)' SUP distinguis
hedName SINGLE-VALUE )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.1 NAME 'aeOwnerGroup' DESC 'A
E-DIR: DN of owner group entry' SUP owner X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.3 NAME 'aeTicketId' DESC 'AE-
DIR: Tracker ticket related to last change' EQUALITY caseIgnoreIA5Match SUB
STR caseIgnoreIA5SubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.26{20} S
INGLE-VALUE X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.5 NAME 'aeStatus' DESC 'AE-DI
R: Status of an entry (-1, 0, 1, 2)' EQUALITY integerMatch ORDERING integer
OrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE X-ORIGIN 'A
E-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.16 NAME 'aePerson' DESC 'AE-D
IR: DN of referenced person entry' SUP distinguishedName SINGLE-VALUE X-ORI
GIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.20 NAME 'aeVisibleGroups' DES
C 'AE-DIR: DN(s) of group entries usable with a certain server group, serve
r, or service' SUP distinguishedName X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.30 NAME 'aeDisplayNameGroups'
DESC 'AE-DIR: DN(s) of group entries for which member personalnames are di
splayed' SUP distinguishedName X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.21 NAME 'aeVisibleSudoers' DE
SC 'AE-DIR: DN(s) of sudoer entries usable with a certain server group or s
erver' SUP distinguishedName X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.22 NAME 'aeNotBefore' DESC 'A
E-DIR: Begin of time interval for which the entry is valid' EQUALITY genera
lizedTimeMatch ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.146
6.115.121.1.24 SINGLE-VALUE X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.23 NAME 'aeNotAfter' DESC 'AE
-DIR: End of time interval for which the entry is valid' EQUALITY generaliz
edTimeMatch ORDERING generalizedTimeOrderingMatch SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.24 SINGLE-VALUE X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.8 NAME 'aeRemoteHost' DESC 'A
E-DIR: Remote host (client IP or FQDN) used during login' EQUALITY caseIgno
reMatch SUBSTR caseIgnoreSubstringsMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.
15{256} X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.9 NAME 'aeSourceUri' DESC 'AE
-DIR: URI of data source for synced person entry' SUP labeledURI X-ORIGIN '
AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.24 NAME 'aeTag' DESC 'AE-DIR:
cn of referenced aeTag entry' SUP name X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.17 NAME 'aePosixId' DESC 'AE-
DIR: POSIX id value' EQUALITY integerMatch ORDERING integerOrderingMatch SY
NTAX 1.3.6.1.4.1.1466.115.121.1.27 SINGLE-VALUE X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.17.1 NAME 'aeUidNumberMin' DE
SC 'AE-DIR: minimum uidNumber value' SUP aePosixId SINGLE-VALUE X-ORIGIN 'A
E-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.17.2 NAME 'aeUidNumberMax' DE
SC 'AE-DIR: maximum uidNumber value' SUP aePosixId SINGLE-VALUE X-ORIGIN 'A
E-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.17.3 NAME 'aeUidNumberNext' D
ESC 'AE-DIR: next uidNumber value' OBSOLETE SUP aePosixId SINGLE-VALUE X-OR
IGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.17.4 NAME 'aeGidNumberMin' DE
SC 'AE-DIR: minimum gidNumber value' SUP aePosixId SINGLE-VALUE X-ORIGIN 'A
E-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.17.5 NAME 'aeGidNumberMax' DE
SC 'AE-DIR: maximum gidNumber value' SUP aePosixId SINGLE-VALUE X-ORIGIN 'A
E-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.17.6 NAME 'aeGidNumberNext' D
ESC 'AE-DIR: next gidNumber value' OBSOLETE SUP aePosixId SINGLE-VALUE X-OR
IGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.29 NAME 'aeDept' DESC 'AE-DIR
: Associated department of aePerson, aeZone, etc.' SUP distinguishedName X-
ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.31 NAME 'aeZoneAdmins' DESC '
AE-DIR: DN of groups of users entitled zone admin' SUP distinguishedName X-
ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.32 NAME 'aeZoneAuditors' DESC
'AE-DIR: DN of groups of users entitled zone auditor' SUP distinguishedNam
e X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.33 NAME 'aePasswordAdmins' DE
SC 'AE-DIR: DN of groups of users allowed to set personal user account pass
words' SUP distinguishedName X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.4 NAME 'aeLoginGroups' DESC '
AE-DIR: DN of groups of users allowed to do SSH login' SUP distinguishedNam
e X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.6 NAME 'aeSetupGroups' DESC '
AE-DIR: DN of groups of users allowed to deploy machine' SUP distinguishedN
ame X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.7 NAME 'aeLogStoreGroups' DES
C 'AE-DIR: DN of groups of users allowed to deploy machine' SUP distinguish
edName X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.15 NAME 'aeLogStorePeriod' DE
SC 'AE-DIR: Retention period for log files (seconds, -1=unlimited)' EQUALIT
Y integerMatch ORDERING integerOrderingMatch SYNTAX 1.3.6.1.4.1.1466.115.12
1.1.27 SINGLE-VALUE X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.25 NAME 'aeProxyFor' DESC 'AE
-DIR: DN of server groups this server group is proxy for' SUP distinguished
Name X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.26 NAME 'aeSSHProxyCommand' D
ESC 'AE-DIR: SSH proxy command to be used to connect to server within this
server group' EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch SYN
TAX 1.3.6.1.4.1.1466.115.121.1.15{32768} X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.27 NAME 'aeSrvGroup' DESC 'AE
-DIR: DN of server group this server also is member of' SUP distinguishedNa
me X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.28 NAME 'aeHost' DESC 'AE-DIR
: DN of aeHost entry' SUP distinguishedName X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.10 NAME 'aeFqdn' DESC 'AE-DIR
: Arbitrary fully-qualified domain name (IDNA)' SUP associatedDomain SINGLE
-VALUE X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.11 NAME 'aeStockId' DESC 'AE-
DIR: inventory number' SUP uniqueIdentifier SINGLE-VALUE X-ORIGIN 'AE-DIR'
)
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.12 NAME 'aeHwSerialNumber' DE
SC 'AE-DIR: Serial number of manufacturer' SUP serialNumber SINGLE-VALUE X-
ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.13 NAME 'aeDeviceSlot' DESC '
AE-DIR: Slot for adaptor card' SUP name SINGLE-VALUE X-ORIGIN 'AE-DIR' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.14 NAME 'aeDevicePort' DESC '
AE-DIR: Port label for adaptor card' SUP name SINGLE-VALUE X-ORIGIN 'AE-DIR
' )
attributeTypes: ( 1.3.6.1.4.1.5427.1.389.100.4.34 NAME 'aeNwDevice' DESC 'AE
-DIR: (Physical) device(s) for e.g. bridge interfaces' SUP distinguishedNam
e X-ORIGIN 'AE-DIR' )
cn: Subschema
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.24 NAME 'aeTag-dcr' NOT uniq
ueIdentifier )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.26 NAME 'aePolicy-dcr' AUX (
pwdPolicy $ oathHOTPParams $ oathTOTPParams $ msPwdResetPolicy ) )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.22 NAME 'aeRoot-dcr' AUX aeP
osixIdRanges NOT ( businessCategory $ destinationIndicator $ facsimileTelep
honeNumber $ internationaliSDNNumber $ l $ physicalDeliveryOfficeName $ pos
talAddress $ postalCode $ postOfficeBox $ preferredDeliveryMethod $ registe
redAddress $ searchGuide $ seeAlso $ st $ street $ teletexTerminalIdentifie
r $ telexNumber $ userPassword $ x121Address ) )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.29 NAME 'aeDept-dcr' AUX lab
eledURIObject NOT ( businessCategory $ destinationIndicator $ international
iSDNNumber $ postOfficeBox $ preferredDeliveryMethod $ registeredAddress $
searchGuide $ seeAlso $ st $ teletexTerminalIdentifier $ telexNumber $ user
Password $ x121Address ) )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.20 NAME 'aeZone-dcr' AUX aeP
osixIdRanges NOT uniqueIdentifier )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.1 NAME 'aeGroup-dcr' AUX mai
lboxRelatedObject NOT ( businessCategory $ o $ ou $ owner $ seeAlso $ userP
assword ) )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.7 NAME 'aeSudoRule-dcr' NOT
sudoOrder )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.2 NAME 'aeUser-dcr' AUX ( po
sixAccount $ inetLocalMailRecipient $ pkiUser $ ldapPublicKey $ msPwdResetO
bject $ oathHOTPUser $ oathTOTPUser ) NOT ( audio $ businessCategory $ carL
icense $ destinationIndicator $ facsimileTelephoneNumber $ homePhone $ home
PostalAddress $ host $ l $ labeledURI $ manager $ o $ ou $ telephoneNumber
$ initials $ internationaliSDNNumber $ jpegPhoto $ pager $ photo $ physical
DeliveryOfficeName $ postalAddress $ postalCode $ postOfficeBox $ preferred
DeliveryMethod $ preferredLanguage $ registeredAddress $ roomNumber $ secre
tary $ st $ street $ teletexTerminalIdentifier $ telexNumber $ title $ user
PKCS12 $ userSMIMECertificate $ x121Address $ x500UniqueIdentifier $ depart
mentNumber $ employeeNumber $ employeeType $ seeAlso $ mobile ) )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.5 NAME 'aeMailbox-dcr' AUX (
inetLocalMailRecipient $ mailboxRelatedObject ) NOT ( l $ ou $ seeAlso ) )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.6.1 NAME 'aeHost-dcr' AUX (
posixAccount $ ldapPublicKey $ pkiUser $ ipHost ) NOT ( o $ ou $ owner $ se
eAlso ) )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.6.2 NAME 'aeNwDevice-dcr' AU
X ( ipHost $ ieee802Device $ bootableDevice ) NOT ( l $ o $ ou ) )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.8 NAME 'aePerson-dcr' AUX ms
Person NOT ( audio $ carLicense $ destinationIndicator $ homePostalAddress
$ host $ initials $ internationaliSDNNumber $ pager $ photo $ preferredDeli
veryMethod $ registeredAddress $ secretary $ teletexTerminalIdentifier $ te
lexNumber $ uid $ userSMIMECertificate $ x121Address $ x500UniqueIdentifier
$ seeAlso $ userPassword ) )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.4 NAME 'aeService-dcr' AUX (
posixAccount $ inetLocalMailRecipient $ pkiUser $ ldapPublicKey $ oathHOTP
User $ oathTOTPUser ) NOT ( host $ l $ o $ ou ) )
dITContentRules: ( 1.3.6.1.4.1.5427.1.389.100.6.25 NAME 'aeAuthcToken-dcr' A
UX ( oathHOTPToken $ oathTOTPToken $ ldapPublicKey $ pkiUser ) NOT ( l $ o
$ ou $ owner $ seeAlso ) )
dITContentRules: ( 0.9.2342.19200300.100.4.5 NAME 'account-dcr' AUX ( posixA
ccount $ sambaSamAccount $ vPIMUser $ inetLocalMailRecipient $ pkiUser $ sh
adowAccount $ simpleSecurityObject $ pwdPolicy $ ldapPublicKey $ msPwdReset
Object $ dynamicObject $ labeledURIObject $ dynamicObject $ oathHOTPUser $
oathTOTPUser ) )
dITContentRules: ( 2.16.840.1.113730.3.2.2 NAME 'inetOrgPerson-dcr' AUX ( ms
Person $ musician $ germanBankArrangement $ pkiUser $ cmuSaslUser $ posixAc
count $ sambaSamAccount $ vPIMUser $ inetLocalMailRecipient $ shadowAccount
$ simpleSecurityObject $ pwdPolicy $ msPwdResetObject $ eduPerson $ schacP
ersonalCharacteristics $ ldapPublicKey $ schacExperimentalOC $ dynamicObjec
t $ oathHOTPUser $ oathTOTPUser $ DKIM ) NOT x121Address )
dITContentRules: ( 0.9.2342.19200300.100.4.13 NAME 'domain-dcr' AUX ( dcObje
ct $ domainRelatedObject $ labeledURIObject $ DKIM ) )
dITContentRules: ( 2.5.6.4 NAME 'organization-dcr' AUX ( msOrganization $ do
mainRelatedObject $ labeledURIObject $ germanBankArrangement ) )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.4 DESC 'Audio' X-NOT-HUMAN-READAB
LE 'TRUE' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.5 DESC 'Binary' X-NOT-HUMAN-READA
BLE 'TRUE' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.6 DESC 'Bit String' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.7 DESC 'Boolean' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.8 DESC 'Certificate' X-BINARY-TRA
NSFER-REQUIRED 'TRUE' X-NOT-HUMAN-READABLE 'TRUE' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.9 DESC 'Certificate List' X-BINAR
Y-TRANSFER-REQUIRED 'TRUE' X-NOT-HUMAN-READABLE 'TRUE' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.10 DESC 'Certificate Pair' X-BINA
RY-TRANSFER-REQUIRED 'TRUE' X-NOT-HUMAN-READABLE 'TRUE' )
ldapSyntaxes: ( 1.3.6.1.4.1.4203.666.11.10.2.1 DESC 'X.509 AttributeCertific
ate' X-BINARY-TRANSFER-REQUIRED 'TRUE' X-NOT-HUMAN-READABLE 'TRUE' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.12 DESC 'Distinguished Name' )
ldapSyntaxes: ( 1.2.36.79672281.1.5.0 DESC 'RDN' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.14 DESC 'Delivery Method' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.15 DESC 'Directory String' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.22 DESC 'Facsimile Telephone Numb
er' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.24 DESC 'Generalized Time' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.26 DESC 'IA5 String' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.27 DESC 'Integer' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.28 DESC 'JPEG' X-NOT-HUMAN-READAB
LE 'TRUE' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.34 DESC 'Name And Optional UID' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.36 DESC 'Numeric String' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.38 DESC 'OID' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.39 DESC 'Other Mailbox' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.40 DESC 'Octet String' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.41 DESC 'Postal Address' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.44 DESC 'Printable String' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.11 DESC 'Country String' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.45 DESC 'SubtreeSpecification' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.49 DESC 'Supported Algorithm' X-B
INARY-TRANSFER-REQUIRED 'TRUE' X-NOT-HUMAN-READABLE 'TRUE' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.50 DESC 'Telephone Number' )
ldapSyntaxes: ( 1.3.6.1.4.1.1466.115.121.1.52 DESC 'Telex Number' )
ldapSyntaxes: ( 1.3.6.1.1.1.0.0 DESC 'RFC2307 NIS Netgroup Triple' )
ldapSyntaxes: ( 1.3.6.1.1.1.0.1 DESC 'RFC2307 Boot Parameter' )
ldapSyntaxes: ( 1.3.6.1.1.15.1 DESC 'Certificate Exact Assertion' )
ldapSyntaxes: ( 1.3.6.1.1.15.5 DESC 'Certificate List Exact Assertion' )
ldapSyntaxes: ( 1.3.6.1.4.1.4203.666.11.10.2.2 DESC 'AttributeCertificate Ex
act Assertion' )
ldapSyntaxes: ( 1.3.6.1.1.16.1 DESC 'UUID' )
ldapSyntaxes: ( 1.3.6.1.4.1.4203.666.11.2.1 DESC 'CSN' )
ldapSyntaxes: ( 1.3.6.1.4.1.4203.666.11.2.4 DESC 'CSN SID' )
ldapSyntaxes: ( 1.3.6.1.4.1.4203.1.1.1 DESC 'OpenLDAP void' )
ldapSyntaxes: ( 1.3.6.1.4.1.4203.666.2.7 DESC 'OpenLDAP authz' )
ldapSyntaxes: ( 1.3.6.1.4.1.4203.666.2.1 DESC 'OpenLDAP Experimental ACI' )
ldapSyntaxes: ( 1.3.6.1.4.1.4203.666.11.10.2.4 DESC 'X.509 PMI attribute car
tificate path: SEQUENCE OF AttributeCertificate' X-SUBST '1.3.6.1.4.1.1466.
115.121.1.15' )
ldapSyntaxes: ( 1.3.6.1.4.1.4203.666.11.10.2.5 DESC 'X.509 PMI policy syntax
' X-SUBST '1.3.6.1.4.1.1466.115.121.1.15' )
ldapSyntaxes: ( 1.3.6.1.4.1.4203.666.11.10.2.6 DESC 'X.509 PMI role syntax'
X-SUBST '1.3.6.1.4.1.1466.115.121.1.15' )
ldapSyntaxes: ( 1.3.6.1.4.1.4203.666.11.5.3.1 DESC 'Control' )
matchingRuleUse: ( 1.3.6.1.4.1.4203.666.11.2.5 NAME 'CSNSIDMatch' APPLIES (
entryCSN $ namingCSN $ contextCSN ) )
matchingRuleUse: ( 1.3.6.1.4.1.4203.666.11.2.3 NAME 'CSNOrderingMatch' APPLI
ES ( entryCSN $ namingCSN $ contextCSN ) )
matchingRuleUse: ( 1.2.840.113556.1.4.804 NAME 'integerBitOrMatch' APPLIES (
supportedLDAPVersion $ entryTtl $ uidNumber $ gidNumber $ olcConcurrency $
olcConnMaxPending $ olcConnMaxPendingAuth $ olcIdleTimeout $ olcIndexSubst
rIfMinLen $ olcIndexSubstrIfMaxLen $ olcIndexSubstrAnyLen $ olcIndexSubstrA
nyStep $ olcIndexIntLen $ olcListenerThreads $ olcLocalSSF $ olcMaxDerefDep
th $ olcReplicationInterval $ olcSockbufMaxIncoming $ olcSockbufMaxIncoming
Auth $ olcThreads $ olcToolThreads $ olcWriteTimeout $ olcDbMaxReaders $ ol
cDbMaxSize $ olcDbRtxnSize $ olcDbSearchStack $ olcDbCacheFree $ olcDbCache
Size $ olcDbDNcacheSize $ olcDbIDLcacheSize $ olcDbShmKey $ olcDbProtocolVe
rsion $ olcDbConnectionPoolMax $ olcChainMaxReferralDepth $ monitorCounter
$ monitorOpCompleted $ monitorOpInitiated $ monitorConnectionNumber $ monit
orConnectionOpsReceived $ monitorConnectionOpsExecuting $ monitorConnection
OpsPending $ monitorConnectionOpsCompleted $ monitorConnectionGet $ monitor
ConnectionRead $ monitorConnectionWrite $ reqResult $ reqId $ reqVersion $
reqSizeLimit $ reqTimeLimit $ reqEntries $ olcSpSessionlog $ olcSssVlvMax $
olcSssVlvMaxKeys $ olcSssVlvMaxPerConn $ olcDDSmaxDynamicObjects $ olcLast
BindPrecision $ mailPreferenceOption $ shadowLastChange $ shadowMin $ shado
wMax $ shadowWarning $ shadowInactive $ shadowExpire $ shadowFlag $ ipServi
cePort $ ipProtocolNumber $ oncRpcNumber $ pwdMinAge $ pwdMaxAge $ pwdInHis
tory $ pwdCheckQuality $ pwdMinLength $ pwdExpireWarning $ pwdGraceAuthNLim
it $ pwdLockoutDuration $ pwdMaxFailure $ pwdFailureCountInterval $ pwdMaxR
ecordedFailure $ searchTimeLimit $ bindTimeLimit $ profileTTL $ schacGender
$ dNSTTL $ SolarisCacheTTL $ SolarisSearchTimeLimit $ sambaPwdLastSet $ sa
mbaPwdCanChange $ sambaPwdMustChange $ sambaLogonTime $ sambaLogoffTime $ s
ambaKickoffTime $ sambaBadPasswordCount $ sambaBadPasswordTime $ sambaGroup
Type $ sambaNextUserRid $ sambaNextGroupRid $ sambaNextRid $ sambaAlgorithm
icRidBase $ sambaIntegerOption $ sambaMinPwdLength $ sambaPwdHistoryLength
$ sambaLogonToChgPwd $ sambaMaxPwdAge $ sambaMinPwdAge $ sambaLockoutDurati
on $ sambaLockoutObservationWindow $ sambaLockoutThreshold $ sambaForceLogo
ff $ sambaRefuseMachinePwdChange $ sambaTrustType $ sambaTrustAttributes $
sambaTrustDirection $ sambaTrustPosixOffset $ sambaSupportedEncryptionTypes
$ krb5KeyVersionNumber $ krb5MaxLife $ krb5MaxRenew $ krb5KDCFlags $ krb5E
ncryptionType $ krbPrincipalType $ krbTicketFlags $ krbMaxTicketLife $ krbM
axRenewableAge $ krbSearchScope $ krbMaxPwdLife $ krbMinPwdLife $ krbPwdMin
DiffChars $ krbPwdMinLength $ krbPwdHistoryLength $ krbPwdMaxFailure $ krbP
wdFailureCountInterval $ krbPwdLockoutDuration $ krbPwdAttributes $ krbPwdM
axLife $ krbPwdMaxRenewableLife $ krbLoginFailedCount $ dhcpNetMask $ dhcpD
nsStatus $ dhcpDelayedServiceParameter $ dhcpMaxClientLeadTime $ dhcpFailOv
erPrimaryPort $ dhcpFailOverSecondaryPort $ dhcpFailOverResponseDelay $ dhc
pFailOverUnackedUpdates $ dhcpFailOverSplit $ dhcpFailOverLoadBalanceTime $
dlzSerial $ dlzRefresh $ dlzRetry $ dlzExpire $ dlzMinimum $ dlzPreference
$ dlzTTL $ x509CRLNumber $ x509CRLDeltaIndicator $ x509CRLCertReasonCode $
x509version $ x509serialNumber $ x509authorityCertSerialNumber $ x509ACHol
derPKCSerialNumber $ x509ACDigestedObjectType $ vPIMMaxMessageSize $ dlmDed
icated $ dlmBiometric $ pcimRuleEnabled $ pcimConditionGroupNumber $ pcimAc
tionOrder $ pcelsDecisionStrategy $ pcelsPriority $ pcelsConditionListType
$ pcelsSequencedActions $ pcelsExecutionStrategy $ pcelsIPHdrVersion $ pcel
sIPHdrProtocolID $ pcelsIPHdrSourcePortStart $ pcelsIPHdrSourcePortEnd $ pc
elsIPHdrDestPortStart $ pcelsIPHdrDestPortEnd $ pcelsIPHdrDSCPList $ pcels8
021HdrProtocolID $ pcels8021HdrPriority $ pcels8021HdrVLANID $ pcelsFilterD
irection $ sudoOrder $ fedfsFsnTTL $ fedfsNfsCurrency $ fedfsNfsClassSimul
$ fedfsNfsClassHandle $ fedfsNfsClassFileid $ fedfsNfsClassWritever $ fedfs
NfsClassChange $ fedfsNfsClassReaddir $ fedfsNfsReadRank $ fedfsNfsReadOrde
r $ fedfsNfsWriteRank $ fedfsNfsWriteOrder $ fedfsNfsValidFor $ radiusSimul
taneousUse $ gender $ oathOTPLength $ oathSecretMaxAge $ oathSecretLength $
oathCounter $ oathFailureCount $ oathMaxUsageCount $ oathThrottleLimit $ o
athResultCode $ oathSuccessResultCode $ oathFailureResultCode $ oathHOTPCou
nter $ oathHOTPLookAhead $ oathTOTPTimeStepPeriod $ oathTOTPLastTimeStep $
msPwdResetMaxAge $ msPwdResetPwLen $ msPwdResetAdminPwLen $ aeStatus $ aePo
sixId $ aeUidNumberMin $ aeUidNumberMax $ aeUidNumberNext $ aeGidNumberMin
$ aeGidNumberMax $ aeGidNumberNext $ aeLogStorePeriod ) )
matchingRuleUse: ( 1.2.840.113556.1.4.803 NAME 'integerBitAndMatch' APPLIES
( supportedLDAPVersion $ entryTtl $ uidNumber $ gidNumber $ olcConcurrency
$ olcConnMaxPending $ olcConnMaxPendingAuth $ olcIdleTimeout $ olcIndexSubs
trIfMinLen $ olcIndexSubstrIfMaxLen $ olcIndexSubstrAnyLen $ olcIndexSubstr
AnyStep $ olcIndexIntLen $ olcListenerThreads $ olcLocalSSF $ olcMaxDerefDe
pth $ olcReplicationInterval $ olcSockbufMaxIncoming $ olcSockbufMaxIncomin
gAuth $ olcThreads $ olcToolThreads $ olcWriteTimeout $ olcDbMaxReaders $ o
lcDbMaxSize $ olcDbRtxnSize $ olcDbSearchStack $ olcDbCacheFree $ olcDbCach
eSize $ olcDbDNcacheSize $ olcDbIDLcacheSize $ olcDbShmKey $ olcDbProtocolV
ersion $ olcDbConnectionPoolMax $ olcChainMaxReferralDepth $ monitorCounter
$ monitorOpCompleted $ monitorOpInitiated $ monitorConnectionNumber $ moni
torConnectionOpsReceived $ monitorConnectionOpsExecuting $ monitorConnectio
nOpsPending $ monitorConnectionOpsCompleted $ monitorConnectionGet $ monito
rConnectionRead $ monitorConnectionWrite $ reqResult $ reqId $ reqVersion $
reqSizeLimit $ reqTimeLimit $ reqEntries $ olcSpSessionlog $ olcSssVlvMax
$ olcSssVlvMaxKeys $ olcSssVlvMaxPerConn $ olcDDSmaxDynamicObjects $ olcLas
tBindPrecision $ mailPreferenceOption $ shadowLastChange $ shadowMin $ shad
owMax $ shadowWarning $ shadowInactive $ shadowExpire $ shadowFlag $ ipServ
icePort $ ipProtocolNumber $ oncRpcNumber $ pwdMinAge $ pwdMaxAge $ pwdInHi
story $ pwdCheckQuality $ pwdMinLength $ pwdExpireWarning $ pwdGraceAuthNLi
mit $ pwdLockoutDuration $ pwdMaxFailure $ pwdFailureCountInterval $ pwdMax
RecordedFailure $ searchTimeLimit $ bindTimeLimit $ profileTTL $ schacGende
r $ dNSTTL $ SolarisCacheTTL $ SolarisSearchTimeLimit $ sambaPwdLastSet $ s
ambaPwdCanChange $ sambaPwdMustChange $ sambaLogonTime $ sambaLogoffTime $
sambaKickoffTime $ sambaBadPasswordCount $ sambaBadPasswordTime $ sambaGrou
pType $ sambaNextUserRid $ sambaNextGroupRid $ sambaNextRid $ sambaAlgorith
micRidBase $ sambaIntegerOption $ sambaMinPwdLength $ sambaPwdHistoryLength
$ sambaLogonToChgPwd $ sambaMaxPwdAge $ sambaMinPwdAge $ sambaLockoutDurat
ion $ sambaLockoutObservationWindow $ sambaLockoutThreshold $ sambaForceLog
off $ sambaRefuseMachinePwdChange $ sambaTrustType $ sambaTrustAttributes $
sambaTrustDirection $ sambaTrustPosixOffset $ sambaSupportedEncryptionType
s $ krb5KeyVersionNumber $ krb5MaxLife $ krb5MaxRenew $ krb5KDCFlags $ krb5
EncryptionType $ krbPrincipalType $ krbTicketFlags $ krbMaxTicketLife $ krb
MaxRenewableAge $ krbSearchScope $ krbMaxPwdLife $ krbMinPwdLife $ krbPwdMi
nDiffChars $ krbPwdMinLength $ krbPwdHistoryLength $ krbPwdMaxFailure $ krb
PwdFailureCountInterval $ krbPwdLockoutDuration $ krbPwdAttributes $ krbPwd
MaxLife $ krbPwdMaxRenewableLife $ krbLoginFailedCount $ dhcpNetMask $ dhcp
DnsStatus $ dhcpDelayedServiceParameter $ dhcpMaxClientLeadTime $ dhcpFailO
verPrimaryPort $ dhcpFailOverSecondaryPort $ dhcpFailOverResponseDelay $ dh
cpFailOverUnackedUpdates $ dhcpFailOverSplit $ dhcpFailOverLoadBalanceTime
$ dlzSerial $ dlzRefresh $ dlzRetry $ dlzExpire $ dlzMinimum $ dlzPreferenc
e $ dlzTTL $ x509CRLNumber $ x509CRLDeltaIndicator $ x509CRLCertReasonCode
$ x509version $ x509serialNumber $ x509authorityCertSerialNumber $ x509ACHo
lderPKCSerialNumber $ x509ACDigestedObjectType $ vPIMMaxMessageSize $ dlmDe
dicated $ dlmBiometric $ pcimRuleEnabled $ pcimConditionGroupNumber $ pcimA
ctionOrder $ pcelsDecisionStrategy $ pcelsPriority $ pcelsConditionListType
$ pcelsSequencedActions $ pcelsExecutionStrategy $ pcelsIPHdrVersion $ pce
lsIPHdrProtocolID $ pcelsIPHdrSourcePortStart $ pcelsIPHdrSourcePortEnd $ p
celsIPHdrDestPortStart $ pcelsIPHdrDestPortEnd $ pcelsIPHdrDSCPList $ pcels
8021HdrProtocolID $ pcels8021HdrPriority $ pcels8021HdrVLANID $ pcelsFilter
Direction $ sudoOrder $ fedfsFsnTTL $ fedfsNfsCurrency $ fedfsNfsClassSimul
$ fedfsNfsClassHandle $ fedfsNfsClassFileid $ fedfsNfsClassWritever $ fedf
sNfsClassChange $ fedfsNfsClassReaddir $ fedfsNfsReadRank $ fedfsNfsReadOrd
er $ fedfsNfsWriteRank $ fedfsNfsWriteOrder $ fedfsNfsValidFor $ radiusSimu
ltaneousUse $ gender $ oathOTPLength $ oathSecretMaxAge $ oathSecretLength
$ oathCounter $ oathFailureCount $ oathMaxUsageCount $ oathThrottleLimit $
oathResultCode $ oathSuccessResultCode $ oathFailureResultCode $ oathHOTPCo
unter $ oathHOTPLookAhead $ oathTOTPTimeStepPeriod $ oathTOTPLastTimeStep $
msPwdResetMaxAge $ msPwdResetPwLen $ msPwdResetAdminPwLen $ aeStatus $ aeP
osixId $ aeUidNumberMin $ aeUidNumberMax $ aeUidNumberNext $ aeGidNumberMin
$ aeGidNumberMax $ aeGidNumberNext $ aeLogStorePeriod ) )
matchingRuleUse: ( 1.3.6.1.4.1.1466.109.114.2 NAME 'caseIgnoreIA5Match' APPL
IES ( altServer $ olcDbConfig $ c $ mail $ dc $ associatedDomain $ email $
aRecord $ mDRecord $ mXRecord $ nSRecord $ sOARecord $ cNAMERecord $ janetM
ailbox $ mailLocalAddress $ mailHost $ mailRoutingAddress $ rfc822MailMembe
r $ gecos $ homeDirectory $ loginShell $ memberUid $ memberNisNetgroup $ ip
HostNumber $ ipNetworkNumber $ ipNetmaskNumber $ macAddress $ bootFile $ ni
sMapEntry $ javaCodebase $ javaDoc $ corbaIor $ pwdCheckModule $ attributeM
ap $ credentialLevel $ objectclassMap $ defaultSearchScope $ serviceCredent
ialLevel $ eduOrgHomePageURI $ eduOrgIdentityAuthNPolicyURI $ eduOrgSuperio
rURI $ eduOrgWhitePagesURI $ schacUserPrivateAttribute $ dNSClass $ wKSReco
rd $ pTRRecord $ hInfoRecord $ mInfoRecord $ tXTRecord $ rPRecord $ aFSDBRe
cord $ SigRecord $ KeyRecord $ gPosRecord $ aAAARecord $ LocRecord $ nXTRec
ord $ sRVRecord $ nAPTRRecord $ kXRecord $ certRecord $ a6Record $ dNameRec
ord $ aPLRecord $ dSRecord $ sSHFPRecord $ iPSecKeyRecord $ rRSIGRecord $ n
SECRecord $ dNSKeyRecord $ dHCIDRecord $ nSec3ParamRecord $ TLSARecord $ sP
FRecord $ CAARecord $ DLVRecord $ nisPublickey $ nisSecretkey $ mgrpRFC822M
ailMember $ nisNetIdUser $ nisNetIdGroup $ nisNetIdHost $ mozillaSecondEmai
l $ homeurl $ workurl $ custom1 $ custom2 $ custom3 $ custom4 $ sambaLMPass
word $ sambaNTPassword $ sambaAcctFlags $ sambaLogonHours $ sambaHomeDrive
$ sambaPasswordHistory $ sambaSID $ sambaPrimaryGroupSID $ sambaSIDList $ s
ambaStringOption $ sambaTrustFlags $ sambaSecurityIdentifier $ krb5Principa
lName $ krbPrincipalName $ krbCanonicalName $ krbHostServer $ krbPwdAllowed
Keysalts $ krbPrincipalAliases $ krbAllowedToDelegateTo $ esgContactMail $
dhcpStatements $ dhcpRange $ dhcpPermitList $ dhcpOption $ dhcpClassData $
dhcpVersion $ dhcpImplementation $ dhcpAddressState $ dhcpDomainName $ dhcp
RequestedHostName $ dhcpAssignedHostName $ dhcpHWAddress $ dhcpFailOverEndp
ointState $ dhcpErrorLog $ dhcpKeyAlgorithm $ dhcpDnsZoneServer $ dhcpFailO
verPrimaryServer $ dhcpFailOverSecondaryServer $ dhcpComments $ dlzIPAddr $
automountMapName $ automountKey $ automountInformation $ x509CRLDPRfc822Na
me $ x509CRLDPDnsName $ x509CRLDPURI $ x509CRLDPIpAddress $ x509CRLCertIssu
erRfc822Name $ x509CRLCertIssuerDnsName $ x509CRLCertIssuerURI $ x509CRLCer
tIssuerIpAddress $ x509subjectRfc822Name $ x509subjectDnsName $ x509subject
UniformResourceIdentifier $ x509subjectIpAddress $ x509issuerRfc822Name $ x
509issuerDnsName $ x509issuerUniformResourceIdentifier $ x509issuerIpAddres
s $ x509fullCRLDistributionPointURI $ x509ACHolderRfc822Name $ x509ACHolder
DNSName $ x509ACHolderURI $ x509ACHolderIPAddress $ x509ACTargetRfc822Name
$ x509ACTargetDNSName $ x509ACTargetURI $ x509ACTargetIPAddress $ x509ACTar
getGroupRfc822Name $ x509ACTargetGroupDNSName $ x509ACTargetGroupURI $ x509
ACTargetGroupIPAddress $ x509DPRfc822Name $ x509DPDNSName $ x509DPURI $ x50
9DPIPAddress $ x509DPissuerRfc822Name $ x509DPissuerDNSName $ x509DPissuerU
RI $ x509DPissuerIPAddress $ vPIMRfc822Mailbox $ vPIMSupportedAudioMediaTyp
es $ vPIMSupportedMessageContext $ vPIMExtendedAbsenceStatus $ vPIMSupporte
dUABehaviors $ pgpKey $ hordePrefs $ impPrefs $ turbaPrefs $ turbaType $ tu
rbaPGPPublicKey $ kronolithPrefs $ nagPrefs $ gollemPrefs $ choraPrefs $ mn
emoPrefs $ trollPrefs $ klutzPrefs $ jonahPrefs $ hermesPrefs $ junoPrefs $
treanPrefs $ whupsPrefs $ ingoPrefs $ anselPrefs $ geniePrefs $ scryPrefs
$ wickedPrefs $ agoraPrefs $ goopsPrefs $ merkPrefs $ mimpPrefs $ mottlePre
fs $ nicPrefs $ occamPrefs $ odinPrefs $ rakimPrefs $ seshaPrefs $ swooshPr
efs $ thorPrefs $ ulaformPrefs $ volosPrefs $ jetaPrefs $ sudoUser $ sudoHo
st $ sudoCommand $ sudoRunAs $ sudoOption $ sudoRunAsUser $ sudoRunAsGroup
$ puppetClass $ parentNode $ environment $ puppetVar $ DKIMSelector $ DKIMK
ey $ DKIMIdentity $ DKIMDomain $ quota $ tacacsClient $ tacacsMember $ taca
csProfile $ tacacsFlag $ commUniqueId $ commPrivate $ SIPIdentityRegistrarA
ddress $ SIPIdentityProxyAddress $ SIPIdentityAddress $ SIPIdentityServiceL
evel $ radiusArapFeatures $ radiusArapSecurity $ radiusArapZoneAccess $ rad
iusAuthType $ radiusCallbackId $ radiusCallbackNumber $ radiusCalledStation
Id $ radiusCallingStationId $ radiusClass $ radiusClientIPAddress $ radiusF
ilterId $ radiusFramedAppleTalkLink $ radiusFramedAppleTalkNetwork $ radius
FramedAppleTalkZone $ radiusFramedCompression $ radiusFramedIPAddress $ rad
iusFramedIPNetmask $ radiusFramedIPXNetwork $ radiusFramedMTU $ radiusFrame
dProtocol $ radiusFramedRoute $ radiusFramedRouting $ radiusGroupName $ rad
iusHint $ radiusHuntgroupName $ radiusIdleTimeout $ radiusLoginIPHost $ rad
iusLoginLATGroup $ radiusLoginLATNode $ radiusLoginLATPort $ radiusLoginLAT
Service $ radiusLoginService $ radiusLoginTCPPort $ radiusPasswordRetry $ r
adiusPortLimit $ radiusPrompt $ radiusProxyToRealm $ radiusReplicateToRealm
$ radiusRealm $ radiusServiceType $ radiusSessionTimeout $ radiusTerminati
onAction $ radiusTunnelAssignmentId $ radiusTunnelMediumType $ radiusTunnel
Password $ radiusTunnelPreference $ radiusTunnelPrivateGroupId $ radiusTunn
elServerEndpoint $ radiusTunnelType $ radiusVSA $ radiusTunnelClientEndpoin
t $ radiusLoginTime $ radiusUserCategory $ dialupAccess $ radiusExpiration
$ radiusAttribute $ radiusNASIpAddress $ radiusReplyMessage $ radiusControl
Attribute $ radiusReplyAttribute $ radiusRequestAttribute $ dateOfBirth $ e
uVATId $ msPwdResetPasswordHash $ msPwdResetAdminPw $ aeTicketId $ aeFqdn )
)
matchingRuleUse: ( 1.3.6.1.4.1.1466.109.114.1 NAME 'caseExactIA5Match' APPLI
ES ( altServer $ olcDbConfig $ c $ mail $ dc $ associatedDomain $ email $ a
Record $ mDRecord $ mXRecord $ nSRecord $ sOARecord $ cNAMERecord $ janetMa
ilbox $ mailLocalAddress $ mailHost $ mailRoutingAddress $ rfc822MailMember
$ gecos $ homeDirectory $ loginShell $ memberUid $ memberNisNetgroup $ ipH
ostNumber $ ipNetworkNumber $ ipNetmaskNumber $ macAddress $ bootFile $ nis
MapEntry $ javaCodebase $ javaDoc $ corbaIor $ pwdCheckModule $ attributeMa
p $ credentialLevel $ objectclassMap $ defaultSearchScope $ serviceCredenti
alLevel $ eduOrgHomePageURI $ eduOrgIdentityAuthNPolicyURI $ eduOrgSuperior
URI $ eduOrgWhitePagesURI $ schacUserPrivateAttribute $ dNSClass $ wKSRecor
d $ pTRRecord $ hInfoRecord $ mInfoRecord $ tXTRecord $ rPRecord $ aFSDBRec
ord $ SigRecord $ KeyRecord $ gPosRecord $ aAAARecord $ LocRecord $ nXTReco
rd $ sRVRecord $ nAPTRRecord $ kXRecord $ certRecord $ a6Record $ dNameReco
rd $ aPLRecord $ dSRecord $ sSHFPRecord $ iPSecKeyRecord $ rRSIGRecord $ nS
ECRecord $ dNSKeyRecord $ dHCIDRecord $ nSec3ParamRecord $ TLSARecord $ sPF
Record $ CAARecord $ DLVRecord $ nisPublickey $ nisSecretkey $ mgrpRFC822Ma
ilMember $ nisNetIdUser $ nisNetIdGroup $ nisNetIdHost $ mozillaSecondEmail
$ homeurl $ workurl $ custom1 $ custom2 $ custom3 $ custom4 $ sambaLMPassw
ord $ sambaNTPassword $ sambaAcctFlags $ sambaLogonHours $ sambaHomeDrive $
sambaPasswordHistory $ sambaSID $ sambaPrimaryGroupSID $ sambaSIDList $ sa
mbaStringOption $ sambaTrustFlags $ sambaSecurityIdentifier $ krb5Principal
Name $ krbPrincipalName $ krbCanonicalName $ krbHostServer $ krbPwdAllowedK
eysalts $ krbPrincipalAliases $ krbAllowedToDelegateTo $ esgContactMail $ d
hcpStatements $ dhcpRange $ dhcpPermitList $ dhcpOption $ dhcpClassData $ d
hcpVersion $ dhcpImplementation $ dhcpAddressState $ dhcpDomainName $ dhcpR
equestedHostName $ dhcpAssignedHostName $ dhcpHWAddress $ dhcpFailOverEndpo
intState $ dhcpErrorLog $ dhcpKeyAlgorithm $ dhcpDnsZoneServer $ dhcpFailOv
erPrimaryServer $ dhcpFailOverSecondaryServer $ dhcpComments $ dlzIPAddr $
automountMapName $ automountKey $ automountInformation $ x509CRLDPRfc822Nam
e $ x509CRLDPDnsName $ x509CRLDPURI $ x509CRLDPIpAddress $ x509CRLCertIssue
rRfc822Name $ x509CRLCertIssuerDnsName $ x509CRLCertIssuerURI $ x509CRLCert
IssuerIpAddress $ x509subjectRfc822Name $ x509subjectDnsName $ x509subjectU
niformResourceIdentifier $ x509subjectIpAddress $ x509issuerRfc822Name $ x5
09issuerDnsName $ x509issuerUniformResourceIdentifier $ x509issuerIpAddress
$ x509fullCRLDistributionPointURI $ x509ACHolderRfc822Name $ x509ACHolderD
NSName $ x509ACHolderURI $ x509ACHolderIPAddress $ x509ACTargetRfc822Name $
x509ACTargetDNSName $ x509ACTargetURI $ x509ACTargetIPAddress $ x509ACTarg
etGroupRfc822Name $ x509ACTargetGroupDNSName $ x509ACTargetGroupURI $ x509A
CTargetGroupIPAddress $ x509DPRfc822Name $ x509DPDNSName $ x509DPURI $ x509
DPIPAddress $ x509DPissuerRfc822Name $ x509DPissuerDNSName $ x509DPissuerUR
I $ x509DPissuerIPAddress $ vPIMRfc822Mailbox $ vPIMSupportedAudioMediaType
s $ vPIMSupportedMessageContext $ vPIMExtendedAbsenceStatus $ vPIMSupported
UABehaviors $ pgpKey $ hordePrefs $ impPrefs $ turbaPrefs $ turbaType $ tur
baPGPPublicKey $ kronolithPrefs $ nagPrefs $ gollemPrefs $ choraPrefs $ mne
moPrefs $ trollPrefs $ klutzPrefs $ jonahPrefs $ hermesPrefs $ junoPrefs $
treanPrefs $ whupsPrefs $ ingoPrefs $ anselPrefs $ geniePrefs $ scryPrefs $
wickedPrefs $ agoraPrefs $ goopsPrefs $ merkPrefs $ mimpPrefs $ mottlePref
s $ nicPrefs $ occamPrefs $ odinPrefs $ rakimPrefs $ seshaPrefs $ swooshPre
fs $ thorPrefs $ ulaformPrefs $ volosPrefs $ jetaPrefs $ sudoUser $ sudoHos
t $ sudoCommand $ sudoRunAs $ sudoOption $ sudoRunAsUser $ sudoRunAsGroup $
puppetClass $ parentNode $ environment $ puppetVar $ DKIMSelector $ DKIMKe
y $ DKIMIdentity $ DKIMDomain $ quota $ tacacsClient $ tacacsMember $ tacac
sProfile $ tacacsFlag $ commUniqueId $ commPrivate $ SIPIdentityRegistrarAd
dress $ SIPIdentityProxyAddress $ SIPIdentityAddress $ SIPIdentityServiceLe
vel $ radiusArapFeatures $ radiusArapSecurity $ radiusArapZoneAccess $ radi
usAuthType $ radiusCallbackId $ radiusCallbackNumber $ radiusCalledStationI
d $ radiusCallingStationId $ radiusClass $ radiusClientIPAddress $ radiusFi
lterId $ radiusFramedAppleTalkLink $ radiusFramedAppleTalkNetwork $ radiusF
ramedAppleTalkZone $ radiusFramedCompression $ radiusFramedIPAddress $ radi
usFramedIPNetmask $ radiusFramedIPXNetwork $ radiusFramedMTU $ radiusFramed
Protocol $ radiusFramedRoute $ radiusFramedRouting $ radiusGroupName $ radi
usHint $ radiusHuntgroupName $ radiusIdleTimeout $ radiusLoginIPHost $ radi
usLoginLATGroup $ radiusLoginLATNode $ radiusLoginLATPort $ radiusLoginLATS
ervice $ radiusLoginService $ radiusLoginTCPPort $ radiusPasswordRetry $ ra
diusPortLimit $ radiusPrompt $ radiusProxyToRealm $ radiusReplicateToRealm
$ radiusRealm $ radiusServiceType $ radiusSessionTimeout $ radiusTerminatio
nAction $ radiusTunnelAssignmentId $ radiusTunnelMediumType $ radiusTunnelP
assword $ radiusTunnelPreference $ radiusTunnelPrivateGroupId $ radiusTunne
lServerEndpoint $ radiusTunnelType $ radiusVSA $ radiusTunnelClientEndpoint
$ radiusLoginTime $ radiusUserCategory $ dialupAccess $ radiusExpiration $
radiusAttribute $ radiusNASIpAddress $ radiusReplyMessage $ radiusControlA
ttribute $ radiusReplyAttribute $ radiusRequestAttribute $ dateOfBirth $ eu
VATId $ msPwdResetPasswordHash $ msPwdResetAdminPw $ aeTicketId $ aeFqdn )
)
matchingRuleUse: ( 2.5.13.45 NAME 'attributeCertificateExactMatch' APPLIES (
attributeCertificateAttribute $ aACertificate $ attributeDescriptorCertifi
cate $ protPrivPolicy ) )
matchingRuleUse: ( 2.5.13.38 NAME 'certificateListExactMatch' APPLIES ( auth
orityRevocationList $ certificateRevocationList $ deltaRevocationList $ att
ributeCertificateRevocationList $ attributeAuthorityRevocationList ) )
matchingRuleUse: ( 2.5.13.34 NAME 'certificateExactMatch' APPLIES ( userCert
ificate $ cACertificate $ x509userCert $ x509caCert $ oathEncCert ) )
matchingRuleUse: ( 2.5.13.30 NAME 'objectIdentifierFirstComponentMatch' APPL
IES ( collectiveExclusions $ supportedControl $ supportedExtension $ suppor
tedFeatures $ administrativeRole $ nameForms $ ldapSyntaxes $ reqControls $
reqRespControls $ supportedApplicationContext $ x509CRLDPRegisteredID $ x5
09CRLCertIssuerRegisteredID $ x509CRLCertHoldInstructionCode $ x509signatur
eAlgorithm $ x509subjectPublicKeyInfoAlgorithm $ x509policyInformationIdent
ifier $ x509subjectRegisteredID $ x509issuerRegisteredID $ x509extKeyUsage
$ x509ACHolderRegisteredID $ x509ACDigestAlgorithm $ x509ACTargetRegistered
ID $ x509ACTargetGroupRegisteredID $ x509DPRegisteredID $ x509DPissuerRegis
teredID $ pcelsVendorVariableEncoding $ pcelsVendorValueEncoding $ oathHMAC
Algorithm $ msPwdResetHashAlgorithm ) )
matchingRuleUse: ( 2.5.13.29 NAME 'integerFirstComponentMatch' APPLIES ( sup
portedLDAPVersion $ dITStructureRules $ entryTtl $ uidNumber $ gidNumber $
olcConcurrency $ olcConnMaxPending $ olcConnMaxPendingAuth $ olcIdleTimeout
$ olcIndexSubstrIfMinLen $ olcIndexSubstrIfMaxLen $ olcIndexSubstrAnyLen $
olcIndexSubstrAnyStep $ olcIndexIntLen $ olcListenerThreads $ olcLocalSSF
$ olcMaxDerefDepth $ olcReplicationInterval $ olcSockbufMaxIncoming $ olcSo
ckbufMaxIncomingAuth $ olcThreads $ olcToolThreads $ olcWriteTimeout $ olcD
bMaxReaders $ olcDbMaxSize $ olcDbRtxnSize $ olcDbSearchStack $ olcDbCacheF
ree $ olcDbCacheSize $ olcDbDNcacheSize $ olcDbIDLcacheSize $ olcDbShmKey $
olcDbProtocolVersion $ olcDbConnectionPoolMax $ olcChainMaxReferralDepth $
monitorCounter $ monitorOpCompleted $ monitorOpInitiated $ monitorConnecti
onNumber $ monitorConnectionOpsReceived $ monitorConnectionOpsExecuting $ m
onitorConnectionOpsPending $ monitorConnectionOpsCompleted $ monitorConnect
ionGet $ monitorConnectionRead $ monitorConnectionWrite $ reqResult $ reqId
$ reqVersion $ reqSizeLimit $ reqTimeLimit $ reqEntries $ olcSpSessionlog
$ olcSssVlvMax $ olcSssVlvMaxKeys $ olcSssVlvMaxPerConn $ olcDDSmaxDynamicO
bjects $ olcLastBindPrecision $ mailPreferenceOption $ shadowLastChange $ s
hadowMin $ shadowMax $ shadowWarning $ shadowInactive $ shadowExpire $ shad
owFlag $ ipServicePort $ ipProtocolNumber $ oncRpcNumber $ pwdMinAge $ pwdM
axAge $ pwdInHistory $ pwdCheckQuality $ pwdMinLength $ pwdExpireWarning $
pwdGraceAuthNLimit $ pwdLockoutDuration $ pwdMaxFailure $ pwdFailureCountIn
terval $ pwdMaxRecordedFailure $ searchTimeLimit $ bindTimeLimit $ profileT
TL $ schacGender $ dNSTTL $ SolarisCacheTTL $ SolarisSearchTimeLimit $ samb
aPwdLastSet $ sambaPwdCanChange $ sambaPwdMustChange $ sambaLogonTime $ sam
baLogoffTime $ sambaKickoffTime $ sambaBadPasswordCount $ sambaBadPasswordT
ime $ sambaGroupType $ sambaNextUserRid $ sambaNextGroupRid $ sambaNextRid
$ sambaAlgorithmicRidBase $ sambaIntegerOption $ sambaMinPwdLength $ sambaP
wdHistoryLength $ sambaLogonToChgPwd $ sambaMaxPwdAge $ sambaMinPwdAge $ sa
mbaLockoutDuration $ sambaLockoutObservationWindow $ sambaLockoutThreshold
$ sambaForceLogoff $ sambaRefuseMachinePwdChange $ sambaTrustType $ sambaTr
ustAttributes $ sambaTrustDirection $ sambaTrustPosixOffset $ sambaSupporte
dEncryptionTypes $ krb5KeyVersionNumber $ krb5MaxLife $ krb5MaxRenew $ krb5
KDCFlags $ krb5EncryptionType $ krbPrincipalType $ krbTicketFlags $ krbMaxT
icketLife $ krbMaxRenewableAge $ krbSearchScope $ krbMaxPwdLife $ krbMinPwd
Life $ krbPwdMinDiffChars $ krbPwdMinLength $ krbPwdHistoryLength $ krbPwdM
axFailure $ krbPwdFailureCountInterval $ krbPwdLockoutDuration $ krbPwdAttr
ibutes $ krbPwdMaxLife $ krbPwdMaxRenewableLife $ krbLoginFailedCount $ dhc
pNetMask $ dhcpDnsStatus $ dhcpDelayedServiceParameter $ dhcpMaxClientLeadT
ime $ dhcpFailOverPrimaryPort $ dhcpFailOverSecondaryPort $ dhcpFailOverRes
ponseDelay $ dhcpFailOverUnackedUpdates $ dhcpFailOverSplit $ dhcpFailOverL
oadBalanceTime $ dlzSerial $ dlzRefresh $ dlzRetry $ dlzExpire $ dlzMinimum
$ dlzPreference $ dlzTTL $ x509CRLNumber $ x509CRLDeltaIndicator $ x509CRL
CertReasonCode $ x509version $ x509serialNumber $ x509authorityCertSerialNu
mber $ x509ACHolderPKCSerialNumber $ x509ACDigestedObjectType $ vPIMMaxMess
ageSize $ dlmDedicated $ dlmBiometric $ pcimRuleEnabled $ pcimConditionGrou
pNumber $ pcimActionOrder $ pcelsDecisionStrategy $ pcelsPriority $ pcelsCo
nditionListType $ pcelsSequencedActions $ pcelsExecutionStrategy $ pcelsIPH
drVersion $ pcelsIPHdrProtocolID $ pcelsIPHdrSourcePortStart $ pcelsIPHdrSo
urcePortEnd $ pcelsIPHdrDestPortStart $ pcelsIPHdrDestPortEnd $ pcelsIPHdrD
SCPList $ pcels8021HdrProtocolID $ pcels8021HdrPriority $ pcels8021HdrVLANI
D $ pcelsFilterDirection $ sudoOrder $ fedfsFsnTTL $ fedfsNfsCurrency $ fed
fsNfsClassSimul $ fedfsNfsClassHandle $ fedfsNfsClassFileid $ fedfsNfsClass
Writever $ fedfsNfsClassChange $ fedfsNfsClassReaddir $ fedfsNfsReadRank $
fedfsNfsReadOrder $ fedfsNfsWriteRank $ fedfsNfsWriteOrder $ fedfsNfsValidF
or $ radiusSimultaneousUse $ gender $ oathOTPLength $ oathSecretMaxAge $ oa
thSecretLength $ oathCounter $ oathFailureCount $ oathMaxUsageCount $ oathT
hrottleLimit $ oathResultCode $ oathSuccessResultCode $ oathFailureResultCo
de $ oathHOTPCounter $ oathHOTPLookAhead $ oathTOTPTimeStepPeriod $ oathTOT
PLastTimeStep $ msPwdResetMaxAge $ msPwdResetPwLen $ msPwdResetAdminPwLen $
aeStatus $ aePosixId $ aeUidNumberMin $ aeUidNumberMax $ aeUidNumberNext $
aeGidNumberMin $ aeGidNumberMax $ aeGidNumberNext $ aeLogStorePeriod ) )
matchingRuleUse: ( 2.5.13.28 NAME 'generalizedTimeOrderingMatch' APPLIES ( c
reateTimestamp $ modifyTimestamp $ monitorTimestamp $ monitorConnectionStar
tTime $ monitorConnectionActivityTime $ reqStart $ reqEnd $ pwdChangedTime
$ pwdAccountLockedTime $ pwdFailureTime $ pwdGraceUseTime $ entryExpireTime
stamp $ authTimestamp $ schacExpiryDate $ krb5ValidStart $ krb5ValidEnd $ k
rb5PasswordEnd $ krbPrincipalExpiration $ krbPasswordExpiration $ krbLastPw
dChange $ krbLastAdminUnlock $ krbLastSuccessfulAuth $ krbLastFailedAuth $
esgFirstShown $ esgFinalEnd $ dhcpExpirationTime $ dhcpStartTimeOfState $ d
hcpLastTransactionTime $ x509CRLThisUpdate $ x509CRLNextUpdate $ x509CRLCer
tRevocationDate $ x509CRLCertInvalidityDate $ x509validityNotBefore $ x509v
alidityNotAfter $ dlmInstallDate $ sudoNotBefore $ sudoNotAfter $ oathTimes
tamp $ oathLastFailure $ oathLastLogin $ oathSecretTime $ msPwdResetTimesta
mp $ msPwdResetExpirationTime $ aeNotBefore $ aeNotAfter ) )
matchingRuleUse: ( 2.5.13.27 NAME 'generalizedTimeMatch' APPLIES ( createTim
estamp $ modifyTimestamp $ monitorTimestamp $ monitorConnectionStartTime $
monitorConnectionActivityTime $ reqStart $ reqEnd $ pwdChangedTime $ pwdAcc
ountLockedTime $ pwdFailureTime $ pwdGraceUseTime $ entryExpireTimestamp $
authTimestamp $ schacExpiryDate $ krb5ValidStart $ krb5ValidEnd $ krb5Passw
ordEnd $ krbPrincipalExpiration $ krbPasswordExpiration $ krbLastPwdChange
$ krbLastAdminUnlock $ krbLastSuccessfulAuth $ krbLastFailedAuth $ esgFirst
Shown $ esgFinalEnd $ dhcpExpirationTime $ dhcpStartTimeOfState $ dhcpLastT
ransactionTime $ x509CRLThisUpdate $ x509CRLNextUpdate $ x509CRLCertRevocat
ionDate $ x509CRLCertInvalidityDate $ x509validityNotBefore $ x509validityN
otAfter $ dlmInstallDate $ sudoNotBefore $ sudoNotAfter $ oathTimestamp $ o
athLastFailure $ oathLastLogin $ oathSecretTime $ msPwdResetTimestamp $ msP
wdResetExpirationTime $ aeNotBefore $ aeNotAfter ) )
matchingRuleUse: ( 2.5.13.24 NAME 'protocolInformationMatch' APPLIES protoco
lInformation )
matchingRuleUse: ( 2.5.13.23 NAME 'uniqueMemberMatch' APPLIES uniqueMember )
matchingRuleUse: ( 2.5.13.22 NAME 'presentationAddressMatch' APPLIES present
ationAddress )
matchingRuleUse: ( 2.5.13.20 NAME 'telephoneNumberMatch' APPLIES ( telephone
Number $ homePhone $ mobile $ pager $ c-TelephoneNumber $ nsAIMid $ esgCont
actPhone ) )
matchingRuleUse: ( 2.5.13.18 NAME 'octetStringOrderingMatch' APPLIES ( syncr
eplCookie $ userPassword $ olcDbCryptKey $ reqMod $ reqOld $ reqData $ pwdH
istory $ javaSerializedData $ entrustPolicyCertificate $ entrustRoamFileEnc
Info $ entrustRoamingCAPAB $ entrustRoamingEOP $ entrustRoamingPAB $ entrus
tRoamingPRV $ entrustRoamingProfile $ entrustRoamingRecipList $ entrustRoam
ingSLA $ entrustAttributeCertificate $ sambaClearTextPassword $ sambaPrevio
usClearTextPassword $ krb5RealmName $ krbPrincipalKey $ krbPwdHistory $ krb
MKey $ krbExtraData $ dhcpRelayAgentInfo $ dhcpHashBucketAssignment $ dhcpK
eySecret $ x509authorityKeyIdentifier $ x509subjectKeyIdentifier $ x509ACAu
ditID $ vPIMSpokenName $ pgpReconData $ pgpData $ pcelsIPHdrSourceAddress $
pcelsIPHdrSourceAddressEndOfRange $ pcelsIPHdrSourceMask $ pcelsIPHdrDestA
ddress $ pcelsIPHdrDestAddressEndOfRange $ pcelsIPHdrDestMask $ pcelsIPHdrF
lowLabel $ pcels8021HdrSourceMACAddress $ pcels8021HdrSourceMACMask $ pcels
8021HdrDestMACAddress $ pcels8021HdrDestMACMask $ pcelsVendorVariableData $
pcelsVendorValueData $ sshPublicKey $ cmusaslsecretCRAM-MD5 $ cmusaslsecre
tDIGEST-MD5 $ cmusaslsecretOTP $ cmusaslsecretSRP $ cmusaslsecretPLAIN $ SI
PIdentityPassword $ oathSecret $ oathTokenPIN ) )
matchingRuleUse: ( 2.5.13.17 NAME 'octetStringMatch' APPLIES ( syncreplCooki
e $ userPassword $ olcDbCryptKey $ reqMod $ reqOld $ reqData $ pwdHistory $
javaSerializedData $ entrustPolicyCertificate $ entrustRoamFileEncInfo $ e
ntrustRoamingCAPAB $ entrustRoamingEOP $ entrustRoamingPAB $ entrustRoaming
PRV $ entrustRoamingProfile $ entrustRoamingRecipList $ entrustRoamingSLA $
entrustAttributeCertificate $ sambaClearTextPassword $ sambaPreviousClearT
extPassword $ krb5RealmName $ krbPrincipalKey $ krbPwdHistory $ krbMKey $ k
rbExtraData $ dhcpRelayAgentInfo $ dhcpHashBucketAssignment $ dhcpKeySecret
$ x509authorityKeyIdentifier $ x509subjectKeyIdentifier $ x509ACAuditID $
vPIMSpokenName $ pgpReconData $ pgpData $ pcelsIPHdrSourceAddress $ pcelsIP
HdrSourceAddressEndOfRange $ pcelsIPHdrSourceMask $ pcelsIPHdrDestAddress $
pcelsIPHdrDestAddressEndOfRange $ pcelsIPHdrDestMask $ pcelsIPHdrFlowLabel
$ pcels8021HdrSourceMACAddress $ pcels8021HdrSourceMACMask $ pcels8021HdrD
estMACAddress $ pcels8021HdrDestMACMask $ pcelsVendorVariableData $ pcelsVe
ndorValueData $ sshPublicKey $ cmusaslsecretCRAM-MD5 $ cmusaslsecretDIGEST-
MD5 $ cmusaslsecretOTP $ cmusaslsecretSRP $ cmusaslsecretPLAIN $ SIPIdentit
yPassword $ oathSecret $ oathTokenPIN ) )
matchingRuleUse: ( 2.5.13.16 NAME 'bitStringMatch' APPLIES ( x500UniqueIdent
ifier $ x509CRLDPOnlySomeReasons $ x509ACObjectDigest $ x509DPReasonCodes )
)
matchingRuleUse: ( 2.5.13.15 NAME 'integerOrderingMatch' APPLIES ( supported
LDAPVersion $ entryTtl $ uidNumber $ gidNumber $ olcConcurrency $ olcConnMa
xPending $ olcConnMaxPendingAuth $ olcIdleTimeout $ olcIndexSubstrIfMinLen
$ olcIndexSubstrIfMaxLen $ olcIndexSubstrAnyLen $ olcIndexSubstrAnyStep $ o
lcIndexIntLen $ olcListenerThreads $ olcLocalSSF $ olcMaxDerefDepth $ olcRe
plicationInterval $ olcSockbufMaxIncoming $ olcSockbufMaxIncomingAuth $ olc
Threads $ olcToolThreads $ olcWriteTimeout $ olcDbMaxReaders $ olcDbMaxSize
$ olcDbRtxnSize $ olcDbSearchStack $ olcDbCacheFree $ olcDbCacheSize $ olc
DbDNcacheSize $ olcDbIDLcacheSize $ olcDbShmKey $ olcDbProtocolVersion $ ol
cDbConnectionPoolMax $ olcChainMaxReferralDepth $ monitorCounter $ monitorO
pCompleted $ monitorOpInitiated $ monitorConnectionNumber $ monitorConnecti
onOpsReceived $ monitorConnectionOpsExecuting $ monitorConnectionOpsPending
$ monitorConnectionOpsCompleted $ monitorConnectionGet $ monitorConnection
Read $ monitorConnectionWrite $ reqResult $ reqId $ reqVersion $ reqSizeLim
it $ reqTimeLimit $ reqEntries $ olcSpSessionlog $ olcSssVlvMax $ olcSssVlv
MaxKeys $ olcSssVlvMaxPerConn $ olcDDSmaxDynamicObjects $ olcLastBindPrecis
ion $ mailPreferenceOption $ shadowLastChange $ shadowMin $ shadowMax $ sha
dowWarning $ shadowInactive $ shadowExpire $ shadowFlag $ ipServicePort $ i
pProtocolNumber $ oncRpcNumber $ pwdMinAge $ pwdMaxAge $ pwdInHistory $ pwd
CheckQuality $ pwdMinLength $ pwdExpireWarning $ pwdGraceAuthNLimit $ pwdLo
ckoutDuration $ pwdMaxFailure $ pwdFailureCountInterval $ pwdMaxRecordedFai
lure $ searchTimeLimit $ bindTimeLimit $ profileTTL $ schacGender $ dNSTTL
$ SolarisCacheTTL $ SolarisSearchTimeLimit $ sambaPwdLastSet $ sambaPwdCanC
hange $ sambaPwdMustChange $ sambaLogonTime $ sambaLogoffTime $ sambaKickof
fTime $ sambaBadPasswordCount $ sambaBadPasswordTime $ sambaGroupType $ sam
baNextUserRid $ sambaNextGroupRid $ sambaNextRid $ sambaAlgorithmicRidBase
$ sambaIntegerOption $ sambaMinPwdLength $ sambaPwdHistoryLength $ sambaLog
onToChgPwd $ sambaMaxPwdAge $ sambaMinPwdAge $ sambaLockoutDuration $ samba
LockoutObservationWindow $ sambaLockoutThreshold $ sambaForceLogoff $ samba
RefuseMachinePwdChange $ sambaTrustType $ sambaTrustAttributes $ sambaTrust
Direction $ sambaTrustPosixOffset $ sambaSupportedEncryptionTypes $ krb5Key
VersionNumber $ krb5MaxLife $ krb5MaxRenew $ krb5KDCFlags $ krb5EncryptionT
ype $ krbPrincipalType $ krbTicketFlags $ krbMaxTicketLife $ krbMaxRenewabl
eAge $ krbSearchScope $ krbMaxPwdLife $ krbMinPwdLife $ krbPwdMinDiffChars
$ krbPwdMinLength $ krbPwdHistoryLength $ krbPwdMaxFailure $ krbPwdFailureC
ountInterval $ krbPwdLockoutDuration $ krbPwdAttributes $ krbPwdMaxLife $ k
rbPwdMaxRenewableLife $ krbLoginFailedCount $ dhcpNetMask $ dhcpDnsStatus $
dhcpDelayedServiceParameter $ dhcpMaxClientLeadTime $ dhcpFailOverPrimaryP
ort $ dhcpFailOverSecondaryPort $ dhcpFailOverResponseDelay $ dhcpFailOverU
nackedUpdates $ dhcpFailOverSplit $ dhcpFailOverLoadBalanceTime $ dlzSerial
$ dlzRefresh $ dlzRetry $ dlzExpire $ dlzMinimum $ dlzPreference $ dlzTTL
$ x509CRLNumber $ x509CRLDeltaIndicator $ x509CRLCertReasonCode $ x509versi
on $ x509serialNumber $ x509authorityCertSerialNumber $ x509ACHolderPKCSeri
alNumber $ x509ACDigestedObjectType $ vPIMMaxMessageSize $ dlmDedicated $ d
lmBiometric $ pcimRuleEnabled $ pcimConditionGroupNumber $ pcimActionOrder
$ pcelsDecisionStrategy $ pcelsPriority $ pcelsConditionListType $ pcelsSeq
uencedActions $ pcelsExecutionStrategy $ pcelsIPHdrVersion $ pcelsIPHdrProt
ocolID $ pcelsIPHdrSourcePortStart $ pcelsIPHdrSourcePortEnd $ pcelsIPHdrDe
stPortStart $ pcelsIPHdrDestPortEnd $ pcelsIPHdrDSCPList $ pcels8021HdrProt
ocolID $ pcels8021HdrPriority $ pcels8021HdrVLANID $ pcelsFilterDirection $
sudoOrder $ fedfsFsnTTL $ fedfsNfsCurrency $ fedfsNfsClassSimul $ fedfsNfs
ClassHandle $ fedfsNfsClassFileid $ fedfsNfsClassWritever $ fedfsNfsClassCh
ange $ fedfsNfsClassReaddir $ fedfsNfsReadRank $ fedfsNfsReadOrder $ fedfsN
fsWriteRank $ fedfsNfsWriteOrder $ fedfsNfsValidFor $ radiusSimultaneousUse
$ gender $ oathOTPLength $ oathSecretMaxAge $ oathSecretLength $ oathCount
er $ oathFailureCount $ oathMaxUsageCount $ oathThrottleLimit $ oathResultC
ode $ oathSuccessResultCode $ oathFailureResultCode $ oathHOTPCounter $ oat
hHOTPLookAhead $ oathTOTPTimeStepPeriod $ oathTOTPLastTimeStep $ msPwdReset
MaxAge $ msPwdResetPwLen $ msPwdResetAdminPwLen $ aeStatus $ aePosixId $ ae
UidNumberMin $ aeUidNumberMax $ aeUidNumberNext $ aeGidNumberMin $ aeGidNum
berMax $ aeGidNumberNext $ aeLogStorePeriod ) )
matchingRuleUse: ( 2.5.13.14 NAME 'integerMatch' APPLIES ( supportedLDAPVers
ion $ entryTtl $ uidNumber $ gidNumber $ olcConcurrency $ olcConnMaxPending
$ olcConnMaxPendingAuth $ olcIdleTimeout $ olcIndexSubstrIfMinLen $ olcInd
exSubstrIfMaxLen $ olcIndexSubstrAnyLen $ olcIndexSubstrAnyStep $ olcIndexI
ntLen $ olcListenerThreads $ olcLocalSSF $ olcMaxDerefDepth $ olcReplicatio
nInterval $ olcSockbufMaxIncoming $ olcSockbufMaxIncomingAuth $ olcThreads
$ olcToolThreads $ olcWriteTimeout $ olcDbMaxReaders $ olcDbMaxSize $ olcDb
RtxnSize $ olcDbSearchStack $ olcDbCacheFree $ olcDbCacheSize $ olcDbDNcach
eSize $ olcDbIDLcacheSize $ olcDbShmKey $ olcDbProtocolVersion $ olcDbConne
ctionPoolMax $ olcChainMaxReferralDepth $ monitorCounter $ monitorOpComplet
ed $ monitorOpInitiated $ monitorConnectionNumber $ monitorConnectionOpsRec
eived $ monitorConnectionOpsExecuting $ monitorConnectionOpsPending $ monit
orConnectionOpsCompleted $ monitorConnectionGet $ monitorConnectionRead $ m
onitorConnectionWrite $ reqResult $ reqId $ reqVersion $ reqSizeLimit $ req
TimeLimit $ reqEntries $ olcSpSessionlog $ olcSssVlvMax $ olcSssVlvMaxKeys
$ olcSssVlvMaxPerConn $ olcDDSmaxDynamicObjects $ olcLastBindPrecision $ ma
ilPreferenceOption $ shadowLastChange $ shadowMin $ shadowMax $ shadowWarni
ng $ shadowInactive $ shadowExpire $ shadowFlag $ ipServicePort $ ipProtoco
lNumber $ oncRpcNumber $ pwdMinAge $ pwdMaxAge $ pwdInHistory $ pwdCheckQua
lity $ pwdMinLength $ pwdExpireWarning $ pwdGraceAuthNLimit $ pwdLockoutDur
ation $ pwdMaxFailure $ pwdFailureCountInterval $ pwdMaxRecordedFailure $ s
earchTimeLimit $ bindTimeLimit $ profileTTL $ schacGender $ dNSTTL $ Solari
sCacheTTL $ SolarisSearchTimeLimit $ sambaPwdLastSet $ sambaPwdCanChange $
sambaPwdMustChange $ sambaLogonTime $ sambaLogoffTime $ sambaKickoffTime $
sambaBadPasswordCount $ sambaBadPasswordTime $ sambaGroupType $ sambaNextUs
erRid $ sambaNextGroupRid $ sambaNextRid $ sambaAlgorithmicRidBase $ sambaI
ntegerOption $ sambaMinPwdLength $ sambaPwdHistoryLength $ sambaLogonToChgP
wd $ sambaMaxPwdAge $ sambaMinPwdAge $ sambaLockoutDuration $ sambaLockoutO
bservationWindow $ sambaLockoutThreshold $ sambaForceLogoff $ sambaRefuseMa
chinePwdChange $ sambaTrustType $ sambaTrustAttributes $ sambaTrustDirectio
n $ sambaTrustPosixOffset $ sambaSupportedEncryptionTypes $ krb5KeyVersionN
umber $ krb5MaxLife $ krb5MaxRenew $ krb5KDCFlags $ krb5EncryptionType $ kr
bPrincipalType $ krbTicketFlags $ krbMaxTicketLife $ krbMaxRenewableAge $ k
rbSearchScope $ krbMaxPwdLife $ krbMinPwdLife $ krbPwdMinDiffChars $ krbPwd
MinLength $ krbPwdHistoryLength $ krbPwdMaxFailure $ krbPwdFailureCountInte
rval $ krbPwdLockoutDuration $ krbPwdAttributes $ krbPwdMaxLife $ krbPwdMax
RenewableLife $ krbLoginFailedCount $ dhcpNetMask $ dhcpDnsStatus $ dhcpDel
ayedServiceParameter $ dhcpMaxClientLeadTime $ dhcpFailOverPrimaryPort $ dh
cpFailOverSecondaryPort $ dhcpFailOverResponseDelay $ dhcpFailOverUnackedUp
dates $ dhcpFailOverSplit $ dhcpFailOverLoadBalanceTime $ dlzSerial $ dlzRe
fresh $ dlzRetry $ dlzExpire $ dlzMinimum $ dlzPreference $ dlzTTL $ x509CR
LNumber $ x509CRLDeltaIndicator $ x509CRLCertReasonCode $ x509version $ x50
9serialNumber $ x509authorityCertSerialNumber $ x509ACHolderPKCSerialNumber
$ x509ACDigestedObjectType $ vPIMMaxMessageSize $ dlmDedicated $ dlmBiomet
ric $ pcimRuleEnabled $ pcimConditionGroupNumber $ pcimActionOrder $ pcelsD
ecisionStrategy $ pcelsPriority $ pcelsConditionListType $ pcelsSequencedAc
tions $ pcelsExecutionStrategy $ pcelsIPHdrVersion $ pcelsIPHdrProtocolID $
pcelsIPHdrSourcePortStart $ pcelsIPHdrSourcePortEnd $ pcelsIPHdrDestPortSt
art $ pcelsIPHdrDestPortEnd $ pcelsIPHdrDSCPList $ pcels8021HdrProtocolID $
pcels8021HdrPriority $ pcels8021HdrVLANID $ pcelsFilterDirection $ sudoOrd
er $ fedfsFsnTTL $ fedfsNfsCurrency $ fedfsNfsClassSimul $ fedfsNfsClassHan
dle $ fedfsNfsClassFileid $ fedfsNfsClassWritever $ fedfsNfsClassChange $ f
edfsNfsClassReaddir $ fedfsNfsReadRank $ fedfsNfsReadOrder $ fedfsNfsWriteR
ank $ fedfsNfsWriteOrder $ fedfsNfsValidFor $ radiusSimultaneousUse $ gende
r $ oathOTPLength $ oathSecretMaxAge $ oathSecretLength $ oathCounter $ oat
hFailureCount $ oathMaxUsageCount $ oathThrottleLimit $ oathResultCode $ oa
thSuccessResultCode $ oathFailureResultCode $ oathHOTPCounter $ oathHOTPLoo
kAhead $ oathTOTPTimeStepPeriod $ oathTOTPLastTimeStep $ msPwdResetMaxAge $
msPwdResetPwLen $ msPwdResetAdminPwLen $ aeStatus $ aePosixId $ aeUidNumbe
rMin $ aeUidNumberMax $ aeUidNumberNext $ aeGidNumberMin $ aeGidNumberMax $
aeGidNumberNext $ aeLogStorePeriod ) )
matchingRuleUse: ( 2.5.13.13 NAME 'booleanMatch' APPLIES ( hasSubordinates $
olcAddContentAcl $ olcGentleHUP $ olcHidden $ olcLastMod $ olcMirrorMode $
olcMonitoring $ olcReadOnly $ olcReverseLookup $ olcSyncUseSubentry $ olcD
bNoSync $ olcDbChecksum $ olcDbDirtyRead $ olcDbLinearIndex $ olcDbRebindAs
User $ olcDbChaseReferrals $ olcDbProxyWhoAmI $ olcDbSingleConn $ olcDbUseT
emporaryConn $ olcDbSessionTrackingRequest $ olcDbNoRefs $ olcDbNoUndefFilt
er $ olcChainCacheURI $ olcChainReturnError $ olcDbPseudoRootBindDefer $ re
adOnly $ monitorIsShadow $ monitorRuntimeConfig $ olcAccessLogSuccess $ req
DeleteOldRDN $ reqAttrsOnly $ olcMemberOfRefInt $ olcSpNoPresent $ olcSpRel
oadHint $ olcTranslucentStrict $ olcTranslucentNoGlue $ olcTranslucentBindL
ocal $ olcTranslucentPwModLocal $ olcUniqueStrict $ pwdReset $ olcPPolicyHa
shCleartext $ olcPPolicyForwardUpdates $ olcPPolicyUseLockout $ olcDDSstate
$ pwdLockout $ pwdMustChange $ pwdAllowUserChange $ pwdSafeModify $ follow
Referrals $ dereferenceAliases $ xmozillausehtmlmail $ sambaBoolOption $ kr
bUPEnabled $ esgAlwaysOn $ dhcpBootpFlag $ x509CRLDPOnlyUserCerts $ x509CRL
DPOnlyCACerts $ x509CRLDPOnlyAttCerts $ x509CRLDPindirect $ x509basicConstr
aintsCa $ x509ACNoRevocation $ dlmStarted $ dlm1FilterEntryBaseIsNegated $
pcimRuleMandatory $ pcimConditionNegated $ pcelsIsMirrored $ pcelsBoolean $
pcelsFilterIsNegated $ fedfsNfsGenFlagWritable $ fedfsNfsGenFlagGoing $ fe
dfsNfsGenFlagSplit $ fedfsNfsTransFlagRdma $ fedfsNfsVarSub $ radiusStripUs
erName $ radiusClientRequireMa $ X-experimentalFlag $ 1.3.6.1.4.1.5427.1.38
9.42.3 $ msPwdResetEnabled ) )
matchingRuleUse: ( 2.5.13.11 NAME 'caseIgnoreListMatch' APPLIES ( postalAddr
ess $ registeredAddress $ homePostalAddress $ c-PostalAddress $ mozillaPost
alAddress2 $ mozillaHomePostalAddress2 ) )
matchingRuleUse: ( 2.5.13.9 NAME 'numericStringOrderingMatch' APPLIES ( x121
Address $ internationaliSDNNumber $ c-InternationalISDNNumber $ schacDateOf
Birth $ schacYearOfBirth $ esgDuration $ esgRepeatInterval $ esgIntervalOff
set $ esgTotalDuration $ vPIMSubMailboxes $ germanBankAccountNumber $ germa
nBankCode ) )
matchingRuleUse: ( 2.5.13.8 NAME 'numericStringMatch' APPLIES ( x121Address
$ internationaliSDNNumber $ c-InternationalISDNNumber $ schacDateOfBirth $
schacYearOfBirth $ esgDuration $ esgRepeatInterval $ esgIntervalOffset $ es
gTotalDuration $ vPIMSubMailboxes $ germanBankAccountNumber $ germanBankCod
e ) )
matchingRuleUse: ( 2.5.13.7 NAME 'caseExactSubstringsMatch' APPLIES ( serial
Number $ c $ telephoneNumber $ destinationIndicator $ dnQualifier $ homePho
ne $ mobile $ pager $ c-TelephoneNumber $ nsAIMid $ esgContactPhone $ vPIMT
elephoneNumber $ oathTokenSerialNumber $ aeHwSerialNumber ) )
matchingRuleUse: ( 2.5.13.6 NAME 'caseExactOrderingMatch' APPLIES ( supporte
dSASLMechanisms $ vendorName $ vendorVersion $ ref $ name $ cn $ uid $ labe
ledURI $ description $ olcConfigFile $ olcConfigDir $ olcAccess $ olcAllows
$ olcArgsFile $ olcAttributeOptions $ olcAttributeTypes $ olcAuthIDRewrite
$ olcAuthzPolicy $ olcAuthzRegexp $ olcBackend $ olcDatabase $ olcDisallow
s $ olcDitContentRules $ olcExtraAttrs $ olcInclude $ olcLdapSyntaxes $ olc
Limits $ olcLogFile $ olcLogLevel $ olcModuleLoad $ olcModulePath $ olcObje
ctClasses $ olcObjectIdentifier $ olcOverlay $ olcPasswordCryptSaltFormat $
olcPasswordHash $ olcPidFile $ olcPlugin $ olcPluginLogFile $ olcReferral
$ olcReplica $ olcReplicaArgsFile $ olcReplicaPidFile $ olcReplogFile $ olc
Requires $ olcRestrict $ olcRootDSE $ olcRootPW $ olcSaslAuxprops $ olcSasl
Host $ olcSaslRealm $ olcSaslSecProps $ olcSecurity $ olcServerID $ olcSize
Limit $ olcSortVals $ olcSubordinate $ olcSyncrepl $ olcTCPBuffer $ olcTime
Limit $ olcTLSCACertificateFile $ olcTLSCACertificatePath $ olcTLSCertifica
teFile $ olcTLSCertificateKeyFile $ olcTLSCipherSuite $ olcTLSCRLCheck $ ol
cTLSCRLFile $ olcTLSRandFile $ olcTLSVerifyClient $ olcTLSDHParamFile $ olc
TLSProtocolMin $ olcUpdateRef $ olcDbDirectory $ olcDbCheckpoint $ olcDbEnv
Flags $ olcDbIndex $ olcDbMode $ olcDbCryptFile $ olcDbPageSize $ olcDbLock
Detect $ olcDbURI $ olcDbStartTLS $ olcDbACLPasswd $ olcDbACLBind $ olcDbID
AssertPasswd $ olcDbIDAssertBind $ olcDbIDAssertMode $ olcDbIDAssertAuthzFr
om $ olcDbTFSupport $ olcDbTimeout $ olcDbIdleTimeout $ olcDbConnTtl $ olcD
bNetworkTimeout $ olcDbCancel $ olcDbQuarantine $ olcDbOnErr $ olcDbIDAsser
tPassThru $ olcDbKeepalive $ olcChainingBehavior $ olcDbRewrite $ olcDbMap
$ olcDbSubtreeExclude $ olcDbSubtreeInclude $ olcDbDefaultTarget $ olcDbDnC
acheTtl $ olcDbBindTimeout $ olcDbNretries $ olcDbClientPr $ olcMetaSub $ o
lcDbFilter $ monitoredInfo $ managedInfo $ monitorConnectionLocalAddress $
monitorConnectionPeerAddress $ monitorOverlay $ restrictedOperation $ monit
orConnectionProtocol $ monitorConnectionMask $ monitorConnectionListener $
monitorConnectionPeerDomain $ monitorUpdateRef $ olcAuditlogFile $ olcAcces
sLogOps $ olcAccessLogPurge $ olcAccessLogOld $ olcAccessLogOldAttr $ olcAc
cessLogBase $ reqType $ reqSession $ reqMessage $ reqReferral $ reqMethod $
reqAssertion $ reqScope $ reqDerefAliases $ reqFilter $ reqAttr $ olcColle
ctInfo $ olcDlAttrSet $ olcRefintAttribute $ olcMemberOfDangling $ olcMembe
rOfGroupOC $ olcMemberOfMemberAD $ olcMemberOfMemberOfAD $ olcMemberOfDangl
ingError $ olcSpCheckpoint $ olcTranslucentLocal $ olcTranslucentRemote $ o
lcUniqueIgnore $ olcUniqueAttribute $ olcUniqueURI $ olcConstraintAttribute
$ olcValSortAttr $ olcDDSmaxTtl $ olcDDSminTtl $ olcDDSdefaultTtl $ olcDDS
interval $ olcDDStolerance $ olmDbDirectory $ knowledgeInformation $ sn $ s
erialNumber $ c $ l $ st $ street $ o $ ou $ title $ businessCategory $ pos
talCode $ postOfficeBox $ physicalDeliveryOfficeName $ telephoneNumber $ de
stinationIndicator $ givenName $ initials $ generationQualifier $ dnQualifi
er $ houseIdentifier $ dmdName $ pseudonym $ textEncodedORAddress $ info $
drink $ roomNumber $ userClass $ host $ documentIdentifier $ documentTitle
$ documentVersion $ documentLocation $ homePhone $ personalTitle $ mobile $
pager $ co $ uniqueIdentifier $ organizationalStatus $ buildingName $ docu
mentPublisher $ carLicense $ departmentNumber $ displayName $ employeeNumbe
r $ employeeType $ preferredLanguage $ ipServiceProtocol $ nisMapName $ jav
aClassName $ javaClassNames $ javaFactory $ javaReferenceAddress $ corbaRep
ositoryId $ memberURL $ xmlPrivilegeInfo $ xmlPrivPolicy $ c-l $ c-st $ c-s
treet $ c-o $ c-ou $ c-PostalCode $ c-PostOfficeBox $ c-PhysicalDeliveryOff
iceName $ c-TelephoneNumber $ authorizedService $ defaultServerList $ prefe
rredServerList $ authenticationMethod $ serviceSearchDescriptor $ serviceAu
thenticationMethod $ entrustRoamingId $ eduPersonAffiliation $ eduPersonNic
kname $ eduPersonPrimaryAffiliation $ eduPersonPrincipalName $ eduPersonEnt
itlement $ eduPersonScopedAffiliation $ eduOrgLegalName $ schacMotherTongue
$ schacPlaceOfBirth $ schacCountryOfCitizenship $ schacSn1 $ schacSn2 $ sc
hacPersonalTitle $ schacHomeOrganization $ schacHomeOrganizationType $ scha
cCountryOfResidence $ schacUserPresenceID $ schacPersonalPosition $ schacPe
rsonalUniqueCode $ schacPersonalUniqueID $ schacUserStatus $ schacProjectMe
mbership $ schacProjectSpecificRole $ nisDomain $ SolarisLDAPServers $ Sola
risSearchBaseDN $ SolarisBindDN $ SolarisBindPassword $ SolarisAuthMethod $
SolarisTransportSecurity $ SolarisDataSearchDN $ SolarisSearchScope $ Sola
risPreferedServer $ SolarisPreferedServerOnly $ SolarisSearchReferral $ mid
dleName $ xmozillanickname $ mozillaHomeLocalityName $ mozillaHomeState $ m
ozillaHomePostalCode $ mozillaHomeCountryName $ mozillaHomeFriendlyCountryN
ame $ nsAIMid $ sambaLogonScript $ sambaProfilePath $ sambaUserWorkstations
$ sambaHomePath $ sambaDomainName $ sambaMungedDial $ sambaShareName $ sam
baOptionName $ sambaStringListOption $ sambaTrustPartner $ sambaFlatName $
sambaTrustAuthOutgoing $ sambaTrustAuthIncoming $ sambaTrustForestTrustInfo
$ krbLdapServers $ krbPrincNamingAttr $ krbDefaultEncSaltTypes $ krbSuppor
tedEncSaltTypes $ krbPrincipalAuthInd $ esgSid $ esgSN $ esgInfo $ esgInfoU
ri $ esgContact $ esgContactPhone $ esgCategory $ esgTool $ esgSource $ esg
Format $ esgStreamUri $ esgSdpUri $ dlzZoneName $ dlzHostName $ dlzData $ d
lzType $ dlzAdminEmail $ dlzPrimaryNS $ dlzCName $ dlzRecordID $ x509keyUsa
ge $ vPIMTelephoneNumber $ vPIMTextName $ AstContext $ AstExtension $ AstPr
iority $ AstApplication $ AstApplicationData $ AstAccountAMAFlags $ AstAcco
untCallerID $ AstAccountContext $ AstAccountMailbox $ AstMD5secret $ AstAcc
ountDeny $ AstAccountPermit $ AstAccountQualify $ AstAccountType $ AstAccou
ntDisallowedCodec $ AstAccountExpirationTimestamp $ AstAccountRegistrationC
ontext $ AstAccountRegistrationExten $ AstAccountNoTransfer $ AstAccountCal
lGroup $ AstAccountCanReinvite $ AstAccountDTMFMode $ AstAccountFromUser $
AstAccountFromDomain $ AstAccountFullContact $ AstAccountHost $ AstAccountI
nsecure $ AstAccountNAT $ AstAccountPickupGroup $ AstAccountPort $ AstAccou
ntRestrictCID $ AstAccountRTPTimeout $ AstAccountRTPHoldTimeout $ AstAccoun
tRealmedPassword $ AstAccountAllowedCodec $ AstAccountMusicOnHold $ AstAcco
untCanCallForward $ AstAccountSecret $ AstAccountName $ AstConfigFilename $
AstConfigCategory $ AstConfigCategoryMetric $ AstConfigVariableName $ AstC
onfigVariableValue $ AstConfigCommented $ AstAccountIPAddress $ AstAccountD
efaultUser $ AstAccountRegistrationServer $ AstAccountLastQualifyMillisecon
ds $ AstAccountCallLimit $ AstVoicemailMailbox $ AstVoicemailPassword $ Ast
VoicemailFullname $ AstVoicemailEmail $ AstVoicemailPager $ AstVoicemailOpt
ions $ AstVoicemailTimestamp $ AstVoicemailContext $ AstAccountSubscribeCon
text $ AstAccountUserAgent $ AstAccountLanguage $ AstAccountTransport $ Ast
AccountPromiscRedir $ AstAccountAccountCode $ AstAccountSetVar $ AstAccount
AllowOverlap $ AstAccountVideoSupport $ AstAccountIgnoreSDPVersion $ AstAcc
ountPathSupport $ pgpSoftware $ pgpVersion $ pgpCertID $ pgpDisabled $ pgpK
eyID $ pgpKeyType $ pgpUserID $ pgpKeyCreateTime $ pgpSignerID $ pgpRevoked
$ pgpSubKeyID $ pgpKeySize $ pgpKeyExpireTime $ pgpReconCertID $ pgpElemen
tType $ calCalURI $ calFBURL $ calCAPURI $ calCalAdrURI $ calOtherCalURIs $
calOtherFBURLs $ calOtherCAPURIs $ calOtherCalAdrURIs $ turbaMembers $ arr
ayIndex $ dlmIdentifyingDescription $ dlmOtherIdentifyingInfo $ orderedCimK
eys $ orderedCimModelPath $ dlmCaption $ dlmDescription $ dlmName $ dlmStat
us $ dlmCreationClassName $ dlmNameFormat $ dlmPrimaryOwnerContact $ dlmPri
maryOwnerName $ dlmRoles $ dlmStartMode $ dlmSettingID $ dlm1FilterListDire
ction $ dlmProtocolType $ dlmOtherTypeDescription $ dlmIPAddress $ dlmIPSub
netMask $ dlmIPAddressType $ dlmIPVersionSupport $ dlmElementID $ dlmRemote
ID $ dlmAlgorithm $ dlmProtocol $ dlmSecret $ pcimRoles $ pcimKeywords $ pc
imGroupName $ pcimRuleName $ pcimRuleUsage $ pcimConditionName $ pcimAction
Name $ pcimRepositoryName $ pcelsPolicySetName $ pcelsVariableName $ pcelsV
ariableModelClass $ pcelsVariableModelProperty $ pcelsExpectedValueTypes $
pcelsValueName $ pcelsIPv4AddrList $ pcelsIPv6AddrList $ pcelsMACAddrList $
pcelsStringList $ pcelsBitStringList $ pcelsIntegerList $ pcelsReusableCon
tainerName $ pcelsRole $ pcelsRoleCollectionName $ pcelsFilterName $ pcelsF
ilterListName $ demailMaxAuthLevel $ fedfsAnnotation $ fedfsDescr $ fedfsNf
sURI $ commURI $ commOwner $ SIPIdentitySIPURI $ SIPIdentityUserName $ radi
usClientIdentifier $ radiusClientSecret $ radiusClientShortname $ radiusCli
entVirtualServer $ radiusClientType $ radiusClientComment $ birthPlace $ bi
rthName $ businessTitle $ academicTitle $ nickName $ labeledBICandIBAN $ ge
rmanTaxNr $ germanUniqueTaxIDNr $ musicalInstrument $ musicalOrchestra $ mu
sicalArtistName $ germanBankName $ germanBankAccountInfo $ germanBankAccoun
tHolder $ intlMailAddr $ oathTokenSerialNumber $ oathTokenIdentifier $ oath
Message $ oathSuccessMessage $ oathFailureMessage $ 1.3.6.1.4.1.5427.1.389.
42.1 $ aeRemoteHost $ aeSourceUri $ aeTag $ aeSSHProxyCommand $ aeStockId $
aeHwSerialNumber $ aeDeviceSlot $ aeDevicePort ) )
matchingRuleUse: ( 2.5.13.5 NAME 'caseExactMatch' APPLIES ( supportedSASLMec
hanisms $ vendorName $ vendorVersion $ ref $ name $ cn $ uid $ labeledURI $
description $ olcConfigFile $ olcConfigDir $ olcAccess $ olcAllows $ olcAr
gsFile $ olcAttributeOptions $ olcAttributeTypes $ olcAuthIDRewrite $ olcAu
thzPolicy $ olcAuthzRegexp $ olcBackend $ olcDatabase $ olcDisallows $ olcD
itContentRules $ olcExtraAttrs $ olcInclude $ olcLdapSyntaxes $ olcLimits $
olcLogFile $ olcLogLevel $ olcModuleLoad $ olcModulePath $ olcObjectClasse
s $ olcObjectIdentifier $ olcOverlay $ olcPasswordCryptSaltFormat $ olcPass
wordHash $ olcPidFile $ olcPlugin $ olcPluginLogFile $ olcReferral $ olcRep
lica $ olcReplicaArgsFile $ olcReplicaPidFile $ olcReplogFile $ olcRequires
$ olcRestrict $ olcRootDSE $ olcRootPW $ olcSaslAuxprops $ olcSaslHost $ o
lcSaslRealm $ olcSaslSecProps $ olcSecurity $ olcServerID $ olcSizeLimit $
olcSortVals $ olcSubordinate $ olcSyncrepl $ olcTCPBuffer $ olcTimeLimit $
olcTLSCACertificateFile $ olcTLSCACertificatePath $ olcTLSCertificateFile $
olcTLSCertificateKeyFile $ olcTLSCipherSuite $ olcTLSCRLCheck $ olcTLSCRLF
ile $ olcTLSRandFile $ olcTLSVerifyClient $ olcTLSDHParamFile $ olcTLSProto
colMin $ olcUpdateRef $ olcDbDirectory $ olcDbCheckpoint $ olcDbEnvFlags $
olcDbIndex $ olcDbMode $ olcDbCryptFile $ olcDbPageSize $ olcDbLockDetect $
olcDbURI $ olcDbStartTLS $ olcDbACLPasswd $ olcDbACLBind $ olcDbIDAssertPa
sswd $ olcDbIDAssertBind $ olcDbIDAssertMode $ olcDbIDAssertAuthzFrom $ olc
DbTFSupport $ olcDbTimeout $ olcDbIdleTimeout $ olcDbConnTtl $ olcDbNetwork
Timeout $ olcDbCancel $ olcDbQuarantine $ olcDbOnErr $ olcDbIDAssertPassThr
u $ olcDbKeepalive $ olcChainingBehavior $ olcDbRewrite $ olcDbMap $ olcDbS
ubtreeExclude $ olcDbSubtreeInclude $ olcDbDefaultTarget $ olcDbDnCacheTtl
$ olcDbBindTimeout $ olcDbNretries $ olcDbClientPr $ olcMetaSub $ olcDbFilt
er $ monitoredInfo $ managedInfo $ monitorConnectionLocalAddress $ monitorC
onnectionPeerAddress $ monitorOverlay $ restrictedOperation $ monitorConnec
tionProtocol $ monitorConnectionMask $ monitorConnectionListener $ monitorC
onnectionPeerDomain $ monitorUpdateRef $ olcAuditlogFile $ olcAccessLogOps
$ olcAccessLogPurge $ olcAccessLogOld $ olcAccessLogOldAttr $ olcAccessLogB
ase $ reqType $ reqSession $ reqMessage $ reqReferral $ reqMethod $ reqAsse
rtion $ reqScope $ reqDerefAliases $ reqFilter $ reqAttr $ olcCollectInfo $
olcDlAttrSet $ olcRefintAttribute $ olcMemberOfDangling $ olcMemberOfGroup
OC $ olcMemberOfMemberAD $ olcMemberOfMemberOfAD $ olcMemberOfDanglingError
$ olcSpCheckpoint $ olcTranslucentLocal $ olcTranslucentRemote $ olcUnique
Ignore $ olcUniqueAttribute $ olcUniqueURI $ olcConstraintAttribute $ olcVa
lSortAttr $ olcDDSmaxTtl $ olcDDSminTtl $ olcDDSdefaultTtl $ olcDDSinterval
$ olcDDStolerance $ olmDbDirectory $ knowledgeInformation $ sn $ serialNum
ber $ c $ l $ st $ street $ o $ ou $ title $ businessCategory $ postalCode
$ postOfficeBox $ physicalDeliveryOfficeName $ telephoneNumber $ destinatio
nIndicator $ givenName $ initials $ generationQualifier $ dnQualifier $ hou
seIdentifier $ dmdName $ pseudonym $ textEncodedORAddress $ info $ drink $
roomNumber $ userClass $ host $ documentIdentifier $ documentTitle $ docume
ntVersion $ documentLocation $ homePhone $ personalTitle $ mobile $ pager $
co $ uniqueIdentifier $ organizationalStatus $ buildingName $ documentPubl
isher $ carLicense $ departmentNumber $ displayName $ employeeNumber $ empl
oyeeType $ preferredLanguage $ ipServiceProtocol $ nisMapName $ javaClassNa
me $ javaClassNames $ javaFactory $ javaReferenceAddress $ corbaRepositoryI
d $ memberURL $ xmlPrivilegeInfo $ xmlPrivPolicy $ c-l $ c-st $ c-street $
c-o $ c-ou $ c-PostalCode $ c-PostOfficeBox $ c-PhysicalDeliveryOfficeName
$ c-TelephoneNumber $ authorizedService $ defaultServerList $ preferredServ
erList $ authenticationMethod $ serviceSearchDescriptor $ serviceAuthentica
tionMethod $ entrustRoamingId $ eduPersonAffiliation $ eduPersonNickname $
eduPersonPrimaryAffiliation $ eduPersonPrincipalName $ eduPersonEntitlement
$ eduPersonScopedAffiliation $ eduOrgLegalName $ schacMotherTongue $ schac
PlaceOfBirth $ schacCountryOfCitizenship $ schacSn1 $ schacSn2 $ schacPerso
nalTitle $ schacHomeOrganization $ schacHomeOrganizationType $ schacCountry
OfResidence $ schacUserPresenceID $ schacPersonalPosition $ schacPersonalUn
iqueCode $ schacPersonalUniqueID $ schacUserStatus $ schacProjectMembership
$ schacProjectSpecificRole $ nisDomain $ SolarisLDAPServers $ SolarisSearc
hBaseDN $ SolarisBindDN $ SolarisBindPassword $ SolarisAuthMethod $ Solaris
TransportSecurity $ SolarisDataSearchDN $ SolarisSearchScope $ SolarisPrefe
redServer $ SolarisPreferedServerOnly $ SolarisSearchReferral $ middleName
$ xmozillanickname $ mozillaHomeLocalityName $ mozillaHomeState $ mozillaHo
mePostalCode $ mozillaHomeCountryName $ mozillaHomeFriendlyCountryName $ ns
AIMid $ sambaLogonScript $ sambaProfilePath $ sambaUserWorkstations $ samba
HomePath $ sambaDomainName $ sambaMungedDial $ sambaShareName $ sambaOption
Name $ sambaStringListOption $ sambaTrustPartner $ sambaFlatName $ sambaTru
stAuthOutgoing $ sambaTrustAuthIncoming $ sambaTrustForestTrustInfo $ krbLd
apServers $ krbPrincNamingAttr $ krbDefaultEncSaltTypes $ krbSupportedEncSa
ltTypes $ krbPrincipalAuthInd $ esgSid $ esgSN $ esgInfo $ esgInfoUri $ esg
Contact $ esgContactPhone $ esgCategory $ esgTool $ esgSource $ esgFormat $
esgStreamUri $ esgSdpUri $ dlzZoneName $ dlzHostName $ dlzData $ dlzType $
dlzAdminEmail $ dlzPrimaryNS $ dlzCName $ dlzRecordID $ x509keyUsage $ vPI
MTelephoneNumber $ vPIMTextName $ AstContext $ AstExtension $ AstPriority $
AstApplication $ AstApplicationData $ AstAccountAMAFlags $ AstAccountCalle
rID $ AstAccountContext $ AstAccountMailbox $ AstMD5secret $ AstAccountDeny
$ AstAccountPermit $ AstAccountQualify $ AstAccountType $ AstAccountDisall
owedCodec $ AstAccountExpirationTimestamp $ AstAccountRegistrationContext $
AstAccountRegistrationExten $ AstAccountNoTransfer $ AstAccountCallGroup $
AstAccountCanReinvite $ AstAccountDTMFMode $ AstAccountFromUser $ AstAccou
ntFromDomain $ AstAccountFullContact $ AstAccountHost $ AstAccountInsecure
$ AstAccountNAT $ AstAccountPickupGroup $ AstAccountPort $ AstAccountRestri
ctCID $ AstAccountRTPTimeout $ AstAccountRTPHoldTimeout $ AstAccountRealmed
Password $ AstAccountAllowedCodec $ AstAccountMusicOnHold $ AstAccountCanCa
llForward $ AstAccountSecret $ AstAccountName $ AstConfigFilename $ AstConf
igCategory $ AstConfigCategoryMetric $ AstConfigVariableName $ AstConfigVar
iableValue $ AstConfigCommented $ AstAccountIPAddress $ AstAccountDefaultUs
er $ AstAccountRegistrationServer $ AstAccountLastQualifyMilliseconds $ Ast
AccountCallLimit $ AstVoicemailMailbox $ AstVoicemailPassword $ AstVoicemai
lFullname $ AstVoicemailEmail $ AstVoicemailPager $ AstVoicemailOptions $ A
stVoicemailTimestamp $ AstVoicemailContext $ AstAccountSubscribeContext $ A
stAccountUserAgent $ AstAccountLanguage $ AstAccountTransport $ AstAccountP
romiscRedir $ AstAccountAccountCode $ AstAccountSetVar $ AstAccountAllowOve
rlap $ AstAccountVideoSupport $ AstAccountIgnoreSDPVersion $ AstAccountPath
Support $ pgpSoftware $ pgpVersion $ pgpCertID $ pgpDisabled $ pgpKeyID $ p
gpKeyType $ pgpUserID $ pgpKeyCreateTime $ pgpSignerID $ pgpRevoked $ pgpSu
bKeyID $ pgpKeySize $ pgpKeyExpireTime $ pgpReconCertID $ pgpElementType $
calCalURI $ calFBURL $ calCAPURI $ calCalAdrURI $ calOtherCalURIs $ calOthe
rFBURLs $ calOtherCAPURIs $ calOtherCalAdrURIs $ turbaMembers $ arrayIndex
$ dlmIdentifyingDescription $ dlmOtherIdentifyingInfo $ orderedCimKeys $ or
deredCimModelPath $ dlmCaption $ dlmDescription $ dlmName $ dlmStatus $ dlm
CreationClassName $ dlmNameFormat $ dlmPrimaryOwnerContact $ dlmPrimaryOwne
rName $ dlmRoles $ dlmStartMode $ dlmSettingID $ dlm1FilterListDirection $
dlmProtocolType $ dlmOtherTypeDescription $ dlmIPAddress $ dlmIPSubnetMask
$ dlmIPAddressType $ dlmIPVersionSupport $ dlmElementID $ dlmRemoteID $ dlm
Algorithm $ dlmProtocol $ dlmSecret $ pcimRoles $ pcimKeywords $ pcimGroupN
ame $ pcimRuleName $ pcimRuleUsage $ pcimConditionName $ pcimActionName $ p
cimRepositoryName $ pcelsPolicySetName $ pcelsVariableName $ pcelsVariableM
odelClass $ pcelsVariableModelProperty $ pcelsExpectedValueTypes $ pcelsVal
ueName $ pcelsIPv4AddrList $ pcelsIPv6AddrList $ pcelsMACAddrList $ pcelsSt
ringList $ pcelsBitStringList $ pcelsIntegerList $ pcelsReusableContainerNa
me $ pcelsRole $ pcelsRoleCollectionName $ pcelsFilterName $ pcelsFilterLis
tName $ demailMaxAuthLevel $ fedfsAnnotation $ fedfsDescr $ fedfsNfsURI $ c
ommURI $ commOwner $ SIPIdentitySIPURI $ SIPIdentityUserName $ radiusClient
Identifier $ radiusClientSecret $ radiusClientShortname $ radiusClientVirtu
alServer $ radiusClientType $ radiusClientComment $ birthPlace $ birthName
$ businessTitle $ academicTitle $ nickName $ labeledBICandIBAN $ germanTaxN
r $ germanUniqueTaxIDNr $ musicalInstrument $ musicalOrchestra $ musicalArt
istName $ germanBankName $ germanBankAccountInfo $ germanBankAccountHolder
$ intlMailAddr $ oathTokenSerialNumber $ oathTokenIdentifier $ oathMessage
$ oathSuccessMessage $ oathFailureMessage $ 1.3.6.1.4.1.5427.1.389.42.1 $ a
eRemoteHost $ aeSourceUri $ aeTag $ aeSSHProxyCommand $ aeStockId $ aeHwSer
ialNumber $ aeDeviceSlot $ aeDevicePort ) )
matchingRuleUse: ( 2.5.13.4 NAME 'caseIgnoreSubstringsMatch' APPLIES ( seria
lNumber $ c $ telephoneNumber $ destinationIndicator $ dnQualifier $ homePh
one $ mobile $ pager $ c-TelephoneNumber $ nsAIMid $ esgContactPhone $ vPIM
TelephoneNumber $ oathTokenSerialNumber $ aeHwSerialNumber ) )
matchingRuleUse: ( 2.5.13.3 NAME 'caseIgnoreOrderingMatch' APPLIES ( support
edSASLMechanisms $ vendorName $ vendorVersion $ ref $ name $ cn $ uid $ lab
eledURI $ description $ olcConfigFile $ olcConfigDir $ olcAccess $ olcAllow
s $ olcArgsFile $ olcAttributeOptions $ olcAttributeTypes $ olcAuthIDRewrit
e $ olcAuthzPolicy $ olcAuthzRegexp $ olcBackend $ olcDatabase $ olcDisallo
ws $ olcDitContentRules $ olcExtraAttrs $ olcInclude $ olcLdapSyntaxes $ ol
cLimits $ olcLogFile $ olcLogLevel $ olcModuleLoad $ olcModulePath $ olcObj
ectClasses $ olcObjectIdentifier $ olcOverlay $ olcPasswordCryptSaltFormat
$ olcPasswordHash $ olcPidFile $ olcPlugin $ olcPluginLogFile $ olcReferral
$ olcReplica $ olcReplicaArgsFile $ olcReplicaPidFile $ olcReplogFile $ ol
cRequires $ olcRestrict $ olcRootDSE $ olcRootPW $ olcSaslAuxprops $ olcSas
lHost $ olcSaslRealm $ olcSaslSecProps $ olcSecurity $ olcServerID $ olcSiz
eLimit $ olcSortVals $ olcSubordinate $ olcSyncrepl $ olcTCPBuffer $ olcTim
eLimit $ olcTLSCACertificateFile $ olcTLSCACertificatePath $ olcTLSCertific
ateFile $ olcTLSCertificateKeyFile $ olcTLSCipherSuite $ olcTLSCRLCheck $ o
lcTLSCRLFile $ olcTLSRandFile $ olcTLSVerifyClient $ olcTLSDHParamFile $ ol
cTLSProtocolMin $ olcUpdateRef $ olcDbDirectory $ olcDbCheckpoint $ olcDbEn
vFlags $ olcDbIndex $ olcDbMode $ olcDbCryptFile $ olcDbPageSize $ olcDbLoc
kDetect $ olcDbURI $ olcDbStartTLS $ olcDbACLPasswd $ olcDbACLBind $ olcDbI
DAssertPasswd $ olcDbIDAssertBind $ olcDbIDAssertMode $ olcDbIDAssertAuthzF
rom $ olcDbTFSupport $ olcDbTimeout $ olcDbIdleTimeout $ olcDbConnTtl $ olc
DbNetworkTimeout $ olcDbCancel $ olcDbQuarantine $ olcDbOnErr $ olcDbIDAsse
rtPassThru $ olcDbKeepalive $ olcChainingBehavior $ olcDbRewrite $ olcDbMap
$ olcDbSubtreeExclude $ olcDbSubtreeInclude $ olcDbDefaultTarget $ olcDbDn
CacheTtl $ olcDbBindTimeout $ olcDbNretries $ olcDbClientPr $ olcMetaSub $
olcDbFilter $ monitoredInfo $ managedInfo $ monitorConnectionLocalAddress $
monitorConnectionPeerAddress $ monitorOverlay $ restrictedOperation $ moni
torConnectionProtocol $ monitorConnectionMask $ monitorConnectionListener $
monitorConnectionPeerDomain $ monitorUpdateRef $ olcAuditlogFile $ olcAcce
ssLogOps $ olcAccessLogPurge $ olcAccessLogOld $ olcAccessLogOldAttr $ olcA
ccessLogBase $ reqType $ reqSession $ reqMessage $ reqReferral $ reqMethod
$ reqAssertion $ reqScope $ reqDerefAliases $ reqFilter $ reqAttr $ olcColl
ectInfo $ olcDlAttrSet $ olcRefintAttribute $ olcMemberOfDangling $ olcMemb
erOfGroupOC $ olcMemberOfMemberAD $ olcMemberOfMemberOfAD $ olcMemberOfDang
lingError $ olcSpCheckpoint $ olcTranslucentLocal $ olcTranslucentRemote $
olcUniqueIgnore $ olcUniqueAttribute $ olcUniqueURI $ olcConstraintAttribut
e $ olcValSortAttr $ olcDDSmaxTtl $ olcDDSminTtl $ olcDDSdefaultTtl $ olcDD
Sinterval $ olcDDStolerance $ olmDbDirectory $ knowledgeInformation $ sn $
serialNumber $ c $ l $ st $ street $ o $ ou $ title $ businessCategory $ po
stalCode $ postOfficeBox $ physicalDeliveryOfficeName $ telephoneNumber $ d
estinationIndicator $ givenName $ initials $ generationQualifier $ dnQualif
ier $ houseIdentifier $ dmdName $ pseudonym $ textEncodedORAddress $ info $
drink $ roomNumber $ userClass $ host $ documentIdentifier $ documentTitle
$ documentVersion $ documentLocation $ homePhone $ personalTitle $ mobile
$ pager $ co $ uniqueIdentifier $ organizationalStatus $ buildingName $ doc
umentPublisher $ carLicense $ departmentNumber $ displayName $ employeeNumb
er $ employeeType $ preferredLanguage $ ipServiceProtocol $ nisMapName $ ja
vaClassName $ javaClassNames $ javaFactory $ javaReferenceAddress $ corbaRe
positoryId $ memberURL $ xmlPrivilegeInfo $ xmlPrivPolicy $ c-l $ c-st $ c-
street $ c-o $ c-ou $ c-PostalCode $ c-PostOfficeBox $ c-PhysicalDeliveryOf
ficeName $ c-TelephoneNumber $ authorizedService $ defaultServerList $ pref
erredServerList $ authenticationMethod $ serviceSearchDescriptor $ serviceA
uthenticationMethod $ entrustRoamingId $ eduPersonAffiliation $ eduPersonNi
ckname $ eduPersonPrimaryAffiliation $ eduPersonPrincipalName $ eduPersonEn
titlement $ eduPersonScopedAffiliation $ eduOrgLegalName $ schacMotherTongu
e $ schacPlaceOfBirth $ schacCountryOfCitizenship $ schacSn1 $ schacSn2 $ s
chacPersonalTitle $ schacHomeOrganization $ schacHomeOrganizationType $ sch
acCountryOfResidence $ schacUserPresenceID $ schacPersonalPosition $ schacP
ersonalUniqueCode $ schacPersonalUniqueID $ schacUserStatus $ schacProjectM
embership $ schacProjectSpecificRole $ nisDomain $ SolarisLDAPServers $ Sol
arisSearchBaseDN $ SolarisBindDN $ SolarisBindPassword $ SolarisAuthMethod
$ SolarisTransportSecurity $ SolarisDataSearchDN $ SolarisSearchScope $ Sol
arisPreferedServer $ SolarisPreferedServerOnly $ SolarisSearchReferral $ mi
ddleName $ xmozillanickname $ mozillaHomeLocalityName $ mozillaHomeState $
mozillaHomePostalCode $ mozillaHomeCountryName $ mozillaHomeFriendlyCountry
Name $ nsAIMid $ sambaLogonScript $ sambaProfilePath $ sambaUserWorkstation
s $ sambaHomePath $ sambaDomainName $ sambaMungedDial $ sambaShareName $ sa
mbaOptionName $ sambaStringListOption $ sambaTrustPartner $ sambaFlatName $
sambaTrustAuthOutgoing $ sambaTrustAuthIncoming $ sambaTrustForestTrustInf
o $ krbLdapServers $ krbPrincNamingAttr $ krbDefaultEncSaltTypes $ krbSuppo
rtedEncSaltTypes $ krbPrincipalAuthInd $ esgSid $ esgSN $ esgInfo $ esgInfo
Uri $ esgContact $ esgContactPhone $ esgCategory $ esgTool $ esgSource $ es
gFormat $ esgStreamUri $ esgSdpUri $ dlzZoneName $ dlzHostName $ dlzData $
dlzType $ dlzAdminEmail $ dlzPrimaryNS $ dlzCName $ dlzRecordID $ x509keyUs
age $ vPIMTelephoneNumber $ vPIMTextName $ AstContext $ AstExtension $ AstP
riority $ AstApplication $ AstApplicationData $ AstAccountAMAFlags $ AstAcc
ountCallerID $ AstAccountContext $ AstAccountMailbox $ AstMD5secret $ AstAc
countDeny $ AstAccountPermit $ AstAccountQualify $ AstAccountType $ AstAcco
untDisallowedCodec $ AstAccountExpirationTimestamp $ AstAccountRegistration
Context $ AstAccountRegistrationExten $ AstAccountNoTransfer $ AstAccountCa
llGroup $ AstAccountCanReinvite $ AstAccountDTMFMode $ AstAccountFromUser $
AstAccountFromDomain $ AstAccountFullContact $ AstAccountHost $ AstAccount
Insecure $ AstAccountNAT $ AstAccountPickupGroup $ AstAccountPort $ AstAcco
untRestrictCID $ AstAccountRTPTimeout $ AstAccountRTPHoldTimeout $ AstAccou
ntRealmedPassword $ AstAccountAllowedCodec $ AstAccountMusicOnHold $ AstAcc
ountCanCallForward $ AstAccountSecret $ AstAccountName $ AstConfigFilename
$ AstConfigCategory $ AstConfigCategoryMetric $ AstConfigVariableName $ Ast
ConfigVariableValue $ AstConfigCommented $ AstAccountIPAddress $ AstAccount
DefaultUser $ AstAccountRegistrationServer $ AstAccountLastQualifyMilliseco
nds $ AstAccountCallLimit $ AstVoicemailMailbox $ AstVoicemailPassword $ As
tVoicemailFullname $ AstVoicemailEmail $ AstVoicemailPager $ AstVoicemailOp
tions $ AstVoicemailTimestamp $ AstVoicemailContext $ AstAccountSubscribeCo
ntext $ AstAccountUserAgent $ AstAccountLanguage $ AstAccountTransport $ As
tAccountPromiscRedir $ AstAccountAccountCode $ AstAccountSetVar $ AstAccoun
tAllowOverlap $ AstAccountVideoSupport $ AstAccountIgnoreSDPVersion $ AstAc
countPathSupport $ pgpSoftware $ pgpVersion $ pgpCertID $ pgpDisabled $ pgp
KeyID $ pgpKeyType $ pgpUserID $ pgpKeyCreateTime $ pgpSignerID $ pgpRevoke
d $ pgpSubKeyID $ pgpKeySize $ pgpKeyExpireTime $ pgpReconCertID $ pgpEleme
ntType $ calCalURI $ calFBURL $ calCAPURI $ calCalAdrURI $ calOtherCalURIs
$ calOtherFBURLs $ calOtherCAPURIs $ calOtherCalAdrURIs $ turbaMembers $ ar
rayIndex $ dlmIdentifyingDescription $ dlmOtherIdentifyingInfo $ orderedCim
Keys $ orderedCimModelPath $ dlmCaption $ dlmDescription $ dlmName $ dlmSta
tus $ dlmCreationClassName $ dlmNameFormat $ dlmPrimaryOwnerContact $ dlmPr
imaryOwnerName $ dlmRoles $ dlmStartMode $ dlmSettingID $ dlm1FilterListDir
ection $ dlmProtocolType $ dlmOtherTypeDescription $ dlmIPAddress $ dlmIPSu
bnetMask $ dlmIPAddressType $ dlmIPVersionSupport $ dlmElementID $ dlmRemot
eID $ dlmAlgorithm $ dlmProtocol $ dlmSecret $ pcimRoles $ pcimKeywords $ p
cimGroupName $ pcimRuleName $ pcimRuleUsage $ pcimConditionName $ pcimActio
nName $ pcimRepositoryName $ pcelsPolicySetName $ pcelsVariableName $ pcels
VariableModelClass $ pcelsVariableModelProperty $ pcelsExpectedValueTypes $
pcelsValueName $ pcelsIPv4AddrList $ pcelsIPv6AddrList $ pcelsMACAddrList
$ pcelsStringList $ pcelsBitStringList $ pcelsIntegerList $ pcelsReusableCo
ntainerName $ pcelsRole $ pcelsRoleCollectionName $ pcelsFilterName $ pcels
FilterListName $ demailMaxAuthLevel $ fedfsAnnotation $ fedfsDescr $ fedfsN
fsURI $ commURI $ commOwner $ SIPIdentitySIPURI $ SIPIdentityUserName $ rad
iusClientIdentifier $ radiusClientSecret $ radiusClientShortname $ radiusCl
ientVirtualServer $ radiusClientType $ radiusClientComment $ birthPlace $ b
irthName $ businessTitle $ academicTitle $ nickName $ labeledBICandIBAN $ g
ermanTaxNr $ germanUniqueTaxIDNr $ musicalInstrument $ musicalOrchestra $ m
usicalArtistName $ germanBankName $ germanBankAccountInfo $ germanBankAccou
ntHolder $ intlMailAddr $ oathTokenSerialNumber $ oathTokenIdentifier $ oat
hMessage $ oathSuccessMessage $ oathFailureMessage $ 1.3.6.1.4.1.5427.1.389
.42.1 $ aeRemoteHost $ aeSourceUri $ aeTag $ aeSSHProxyCommand $ aeStockId
$ aeHwSerialNumber $ aeDeviceSlot $ aeDevicePort ) )
matchingRuleUse: ( 2.5.13.2 NAME 'caseIgnoreMatch' APPLIES ( supportedSASLMe
chanisms $ vendorName $ vendorVersion $ ref $ name $ cn $ uid $ labeledURI
$ description $ olcConfigFile $ olcConfigDir $ olcAccess $ olcAllows $ olcA
rgsFile $ olcAttributeOptions $ olcAttributeTypes $ olcAuthIDRewrite $ olcA
uthzPolicy $ olcAuthzRegexp $ olcBackend $ olcDatabase $ olcDisallows $ olc
DitContentRules $ olcExtraAttrs $ olcInclude $ olcLdapSyntaxes $ olcLimits
$ olcLogFile $ olcLogLevel $ olcModuleLoad $ olcModulePath $ olcObjectClass
es $ olcObjectIdentifier $ olcOverlay $ olcPasswordCryptSaltFormat $ olcPas
swordHash $ olcPidFile $ olcPlugin $ olcPluginLogFile $ olcReferral $ olcRe
plica $ olcReplicaArgsFile $ olcReplicaPidFile $ olcReplogFile $ olcRequire
s $ olcRestrict $ olcRootDSE $ olcRootPW $ olcSaslAuxprops $ olcSaslHost $
olcSaslRealm $ olcSaslSecProps $ olcSecurity $ olcServerID $ olcSizeLimit $
olcSortVals $ olcSubordinate $ olcSyncrepl $ olcTCPBuffer $ olcTimeLimit $
olcTLSCACertificateFile $ olcTLSCACertificatePath $ olcTLSCertificateFile
$ olcTLSCertificateKeyFile $ olcTLSCipherSuite $ olcTLSCRLCheck $ olcTLSCRL
File $ olcTLSRandFile $ olcTLSVerifyClient $ olcTLSDHParamFile $ olcTLSProt
ocolMin $ olcUpdateRef $ olcDbDirectory $ olcDbCheckpoint $ olcDbEnvFlags $
olcDbIndex $ olcDbMode $ olcDbCryptFile $ olcDbPageSize $ olcDbLockDetect
$ olcDbURI $ olcDbStartTLS $ olcDbACLPasswd $ olcDbACLBind $ olcDbIDAssertP
asswd $ olcDbIDAssertBind $ olcDbIDAssertMode $ olcDbIDAssertAuthzFrom $ ol
cDbTFSupport $ olcDbTimeout $ olcDbIdleTimeout $ olcDbConnTtl $ olcDbNetwor
kTimeout $ olcDbCancel $ olcDbQuarantine $ olcDbOnErr $ olcDbIDAssertPassTh
ru $ olcDbKeepalive $ olcChainingBehavior $ olcDbRewrite $ olcDbMap $ olcDb
SubtreeExclude $ olcDbSubtreeInclude $ olcDbDefaultTarget $ olcDbDnCacheTtl
$ olcDbBindTimeout $ olcDbNretries $ olcDbClientPr $ olcMetaSub $ olcDbFil
ter $ monitoredInfo $ managedInfo $ monitorConnectionLocalAddress $ monitor
ConnectionPeerAddress $ monitorOverlay $ restrictedOperation $ monitorConne
ctionProtocol $ monitorConnectionMask $ monitorConnectionListener $ monitor
ConnectionPeerDomain $ monitorUpdateRef $ olcAuditlogFile $ olcAccessLogOps
$ olcAccessLogPurge $ olcAccessLogOld $ olcAccessLogOldAttr $ olcAccessLog
Base $ reqType $ reqSession $ reqMessage $ reqReferral $ reqMethod $ reqAss
ertion $ reqScope $ reqDerefAliases $ reqFilter $ reqAttr $ olcCollectInfo
$ olcDlAttrSet $ olcRefintAttribute $ olcMemberOfDangling $ olcMemberOfGrou
pOC $ olcMemberOfMemberAD $ olcMemberOfMemberOfAD $ olcMemberOfDanglingErro
r $ olcSpCheckpoint $ olcTranslucentLocal $ olcTranslucentRemote $ olcUniqu
eIgnore $ olcUniqueAttribute $ olcUniqueURI $ olcConstraintAttribute $ olcV
alSortAttr $ olcDDSmaxTtl $ olcDDSminTtl $ olcDDSdefaultTtl $ olcDDSinterva
l $ olcDDStolerance $ olmDbDirectory $ knowledgeInformation $ sn $ serialNu
mber $ c $ l $ st $ street $ o $ ou $ title $ businessCategory $ postalCode
$ postOfficeBox $ physicalDeliveryOfficeName $ telephoneNumber $ destinati
onIndicator $ givenName $ initials $ generationQualifier $ dnQualifier $ ho
useIdentifier $ dmdName $ pseudonym $ textEncodedORAddress $ info $ drink $
roomNumber $ userClass $ host $ documentIdentifier $ documentTitle $ docum
entVersion $ documentLocation $ homePhone $ personalTitle $ mobile $ pager
$ co $ uniqueIdentifier $ organizationalStatus $ buildingName $ documentPub
lisher $ carLicense $ departmentNumber $ displayName $ employeeNumber $ emp
loyeeType $ preferredLanguage $ ipServiceProtocol $ nisMapName $ javaClassN
ame $ javaClassNames $ javaFactory $ javaReferenceAddress $ corbaRepository
Id $ memberURL $ xmlPrivilegeInfo $ xmlPrivPolicy $ c-l $ c-st $ c-street $
c-o $ c-ou $ c-PostalCode $ c-PostOfficeBox $ c-PhysicalDeliveryOfficeName
$ c-TelephoneNumber $ authorizedService $ defaultServerList $ preferredSer
verList $ authenticationMethod $ serviceSearchDescriptor $ serviceAuthentic
ationMethod $ entrustRoamingId $ eduPersonAffiliation $ eduPersonNickname $
eduPersonPrimaryAffiliation $ eduPersonPrincipalName $ eduPersonEntitlemen
t $ eduPersonScopedAffiliation $ eduOrgLegalName $ schacMotherTongue $ scha
cPlaceOfBirth $ schacCountryOfCitizenship $ schacSn1 $ schacSn2 $ schacPers
onalTitle $ schacHomeOrganization $ schacHomeOrganizationType $ schacCountr
yOfResidence $ schacUserPresenceID $ schacPersonalPosition $ schacPersonalU
niqueCode $ schacPersonalUniqueID $ schacUserStatus $ schacProjectMembershi
p $ schacProjectSpecificRole $ nisDomain $ SolarisLDAPServers $ SolarisSear
chBaseDN $ SolarisBindDN $ SolarisBindPassword $ SolarisAuthMethod $ Solari
sTransportSecurity $ SolarisDataSearchDN $ SolarisSearchScope $ SolarisPref
eredServer $ SolarisPreferedServerOnly $ SolarisSearchReferral $ middleName
$ xmozillanickname $ mozillaHomeLocalityName $ mozillaHomeState $ mozillaH
omePostalCode $ mozillaHomeCountryName $ mozillaHomeFriendlyCountryName $ n
sAIMid $ sambaLogonScript $ sambaProfilePath $ sambaUserWorkstations $ samb
aHomePath $ sambaDomainName $ sambaMungedDial $ sambaShareName $ sambaOptio
nName $ sambaStringListOption $ sambaTrustPartner $ sambaFlatName $ sambaTr
ustAuthOutgoing $ sambaTrustAuthIncoming $ sambaTrustForestTrustInfo $ krbL
dapServers $ krbPrincNamingAttr $ krbDefaultEncSaltTypes $ krbSupportedEncS
altTypes $ krbPrincipalAuthInd $ esgSid $ esgSN $ esgInfo $ esgInfoUri $ es
gContact $ esgContactPhone $ esgCategory $ esgTool $ esgSource $ esgFormat
$ esgStreamUri $ esgSdpUri $ dlzZoneName $ dlzHostName $ dlzData $ dlzType
$ dlzAdminEmail $ dlzPrimaryNS $ dlzCName $ dlzRecordID $ x509keyUsage $ vP
IMTelephoneNumber $ vPIMTextName $ AstContext $ AstExtension $ AstPriority
$ AstApplication $ AstApplicationData $ AstAccountAMAFlags $ AstAccountCall
erID $ AstAccountContext $ AstAccountMailbox $ AstMD5secret $ AstAccountDen
y $ AstAccountPermit $ AstAccountQualify $ AstAccountType $ AstAccountDisal
lowedCodec $ AstAccountExpirationTimestamp $ AstAccountRegistrationContext
$ AstAccountRegistrationExten $ AstAccountNoTransfer $ AstAccountCallGroup
$ AstAccountCanReinvite $ AstAccountDTMFMode $ AstAccountFromUser $ AstAcco
untFromDomain $ AstAccountFullContact $ AstAccountHost $ AstAccountInsecure
$ AstAccountNAT $ AstAccountPickupGroup $ AstAccountPort $ AstAccountRestr
ictCID $ AstAccountRTPTimeout $ AstAccountRTPHoldTimeout $ AstAccountRealme
dPassword $ AstAccountAllowedCodec $ AstAccountMusicOnHold $ AstAccountCanC
allForward $ AstAccountSecret $ AstAccountName $ AstConfigFilename $ AstCon
figCategory $ AstConfigCategoryMetric $ AstConfigVariableName $ AstConfigVa
riableValue $ AstConfigCommented $ AstAccountIPAddress $ AstAccountDefaultU
ser $ AstAccountRegistrationServer $ AstAccountLastQualifyMilliseconds $ As
tAccountCallLimit $ AstVoicemailMailbox $ AstVoicemailPassword $ AstVoicema
ilFullname $ AstVoicemailEmail $ AstVoicemailPager $ AstVoicemailOptions $
AstVoicemailTimestamp $ AstVoicemailContext $ AstAccountSubscribeContext $
AstAccountUserAgent $ AstAccountLanguage $ AstAccountTransport $ AstAccount
PromiscRedir $ AstAccountAccountCode $ AstAccountSetVar $ AstAccountAllowOv
erlap $ AstAccountVideoSupport $ AstAccountIgnoreSDPVersion $ AstAccountPat
hSupport $ pgpSoftware $ pgpVersion $ pgpCertID $ pgpDisabled $ pgpKeyID $
pgpKeyType $ pgpUserID $ pgpKeyCreateTime $ pgpSignerID $ pgpRevoked $ pgpS
ubKeyID $ pgpKeySize $ pgpKeyExpireTime $ pgpReconCertID $ pgpElementType $
calCalURI $ calFBURL $ calCAPURI $ calCalAdrURI $ calOtherCalURIs $ calOth
erFBURLs $ calOtherCAPURIs $ calOtherCalAdrURIs $ turbaMembers $ arrayIndex
$ dlmIdentifyingDescription $ dlmOtherIdentifyingInfo $ orderedCimKeys $ o
rderedCimModelPath $ dlmCaption $ dlmDescription $ dlmName $ dlmStatus $ dl
mCreationClassName $ dlmNameFormat $ dlmPrimaryOwnerContact $ dlmPrimaryOwn
erName $ dlmRoles $ dlmStartMode $ dlmSettingID $ dlm1FilterListDirection $
dlmProtocolType $ dlmOtherTypeDescription $ dlmIPAddress $ dlmIPSubnetMask
$ dlmIPAddressType $ dlmIPVersionSupport $ dlmElementID $ dlmRemoteID $ dl
mAlgorithm $ dlmProtocol $ dlmSecret $ pcimRoles $ pcimKeywords $ pcimGroup
Name $ pcimRuleName $ pcimRuleUsage $ pcimConditionName $ pcimActionName $
pcimRepositoryName $ pcelsPolicySetName $ pcelsVariableName $ pcelsVariable
ModelClass $ pcelsVariableModelProperty $ pcelsExpectedValueTypes $ pcelsVa
lueName $ pcelsIPv4AddrList $ pcelsIPv6AddrList $ pcelsMACAddrList $ pcelsS
tringList $ pcelsBitStringList $ pcelsIntegerList $ pcelsReusableContainerN
ame $ pcelsRole $ pcelsRoleCollectionName $ pcelsFilterName $ pcelsFilterLi
stName $ demailMaxAuthLevel $ fedfsAnnotation $ fedfsDescr $ fedfsNfsURI $
commURI $ commOwner $ SIPIdentitySIPURI $ SIPIdentityUserName $ radiusClien
tIdentifier $ radiusClientSecret $ radiusClientShortname $ radiusClientVirt
ualServer $ radiusClientType $ radiusClientComment $ birthPlace $ birthName
$ businessTitle $ academicTitle $ nickName $ labeledBICandIBAN $ germanTax
Nr $ germanUniqueTaxIDNr $ musicalInstrument $ musicalOrchestra $ musicalAr
tistName $ germanBankName $ germanBankAccountInfo $ germanBankAccountHolder
$ intlMailAddr $ oathTokenSerialNumber $ oathTokenIdentifier $ oathMessage
$ oathSuccessMessage $ oathFailureMessage $ 1.3.6.1.4.1.5427.1.389.42.1 $
aeRemoteHost $ aeSourceUri $ aeTag $ aeSSHProxyCommand $ aeStockId $ aeHwSe
rialNumber $ aeDeviceSlot $ aeDevicePort ) )
matchingRuleUse: ( 1.3.6.1.4.1.4203.666.4.11 NAME 'dnSuperiorMatch' APPLIES
( creatorsName $ modifiersName $ subschemaSubentry $ collectiveAttributeSub
entries $ entryDN $ namingContexts $ monitorContext $ configContext $ alias
edObjectName $ dynamicSubtrees $ distinguishedName $ seeAlso $ olcDefaultSe
archBase $ olcRootDN $ olcSchemaDN $ olcSuffix $ olcUpdateDN $ olcDbACLAuth
cDn $ olcDbIDAssertAuthcDn $ monitorConnectionAuthzDN $ monitorSuperiorDN $
olcRelay $ olcAccessLogDB $ reqDN $ reqAuthzID $ reqNewRDN $ reqNewSuperio
r $ auditContext $ olcRefintNothing $ olcRefintModifiersName $ memberOf $ o
lcMemberOfDN $ olcUniqueBase $ pwdPolicySubentry $ olcPPolicyDefault $ memb
er $ owner $ roleOccupant $ manager $ documentAuthor $ secretary $ associat
edName $ dITRedirect $ dgIdentity $ defaultSearchBase $ eduPersonOrgDN $ ed
uPersonOrgUnitDN $ eduPersonPrimaryOrgUnitDN $ krb5PrincipalRealm $ krbReal
mReferences $ krbKdcServers $ krbPwdServers $ krbPrincipalReferences $ krbA
dmServers $ krbPwdPolicyReference $ krbTicketPolicyReference $ krbSubTrees
$ krbObjectReferences $ krbPrincContainerRef $ esgContactDN $ dhcpPrimaryDN
$ dhcpSecondaryDN $ dhcpOptionsDN $ dhcpHostDN $ dhcpPoolDN $ dhcpGroupDN
$ dhcpSubnetDN $ dhcpLeaseDN $ dhcpLeasesDN $ dhcpClassesDN $ dhcpSubclasse
sDN $ dhcpSharedNetworkDN $ dhcpServiceDN $ dhcpReservedForClient $ dhcpAss
ignedToClient $ dhcpLocatorDN $ dhcpKeyDN $ dhcpZoneDN $ dhcpFailOverPeerDN
$ dhcpServerDN $ x509CRLDPDN $ x509CRLCertIssuerDN $ x509issuer $ x509subj
ect $ x509authorityCertIssuer $ x509subjectDirectoryName $ x509issuerDirect
oryName $ x509certLocation $ x509certHolder $ x509issuerSerial $ x509ACHold
erPKCissuerDN $ x509ACHolderDN $ x509ACTargetDN $ x509ACTargetGroupDN $ x50
9DPDN $ x509DPrelativeToIssuer $ x509DPissuerDN $ pgpBaseKeySpaceDN $ dlmEl
ementSettingElementRef $ dlmElementSettingSettingRef $ dlmMemberOfCollectio
nCollectionRef $ dlmMemberOfCollectionMemberRef $ dlmElementAsUserAnteceden
tRef $ dlmElementAsUserDependentRef $ dlmUsersCredentialAntecedentRef $ dlm
UsersCredentialDependentRef $ pcimConditionDN $ pcimActionDN $ pcelsPolicyS
etList $ pcelsPolicySetDN $ pcelsRuleValidityPeriodList $ pcelsConditionLis
t $ pcelsActionList $ pcelsVariableDN $ pcelsValueDN $ pcelsExpectedValueLi
st $ pcelsReusableContainerList $ pcelsElementList $ pcelsFilterEntryList $
fedfsNceDN $ radiusProfileDN $ delegatesTo $ oathParamsEntry $ oathToken $
oathHOTPToken $ oathHOTPParams $ oathTOTPParams $ oathTOTPToken $ aeRoot $
defaultNamingContext $ aeOwnerGroup $ aePerson $ aeVisibleGroups $ aeDispl
ayNameGroups $ aeVisibleSudoers $ aeDept $ aeZoneAdmins $ aeZoneAuditors $
aePasswordAdmins $ aeLoginGroups $ aeSetupGroups $ aeLogStoreGroups $ aePro
xyFor $ aeSrvGroup $ aeHost $ aeNwDevice ) )
matchingRuleUse: ( 1.3.6.1.4.1.4203.666.4.10 NAME 'dnSubordinateMatch' APPLI
ES ( creatorsName $ modifiersName $ subschemaSubentry $ collectiveAttribute
Subentries $ entryDN $ namingContexts $ monitorContext $ configContext $ al
iasedObjectName $ dynamicSubtrees $ distinguishedName $ seeAlso $ olcDefaul
tSearchBase $ olcRootDN $ olcSchemaDN $ olcSuffix $ olcUpdateDN $ olcDbACLA
uthcDn $ olcDbIDAssertAuthcDn $ monitorConnectionAuthzDN $ monitorSuperiorD
N $ olcRelay $ olcAccessLogDB $ reqDN $ reqAuthzID $ reqNewRDN $ reqNewSupe
rior $ auditContext $ olcRefintNothing $ olcRefintModifiersName $ memberOf
$ olcMemberOfDN $ olcUniqueBase $ pwdPolicySubentry $ olcPPolicyDefault $ m
ember $ owner $ roleOccupant $ manager $ documentAuthor $ secretary $ assoc
iatedName $ dITRedirect $ dgIdentity $ defaultSearchBase $ eduPersonOrgDN $
eduPersonOrgUnitDN $ eduPersonPrimaryOrgUnitDN $ krb5PrincipalRealm $ krbR
ealmReferences $ krbKdcServers $ krbPwdServers $ krbPrincipalReferences $ k
rbAdmServers $ krbPwdPolicyReference $ krbTicketPolicyReference $ krbSubTre
es $ krbObjectReferences $ krbPrincContainerRef $ esgContactDN $ dhcpPrimar
yDN $ dhcpSecondaryDN $ dhcpOptionsDN $ dhcpHostDN $ dhcpPoolDN $ dhcpGroup
DN $ dhcpSubnetDN $ dhcpLeaseDN $ dhcpLeasesDN $ dhcpClassesDN $ dhcpSubcla
ssesDN $ dhcpSharedNetworkDN $ dhcpServiceDN $ dhcpReservedForClient $ dhcp
AssignedToClient $ dhcpLocatorDN $ dhcpKeyDN $ dhcpZoneDN $ dhcpFailOverPee
rDN $ dhcpServerDN $ x509CRLDPDN $ x509CRLCertIssuerDN $ x509issuer $ x509s
ubject $ x509authorityCertIssuer $ x509subjectDirectoryName $ x509issuerDir
ectoryName $ x509certLocation $ x509certHolder $ x509issuerSerial $ x509ACH
olderPKCissuerDN $ x509ACHolderDN $ x509ACTargetDN $ x509ACTargetGroupDN $
x509DPDN $ x509DPrelativeToIssuer $ x509DPissuerDN $ pgpBaseKeySpaceDN $ dl
mElementSettingElementRef $ dlmElementSettingSettingRef $ dlmMemberOfCollec
tionCollectionRef $ dlmMemberOfCollectionMemberRef $ dlmElementAsUserAntece
dentRef $ dlmElementAsUserDependentRef $ dlmUsersCredentialAntecedentRef $
dlmUsersCredentialDependentRef $ pcimConditionDN $ pcimActionDN $ pcelsPoli
cySetList $ pcelsPolicySetDN $ pcelsRuleValidityPeriodList $ pcelsCondition
List $ pcelsActionList $ pcelsVariableDN $ pcelsValueDN $ pcelsExpectedValu
eList $ pcelsReusableContainerList $ pcelsElementList $ pcelsFilterEntryLis
t $ fedfsNceDN $ radiusProfileDN $ delegatesTo $ oathParamsEntry $ oathToke
n $ oathHOTPToken $ oathHOTPParams $ oathTOTPParams $ oathTOTPToken $ aeRoo
t $ defaultNamingContext $ aeOwnerGroup $ aePerson $ aeVisibleGroups $ aeDi
splayNameGroups $ aeVisibleSudoers $ aeDept $ aeZoneAdmins $ aeZoneAuditors
$ aePasswordAdmins $ aeLoginGroups $ aeSetupGroups $ aeLogStoreGroups $ ae
ProxyFor $ aeSrvGroup $ aeHost $ aeNwDevice ) )
matchingRuleUse: ( 1.3.6.1.4.1.4203.666.4.8 NAME 'dnOneLevelMatch' APPLIES (
creatorsName $ modifiersName $ subschemaSubentry $ collectiveAttributeSube
ntries $ entryDN $ namingContexts $ monitorContext $ configContext $ aliase
dObjectName $ dynamicSubtrees $ distinguishedName $ seeAlso $ olcDefaultSea
rchBase $ olcRootDN $ olcSchemaDN $ olcSuffix $ olcUpdateDN $ olcDbACLAuthc
Dn $ olcDbIDAssertAuthcDn $ monitorConnectionAuthzDN $ monitorSuperiorDN $
olcRelay $ olcAccessLogDB $ reqDN $ reqAuthzID $ reqNewRDN $ reqNewSuperior
$ auditContext $ olcRefintNothing $ olcRefintModifiersName $ memberOf $ ol
cMemberOfDN $ olcUniqueBase $ pwdPolicySubentry $ olcPPolicyDefault $ membe
r $ owner $ roleOccupant $ manager $ documentAuthor $ secretary $ associate
dName $ dITRedirect $ dgIdentity $ defaultSearchBase $ eduPersonOrgDN $ edu
PersonOrgUnitDN $ eduPersonPrimaryOrgUnitDN $ krb5PrincipalRealm $ krbRealm
References $ krbKdcServers $ krbPwdServers $ krbPrincipalReferences $ krbAd
mServers $ krbPwdPolicyReference $ krbTicketPolicyReference $ krbSubTrees $
krbObjectReferences $ krbPrincContainerRef $ esgContactDN $ dhcpPrimaryDN
$ dhcpSecondaryDN $ dhcpOptionsDN $ dhcpHostDN $ dhcpPoolDN $ dhcpGroupDN $
dhcpSubnetDN $ dhcpLeaseDN $ dhcpLeasesDN $ dhcpClassesDN $ dhcpSubclasses
DN $ dhcpSharedNetworkDN $ dhcpServiceDN $ dhcpReservedForClient $ dhcpAssi
gnedToClient $ dhcpLocatorDN $ dhcpKeyDN $ dhcpZoneDN $ dhcpFailOverPeerDN
$ dhcpServerDN $ x509CRLDPDN $ x509CRLCertIssuerDN $ x509issuer $ x509subje
ct $ x509authorityCertIssuer $ x509subjectDirectoryName $ x509issuerDirecto
ryName $ x509certLocation $ x509certHolder $ x509issuerSerial $ x509ACHolde
rPKCissuerDN $ x509ACHolderDN $ x509ACTargetDN $ x509ACTargetGroupDN $ x509
DPDN $ x509DPrelativeToIssuer $ x509DPissuerDN $ pgpBaseKeySpaceDN $ dlmEle
mentSettingElementRef $ dlmElementSettingSettingRef $ dlmMemberOfCollection
CollectionRef $ dlmMemberOfCollectionMemberRef $ dlmElementAsUserAntecedent
Ref $ dlmElementAsUserDependentRef $ dlmUsersCredentialAntecedentRef $ dlmU
sersCredentialDependentRef $ pcimConditionDN $ pcimActionDN $ pcelsPolicySe
tList $ pcelsPolicySetDN $ pcelsRuleValidityPeriodList $ pcelsConditionList
$ pcelsActionList $ pcelsVariableDN $ pcelsValueDN $ pcelsExpectedValueLis
t $ pcelsReusableContainerList $ pcelsElementList $ pcelsFilterEntryList $
fedfsNceDN $ radiusProfileDN $ delegatesTo $ oathParamsEntry $ oathToken $
oathHOTPToken $ oathHOTPParams $ oathTOTPParams $ oathTOTPToken $ aeRoot $
defaultNamingContext $ aeOwnerGroup $ aePerson $ aeVisibleGroups $ aeDispla
yNameGroups $ aeVisibleSudoers $ aeDept $ aeZoneAdmins $ aeZoneAuditors $ a
ePasswordAdmins $ aeLoginGroups $ aeSetupGroups $ aeLogStoreGroups $ aeProx
yFor $ aeSrvGroup $ aeHost $ aeNwDevice ) )
matchingRuleUse: ( 1.3.6.1.4.1.4203.666.4.9 NAME 'dnSubtreeMatch' APPLIES (
creatorsName $ modifiersName $ subschemaSubentry $ collectiveAttributeSuben
tries $ entryDN $ namingContexts $ monitorContext $ configContext $ aliased
ObjectName $ dynamicSubtrees $ distinguishedName $ seeAlso $ olcDefaultSear
chBase $ olcRootDN $ olcSchemaDN $ olcSuffix $ olcUpdateDN $ olcDbACLAuthcD
n $ olcDbIDAssertAuthcDn $ monitorConnectionAuthzDN $ monitorSuperiorDN $ o
lcRelay $ olcAccessLogDB $ reqDN $ reqAuthzID $ reqNewRDN $ reqNewSuperior
$ auditContext $ olcRefintNothing $ olcRefintModifiersName $ memberOf $ olc
MemberOfDN $ olcUniqueBase $ pwdPolicySubentry $ olcPPolicyDefault $ member
$ owner $ roleOccupant $ manager $ documentAuthor $ secretary $ associated
Name $ dITRedirect $ dgIdentity $ defaultSearchBase $ eduPersonOrgDN $ eduP
ersonOrgUnitDN $ eduPersonPrimaryOrgUnitDN $ krb5PrincipalRealm $ krbRealmR
eferences $ krbKdcServers $ krbPwdServers $ krbPrincipalReferences $ krbAdm
Servers $ krbPwdPolicyReference $ krbTicketPolicyReference $ krbSubTrees $
krbObjectReferences $ krbPrincContainerRef $ esgContactDN $ dhcpPrimaryDN $
dhcpSecondaryDN $ dhcpOptionsDN $ dhcpHostDN $ dhcpPoolDN $ dhcpGroupDN $
dhcpSubnetDN $ dhcpLeaseDN $ dhcpLeasesDN $ dhcpClassesDN $ dhcpSubclassesD
N $ dhcpSharedNetworkDN $ dhcpServiceDN $ dhcpReservedForClient $ dhcpAssig
nedToClient $ dhcpLocatorDN $ dhcpKeyDN $ dhcpZoneDN $ dhcpFailOverPeerDN $
dhcpServerDN $ x509CRLDPDN $ x509CRLCertIssuerDN $ x509issuer $ x509subjec
t $ x509authorityCertIssuer $ x509subjectDirectoryName $ x509issuerDirector
yName $ x509certLocation $ x509certHolder $ x509issuerSerial $ x509ACHolder
PKCissuerDN $ x509ACHolderDN $ x509ACTargetDN $ x509ACTargetGroupDN $ x509D
PDN $ x509DPrelativeToIssuer $ x509DPissuerDN $ pgpBaseKeySpaceDN $ dlmElem
entSettingElementRef $ dlmElementSettingSettingRef $ dlmMemberOfCollectionC
ollectionRef $ dlmMemberOfCollectionMemberRef $ dlmElementAsUserAntecedentR
ef $ dlmElementAsUserDependentRef $ dlmUsersCredentialAntecedentRef $ dlmUs
ersCredentialDependentRef $ pcimConditionDN $ pcimActionDN $ pcelsPolicySet
List $ pcelsPolicySetDN $ pcelsRuleValidityPeriodList $ pcelsConditionList
$ pcelsActionList $ pcelsVariableDN $ pcelsValueDN $ pcelsExpectedValueList
$ pcelsReusableContainerList $ pcelsElementList $ pcelsFilterEntryList $ f
edfsNceDN $ radiusProfileDN $ delegatesTo $ oathParamsEntry $ oathToken $ o
athHOTPToken $ oathHOTPParams $ oathTOTPParams $ oathTOTPToken $ aeRoot $ d
efaultNamingContext $ aeOwnerGroup $ aePerson $ aeVisibleGroups $ aeDisplay
NameGroups $ aeVisibleSudoers $ aeDept $ aeZoneAdmins $ aeZoneAuditors $ ae
PasswordAdmins $ aeLoginGroups $ aeSetupGroups $ aeLogStoreGroups $ aeProxy
For $ aeSrvGroup $ aeHost $ aeNwDevice ) )
matchingRuleUse: ( 2.5.13.1 NAME 'distinguishedNameMatch' APPLIES ( creators
Name $ modifiersName $ subschemaSubentry $ collectiveAttributeSubentries $
entryDN $ namingContexts $ monitorContext $ configContext $ aliasedObjectNa
me $ dynamicSubtrees $ distinguishedName $ seeAlso $ olcDefaultSearchBase $
olcRootDN $ olcSchemaDN $ olcSuffix $ olcUpdateDN $ olcDbACLAuthcDn $ olcD
bIDAssertAuthcDn $ monitorConnectionAuthzDN $ monitorSuperiorDN $ olcRelay
$ olcAccessLogDB $ reqDN $ reqAuthzID $ reqNewRDN $ reqNewSuperior $ auditC
ontext $ olcRefintNothing $ olcRefintModifiersName $ memberOf $ olcMemberOf
DN $ olcUniqueBase $ pwdPolicySubentry $ olcPPolicyDefault $ member $ owner
$ roleOccupant $ manager $ documentAuthor $ secretary $ associatedName $ d
ITRedirect $ dgIdentity $ defaultSearchBase $ eduPersonOrgDN $ eduPersonOrg
UnitDN $ eduPersonPrimaryOrgUnitDN $ krb5PrincipalRealm $ krbRealmReference
s $ krbKdcServers $ krbPwdServers $ krbPrincipalReferences $ krbAdmServers
$ krbPwdPolicyReference $ krbTicketPolicyReference $ krbSubTrees $ krbObjec
tReferences $ krbPrincContainerRef $ esgContactDN $ dhcpPrimaryDN $ dhcpSec
ondaryDN $ dhcpOptionsDN $ dhcpHostDN $ dhcpPoolDN $ dhcpGroupDN $ dhcpSubn
etDN $ dhcpLeaseDN $ dhcpLeasesDN $ dhcpClassesDN $ dhcpSubclassesDN $ dhcp
SharedNetworkDN $ dhcpServiceDN $ dhcpReservedForClient $ dhcpAssignedToCli
ent $ dhcpLocatorDN $ dhcpKeyDN $ dhcpZoneDN $ dhcpFailOverPeerDN $ dhcpSer
verDN $ x509CRLDPDN $ x509CRLCertIssuerDN $ x509issuer $ x509subject $ x509
authorityCertIssuer $ x509subjectDirectoryName $ x509issuerDirectoryName $
x509certLocation $ x509certHolder $ x509issuerSerial $ x509ACHolderPKCissue
rDN $ x509ACHolderDN $ x509ACTargetDN $ x509ACTargetGroupDN $ x509DPDN $ x5
09DPrelativeToIssuer $ x509DPissuerDN $ pgpBaseKeySpaceDN $ dlmElementSetti
ngElementRef $ dlmElementSettingSettingRef $ dlmMemberOfCollectionCollectio
nRef $ dlmMemberOfCollectionMemberRef $ dlmElementAsUserAntecedentRef $ dlm
ElementAsUserDependentRef $ dlmUsersCredentialAntecedentRef $ dlmUsersCrede
ntialDependentRef $ pcimConditionDN $ pcimActionDN $ pcelsPolicySetList $ p
celsPolicySetDN $ pcelsRuleValidityPeriodList $ pcelsConditionList $ pcelsA
ctionList $ pcelsVariableDN $ pcelsValueDN $ pcelsExpectedValueList $ pcels
ReusableContainerList $ pcelsElementList $ pcelsFilterEntryList $ fedfsNceD
N $ radiusProfileDN $ delegatesTo $ oathParamsEntry $ oathToken $ oathHOTPT
oken $ oathHOTPParams $ oathTOTPParams $ oathTOTPToken $ aeRoot $ defaultNa
mingContext $ aeOwnerGroup $ aePerson $ aeVisibleGroups $ aeDisplayNameGrou
ps $ aeVisibleSudoers $ aeDept $ aeZoneAdmins $ aeZoneAuditors $ aePassword
Admins $ aeLoginGroups $ aeSetupGroups $ aeLogStoreGroups $ aeProxyFor $ ae
SrvGroup $ aeHost $ aeNwDevice ) )
matchingRuleUse: ( 2.5.13.0 NAME 'objectIdentifierMatch' APPLIES ( collectiv
eExclusions $ supportedControl $ supportedExtension $ supportedFeatures $ a
dministrativeRole $ supportedApplicationContext $ x509CRLDPRegisteredID $ x
509CRLCertIssuerRegisteredID $ x509CRLCertHoldInstructionCode $ x509signatu
reAlgorithm $ x509subjectPublicKeyInfoAlgorithm $ x509policyInformationIden
tifier $ x509subjectRegisteredID $ x509issuerRegisteredID $ x509extKeyUsage
$ x509ACHolderRegisteredID $ x509ACDigestAlgorithm $ x509ACTargetRegistere
dID $ x509ACTargetGroupRegisteredID $ x509DPRegisteredID $ x509DPissuerRegi
steredID $ pcelsVendorVariableEncoding $ pcelsVendorValueEncoding $ oathHMA
CAlgorithm $ msPwdResetHashAlgorithm ) )
matchingRuleUse: ( 1.3.6.1.4.1.4203.666.4.5 NAME 'IA5StringApproxMatch' APPL
IES ( altServer $ olcDbConfig $ c $ mail $ dc $ associatedDomain $ email $
aRecord $ mDRecord $ mXRecord $ nSRecord $ sOARecord $ cNAMERecord $ janetM
ailbox $ mailLocalAddress $ mailHost $ mailRoutingAddress $ rfc822MailMembe
r $ gecos $ homeDirectory $ loginShell $ memberUid $ memberNisNetgroup $ ip
HostNumber $ ipNetworkNumber $ ipNetmaskNumber $ macAddress $ bootFile $ ni
sMapEntry $ javaCodebase $ javaDoc $ corbaIor $ pwdCheckModule $ attributeM
ap $ credentialLevel $ objectclassMap $ defaultSearchScope $ serviceCredent
ialLevel $ eduOrgHomePageURI $ eduOrgIdentityAuthNPolicyURI $ eduOrgSuperio
rURI $ eduOrgWhitePagesURI $ schacUserPrivateAttribute $ dNSClass $ wKSReco
rd $ pTRRecord $ hInfoRecord $ mInfoRecord $ tXTRecord $ rPRecord $ aFSDBRe
cord $ SigRecord $ KeyRecord $ gPosRecord $ aAAARecord $ LocRecord $ nXTRec
ord $ sRVRecord $ nAPTRRecord $ kXRecord $ certRecord $ a6Record $ dNameRec
ord $ aPLRecord $ dSRecord $ sSHFPRecord $ iPSecKeyRecord $ rRSIGRecord $ n
SECRecord $ dNSKeyRecord $ dHCIDRecord $ nSec3ParamRecord $ TLSARecord $ sP
FRecord $ CAARecord $ DLVRecord $ nisPublickey $ nisSecretkey $ mgrpRFC822M
ailMember $ nisNetIdUser $ nisNetIdGroup $ nisNetIdHost $ mozillaSecondEmai
l $ homeurl $ workurl $ custom1 $ custom2 $ custom3 $ custom4 $ sambaLMPass
word $ sambaNTPassword $ sambaAcctFlags $ sambaLogonHours $ sambaHomeDrive
$ sambaPasswordHistory $ sambaSID $ sambaPrimaryGroupSID $ sambaSIDList $ s
ambaStringOption $ sambaTrustFlags $ sambaSecurityIdentifier $ krb5Principa
lName $ krbPrincipalName $ krbCanonicalName $ krbHostServer $ krbPwdAllowed
Keysalts $ krbPrincipalAliases $ krbAllowedToDelegateTo $ esgContactMail $
dhcpStatements $ dhcpRange $ dhcpPermitList $ dhcpOption $ dhcpClassData $
dhcpVersion $ dhcpImplementation $ dhcpAddressState $ dhcpDomainName $ dhcp
RequestedHostName $ dhcpAssignedHostName $ dhcpHWAddress $ dhcpFailOverEndp
ointState $ dhcpErrorLog $ dhcpKeyAlgorithm $ dhcpDnsZoneServer $ dhcpFailO
verPrimaryServer $ dhcpFailOverSecondaryServer $ dhcpComments $ dlzIPAddr $
automountMapName $ automountKey $ automountInformation $ x509CRLDPRfc822Na
me $ x509CRLDPDnsName $ x509CRLDPURI $ x509CRLDPIpAddress $ x509CRLCertIssu
erRfc822Name $ x509CRLCertIssuerDnsName $ x509CRLCertIssuerURI $ x509CRLCer
tIssuerIpAddress $ x509subjectRfc822Name $ x509subjectDnsName $ x509subject
UniformResourceIdentifier $ x509subjectIpAddress $ x509issuerRfc822Name $ x
509issuerDnsName $ x509issuerUniformResourceIdentifier $ x509issuerIpAddres
s $ x509fullCRLDistributionPointURI $ x509ACHolderRfc822Name $ x509ACHolder
DNSName $ x509ACHolderURI $ x509ACHolderIPAddress $ x509ACTargetRfc822Name
$ x509ACTargetDNSName $ x509ACTargetURI $ x509ACTargetIPAddress $ x509ACTar
getGroupRfc822Name $ x509ACTargetGroupDNSName $ x509ACTargetGroupURI $ x509
ACTargetGroupIPAddress $ x509DPRfc822Name $ x509DPDNSName $ x509DPURI $ x50
9DPIPAddress $ x509DPissuerRfc822Name $ x509DPissuerDNSName $ x509DPissuerU
RI $ x509DPissuerIPAddress $ vPIMRfc822Mailbox $ vPIMSupportedAudioMediaTyp
es $ vPIMSupportedMessageContext $ vPIMExtendedAbsenceStatus $ vPIMSupporte
dUABehaviors $ pgpKey $ hordePrefs $ impPrefs $ turbaPrefs $ turbaType $ tu
rbaPGPPublicKey $ kronolithPrefs $ nagPrefs $ gollemPrefs $ choraPrefs $ mn
emoPrefs $ trollPrefs $ klutzPrefs $ jonahPrefs $ hermesPrefs $ junoPrefs $
treanPrefs $ whupsPrefs $ ingoPrefs $ anselPrefs $ geniePrefs $ scryPrefs
$ wickedPrefs $ agoraPrefs $ goopsPrefs $ merkPrefs $ mimpPrefs $ mottlePre
fs $ nicPrefs $ occamPrefs $ odinPrefs $ rakimPrefs $ seshaPrefs $ swooshPr
efs $ thorPrefs $ ulaformPrefs $ volosPrefs $ jetaPrefs $ sudoUser $ sudoHo
st $ sudoCommand $ sudoRunAs $ sudoOption $ sudoRunAsUser $ sudoRunAsGroup
$ puppetClass $ parentNode $ environment $ puppetVar $ DKIMSelector $ DKIMK
ey $ DKIMIdentity $ DKIMDomain $ quota $ tacacsClient $ tacacsMember $ taca
csProfile $ tacacsFlag $ commUniqueId $ commPrivate $ SIPIdentityRegistrarA
ddress $ SIPIdentityProxyAddress $ SIPIdentityAddress $ SIPIdentityServiceL
evel $ radiusArapFeatures $ radiusArapSecurity $ radiusArapZoneAccess $ rad
iusAuthType $ radiusCallbackId $ radiusCallbackNumber $ radiusCalledStation
Id $ radiusCallingStationId $ radiusClass $ radiusClientIPAddress $ radiusF
ilterId $ radiusFramedAppleTalkLink $ radiusFramedAppleTalkNetwork $ radius
FramedAppleTalkZone $ radiusFramedCompression $ radiusFramedIPAddress $ rad
iusFramedIPNetmask $ radiusFramedIPXNetwork $ radiusFramedMTU $ radiusFrame
dProtocol $ radiusFramedRoute $ radiusFramedRouting $ radiusGroupName $ rad
iusHint $ radiusHuntgroupName $ radiusIdleTimeout $ radiusLoginIPHost $ rad
iusLoginLATGroup $ radiusLoginLATNode $ radiusLoginLATPort $ radiusLoginLAT
Service $ radiusLoginService $ radiusLoginTCPPort $ radiusPasswordRetry $ r
adiusPortLimit $ radiusPrompt $ radiusProxyToRealm $ radiusReplicateToRealm
$ radiusRealm $ radiusServiceType $ radiusSessionTimeout $ radiusTerminati
onAction $ radiusTunnelAssignmentId $ radiusTunnelMediumType $ radiusTunnel
Password $ radiusTunnelPreference $ radiusTunnelPrivateGroupId $ radiusTunn
elServerEndpoint $ radiusTunnelType $ radiusVSA $ radiusTunnelClientEndpoin
t $ radiusLoginTime $ radiusUserCategory $ dialupAccess $ radiusExpiration
$ radiusAttribute $ radiusNASIpAddress $ radiusReplyMessage $ radiusControl
Attribute $ radiusReplyAttribute $ radiusRequestAttribute $ dateOfBirth $ e
uVATId $ msPwdResetPasswordHash $ msPwdResetAdminPw $ aeTicketId $ aeFqdn )
)
matchingRuleUse: ( 1.3.6.1.4.1.4203.666.4.4 NAME 'directoryStringApproxMatch
' APPLIES ( supportedSASLMechanisms $ vendorName $ vendorVersion $ ref $ na
me $ cn $ uid $ labeledURI $ description $ olcConfigFile $ olcConfigDir $ o
lcAccess $ olcAllows $ olcArgsFile $ olcAttributeOptions $ olcAttributeType
s $ olcAuthIDRewrite $ olcAuthzPolicy $ olcAuthzRegexp $ olcBackend $ olcDa
tabase $ olcDisallows $ olcDitContentRules $ olcExtraAttrs $ olcInclude $ o
lcLdapSyntaxes $ olcLimits $ olcLogFile $ olcLogLevel $ olcModuleLoad $ olc
ModulePath $ olcObjectClasses $ olcObjectIdentifier $ olcOverlay $ olcPassw
ordCryptSaltFormat $ olcPasswordHash $ olcPidFile $ olcPlugin $ olcPluginLo
gFile $ olcReferral $ olcReplica $ olcReplicaArgsFile $ olcReplicaPidFile $
olcReplogFile $ olcRequires $ olcRestrict $ olcRootDSE $ olcRootPW $ olcSa
slAuxprops $ olcSaslHost $ olcSaslRealm $ olcSaslSecProps $ olcSecurity $ o
lcServerID $ olcSizeLimit $ olcSortVals $ olcSubordinate $ olcSyncrepl $ ol
cTCPBuffer $ olcTimeLimit $ olcTLSCACertificateFile $ olcTLSCACertificatePa
th $ olcTLSCertificateFile $ olcTLSCertificateKeyFile $ olcTLSCipherSuite $
olcTLSCRLCheck $ olcTLSCRLFile $ olcTLSRandFile $ olcTLSVerifyClient $ olc
TLSDHParamFile $ olcTLSProtocolMin $ olcUpdateRef $ olcDbDirectory $ olcDbC
heckpoint $ olcDbEnvFlags $ olcDbIndex $ olcDbMode $ olcDbCryptFile $ olcDb
PageSize $ olcDbLockDetect $ olcDbURI $ olcDbStartTLS $ olcDbACLPasswd $ ol
cDbACLBind $ olcDbIDAssertPasswd $ olcDbIDAssertBind $ olcDbIDAssertMode $
olcDbIDAssertAuthzFrom $ olcDbTFSupport $ olcDbTimeout $ olcDbIdleTimeout $
olcDbConnTtl $ olcDbNetworkTimeout $ olcDbCancel $ olcDbQuarantine $ olcDb
OnErr $ olcDbIDAssertPassThru $ olcDbKeepalive $ olcChainingBehavior $ olcD
bRewrite $ olcDbMap $ olcDbSubtreeExclude $ olcDbSubtreeInclude $ olcDbDefa
ultTarget $ olcDbDnCacheTtl $ olcDbBindTimeout $ olcDbNretries $ olcDbClien
tPr $ olcMetaSub $ olcDbFilter $ monitoredInfo $ managedInfo $ monitorConne
ctionLocalAddress $ monitorConnectionPeerAddress $ monitorOverlay $ restric
tedOperation $ monitorConnectionProtocol $ monitorConnectionMask $ monitorC
onnectionListener $ monitorConnectionPeerDomain $ monitorUpdateRef $ olcAud
itlogFile $ olcAccessLogOps $ olcAccessLogPurge $ olcAccessLogOld $ olcAcce
ssLogOldAttr $ olcAccessLogBase $ reqType $ reqSession $ reqMessage $ reqRe
ferral $ reqMethod $ reqAssertion $ reqScope $ reqDerefAliases $ reqFilter
$ reqAttr $ olcCollectInfo $ olcDlAttrSet $ olcRefintAttribute $ olcMemberO
fDangling $ olcMemberOfGroupOC $ olcMemberOfMemberAD $ olcMemberOfMemberOfA
D $ olcMemberOfDanglingError $ olcSpCheckpoint $ olcTranslucentLocal $ olcT
ranslucentRemote $ olcUniqueIgnore $ olcUniqueAttribute $ olcUniqueURI $ ol
cConstraintAttribute $ olcValSortAttr $ olcDDSmaxTtl $ olcDDSminTtl $ olcDD
SdefaultTtl $ olcDDSinterval $ olcDDStolerance $ olmDbDirectory $ knowledge
Information $ sn $ serialNumber $ c $ l $ st $ street $ o $ ou $ title $ bu
sinessCategory $ postalCode $ postOfficeBox $ physicalDeliveryOfficeName $
destinationIndicator $ givenName $ initials $ generationQualifier $ dnQuali
fier $ houseIdentifier $ dmdName $ pseudonym $ textEncodedORAddress $ info
$ drink $ roomNumber $ userClass $ host $ documentIdentifier $ documentTitl
e $ documentVersion $ documentLocation $ personalTitle $ co $ uniqueIdentif
ier $ organizationalStatus $ buildingName $ documentPublisher $ carLicense
$ departmentNumber $ displayName $ employeeNumber $ employeeType $ preferre
dLanguage $ ipServiceProtocol $ nisMapName $ javaClassName $ javaClassNames
$ javaFactory $ javaReferenceAddress $ corbaRepositoryId $ memberURL $ xml
PrivilegeInfo $ xmlPrivPolicy $ c-l $ c-st $ c-street $ c-o $ c-ou $ c-Post
alCode $ c-PostOfficeBox $ c-PhysicalDeliveryOfficeName $ authorizedService
$ defaultServerList $ preferredServerList $ authenticationMethod $ service
SearchDescriptor $ serviceAuthenticationMethod $ entrustRoamingId $ eduPers
onAffiliation $ eduPersonNickname $ eduPersonPrimaryAffiliation $ eduPerson
PrincipalName $ eduPersonEntitlement $ eduPersonScopedAffiliation $ eduOrgL
egalName $ schacMotherTongue $ schacPlaceOfBirth $ schacCountryOfCitizenshi
p $ schacSn1 $ schacSn2 $ schacPersonalTitle $ schacHomeOrganization $ scha
cHomeOrganizationType $ schacCountryOfResidence $ schacUserPresenceID $ sch
acPersonalPosition $ schacPersonalUniqueCode $ schacPersonalUniqueID $ scha
cUserStatus $ schacProjectMembership $ schacProjectSpecificRole $ nisDomain
$ SolarisLDAPServers $ SolarisSearchBaseDN $ SolarisBindDN $ SolarisBindPa
ssword $ SolarisAuthMethod $ SolarisTransportSecurity $ SolarisDataSearchDN
$ SolarisSearchScope $ SolarisPreferedServer $ SolarisPreferedServerOnly $
SolarisSearchReferral $ middleName $ xmozillanickname $ mozillaHomeLocalit
yName $ mozillaHomeState $ mozillaHomePostalCode $ mozillaHomeCountryName $
mozillaHomeFriendlyCountryName $ sambaLogonScript $ sambaProfilePath $ sam
baUserWorkstations $ sambaHomePath $ sambaDomainName $ sambaMungedDial $ sa
mbaShareName $ sambaOptionName $ sambaStringListOption $ sambaTrustPartner
$ sambaFlatName $ sambaTrustAuthOutgoing $ sambaTrustAuthIncoming $ sambaTr
ustForestTrustInfo $ krbLdapServers $ krbPrincNamingAttr $ krbDefaultEncSal
tTypes $ krbSupportedEncSaltTypes $ krbPrincipalAuthInd $ esgSid $ esgSN $
esgInfo $ esgInfoUri $ esgContact $ esgCategory $ esgTool $ esgSource $ esg
Format $ esgStreamUri $ esgSdpUri $ dlzZoneName $ dlzHostName $ dlzData $ d
lzType $ dlzAdminEmail $ dlzPrimaryNS $ dlzCName $ dlzRecordID $ x509keyUsa
ge $ vPIMTelephoneNumber $ vPIMTextName $ AstContext $ AstExtension $ AstPr
iority $ AstApplication $ AstApplicationData $ AstAccountAMAFlags $ AstAcco
untCallerID $ AstAccountContext $ AstAccountMailbox $ AstMD5secret $ AstAcc
ountDeny $ AstAccountPermit $ AstAccountQualify $ AstAccountType $ AstAccou
ntDisallowedCodec $ AstAccountExpirationTimestamp $ AstAccountRegistrationC
ontext $ AstAccountRegistrationExten $ AstAccountNoTransfer $ AstAccountCal
lGroup $ AstAccountCanReinvite $ AstAccountDTMFMode $ AstAccountFromUser $
AstAccountFromDomain $ AstAccountFullContact $ AstAccountHost $ AstAccountI
nsecure $ AstAccountNAT $ AstAccountPickupGroup $ AstAccountPort $ AstAccou
ntRestrictCID $ AstAccountRTPTimeout $ AstAccountRTPHoldTimeout $ AstAccoun
tRealmedPassword $ AstAccountAllowedCodec $ AstAccountMusicOnHold $ AstAcco
untCanCallForward $ AstAccountSecret $ AstAccountName $ AstConfigFilename $
AstConfigCategory $ AstConfigCategoryMetric $ AstConfigVariableName $ AstC
onfigVariableValue $ AstConfigCommented $ AstAccountIPAddress $ AstAccountD
efaultUser $ AstAccountRegistrationServer $ AstAccountLastQualifyMillisecon
ds $ AstAccountCallLimit $ AstVoicemailMailbox $ AstVoicemailPassword $ Ast
VoicemailFullname $ AstVoicemailEmail $ AstVoicemailPager $ AstVoicemailOpt
ions $ AstVoicemailTimestamp $ AstVoicemailContext $ AstAccountSubscribeCon
text $ AstAccountUserAgent $ AstAccountLanguage $ AstAccountTransport $ Ast
AccountPromiscRedir $ AstAccountAccountCode $ AstAccountSetVar $ AstAccount
AllowOverlap $ AstAccountVideoSupport $ AstAccountIgnoreSDPVersion $ AstAcc
ountPathSupport $ pgpSoftware $ pgpVersion $ pgpCertID $ pgpDisabled $ pgpK
eyID $ pgpKeyType $ pgpUserID $ pgpKeyCreateTime $ pgpSignerID $ pgpRevoked
$ pgpSubKeyID $ pgpKeySize $ pgpKeyExpireTime $ pgpReconCertID $ pgpElemen
tType $ calCalURI $ calFBURL $ calCAPURI $ calCalAdrURI $ calOtherCalURIs $
calOtherFBURLs $ calOtherCAPURIs $ calOtherCalAdrURIs $ turbaMembers $ arr
ayIndex $ dlmIdentifyingDescription $ dlmOtherIdentifyingInfo $ orderedCimK
eys $ orderedCimModelPath $ dlmCaption $ dlmDescription $ dlmName $ dlmStat
us $ dlmCreationClassName $ dlmNameFormat $ dlmPrimaryOwnerContact $ dlmPri
maryOwnerName $ dlmRoles $ dlmStartMode $ dlmSettingID $ dlm1FilterListDire
ction $ dlmProtocolType $ dlmOtherTypeDescription $ dlmIPAddress $ dlmIPSub
netMask $ dlmIPAddressType $ dlmIPVersionSupport $ dlmElementID $ dlmRemote
ID $ dlmAlgorithm $ dlmProtocol $ dlmSecret $ pcimRoles $ pcimKeywords $ pc
imGroupName $ pcimRuleName $ pcimRuleUsage $ pcimConditionName $ pcimAction
Name $ pcimRepositoryName $ pcelsPolicySetName $ pcelsVariableName $ pcelsV
ariableModelClass $ pcelsVariableModelProperty $ pcelsExpectedValueTypes $
pcelsValueName $ pcelsIPv4AddrList $ pcelsIPv6AddrList $ pcelsMACAddrList $
pcelsStringList $ pcelsBitStringList $ pcelsIntegerList $ pcelsReusableCon
tainerName $ pcelsRole $ pcelsRoleCollectionName $ pcelsFilterName $ pcelsF
ilterListName $ demailMaxAuthLevel $ fedfsAnnotation $ fedfsDescr $ fedfsNf
sURI $ commURI $ commOwner $ SIPIdentitySIPURI $ SIPIdentityUserName $ radi
usClientIdentifier $ radiusClientSecret $ radiusClientShortname $ radiusCli
entVirtualServer $ radiusClientType $ radiusClientComment $ birthPlace $ bi
rthName $ businessTitle $ academicTitle $ nickName $ labeledBICandIBAN $ ge
rmanTaxNr $ germanUniqueTaxIDNr $ musicalInstrument $ musicalOrchestra $ mu
sicalArtistName $ germanBankName $ germanBankAccountInfo $ germanBankAccoun
tHolder $ intlMailAddr $ oathTokenSerialNumber $ oathTokenIdentifier $ oath
Message $ oathSuccessMessage $ oathFailureMessage $ 1.3.6.1.4.1.5427.1.389.
42.1 $ aeRemoteHost $ aeSourceUri $ aeTag $ aeSSHProxyCommand $ aeStockId $
aeHwSerialNumber $ aeDeviceSlot $ aeDevicePort ) )
matchingRules: ( 1.3.6.1.4.1.4203.666.4.2 NAME 'OpenLDAPaciMatch' SYNTAX 1.3
.6.1.4.1.4203.666.2.1 )
matchingRules: ( 1.3.6.1.4.1.4203.666.4.12 NAME 'authzMatch' SYNTAX 1.3.6.1.
4.1.4203.666.2.7 )
matchingRules: ( 1.3.6.1.4.1.4203.666.11.2.5 NAME 'CSNSIDMatch' SYNTAX 1.3.6
.1.4.1.4203.666.11.2.4 )
matchingRules: ( 1.3.6.1.4.1.4203.666.11.2.3 NAME 'CSNOrderingMatch' SYNTAX
1.3.6.1.4.1.4203.666.11.2.1 )
matchingRules: ( 1.3.6.1.4.1.4203.666.11.2.2 NAME 'CSNMatch' SYNTAX 1.3.6.1.
4.1.4203.666.11.2.1 )
matchingRules: ( 1.3.6.1.1.16.3 NAME 'UUIDOrderingMatch' SYNTAX 1.3.6.1.1.16
.1 )
matchingRules: ( 1.3.6.1.1.16.2 NAME 'UUIDMatch' SYNTAX 1.3.6.1.1.16.1 )
matchingRules: ( 1.2.840.113556.1.4.804 NAME 'integerBitOrMatch' SYNTAX 1.3.
6.1.4.1.1466.115.121.1.27 )
matchingRules: ( 1.2.840.113556.1.4.803 NAME 'integerBitAndMatch' SYNTAX 1.3
.6.1.4.1.1466.115.121.1.27 )
matchingRules: ( 1.3.6.1.4.1.4203.1.2.1 NAME 'caseExactIA5SubstringsMatch' S
YNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
matchingRules: ( 1.3.6.1.4.1.1466.109.114.3 NAME 'caseIgnoreIA5SubstringsMat
ch' SYNTAX 1.3.6.1.4.1.1466.115.121.1.26 )
matchingRules: ( 1.3.6.1.4.1.1466.109.114.2 NAME 'caseIgnoreIA5Match' SYNTAX
1.3.6.1.4.1.1466.115.121.1.26 )
matchingRules: ( 1.3.6.1.4.1.1466.109.114.1 NAME 'caseExactIA5Match' SYNTAX
1.3.6.1.4.1.1466.115.121.1.26 )
matchingRules: ( 2.5.13.45 NAME 'attributeCertificateExactMatch' SYNTAX 1.3.
6.1.4.1.4203.666.11.10.2.2 )
matchingRules: ( 2.5.13.38 NAME 'certificateListExactMatch' SYNTAX 1.3.6.1.1
.15.5 )
matchingRules: ( 2.5.13.34 NAME 'certificateExactMatch' SYNTAX 1.3.6.1.1.15.
1 )
matchingRules: ( 2.5.13.30 NAME 'objectIdentifierFirstComponentMatch' SYNTAX
1.3.6.1.4.1.1466.115.121.1.38 )
matchingRules: ( 2.5.13.29 NAME 'integerFirstComponentMatch' SYNTAX 1.3.6.1.
4.1.1466.115.121.1.27 )
matchingRules: ( 2.5.13.28 NAME 'generalizedTimeOrderingMatch' SYNTAX 1.3.6.
1.4.1.1466.115.121.1.24 )
matchingRules: ( 2.5.13.27 NAME 'generalizedTimeMatch' SYNTAX 1.3.6.1.4.1.14
66.115.121.1.24 )
matchingRules: ( 2.5.13.23 NAME 'uniqueMemberMatch' SYNTAX 1.3.6.1.4.1.1466.
115.121.1.34 )
matchingRules: ( 2.5.13.21 NAME 'telephoneNumberSubstringsMatch' SYNTAX 1.3.
6.1.4.1.1466.115.121.1.58 )
matchingRules: ( 2.5.13.20 NAME 'telephoneNumberMatch' SYNTAX 1.3.6.1.4.1.14
66.115.121.1.50 )
matchingRules: ( 2.5.13.19 NAME 'octetStringSubstringsMatch' SYNTAX 1.3.6.1.
4.1.1466.115.121.1.40 )
matchingRules: ( 2.5.13.18 NAME 'octetStringOrderingMatch' SYNTAX 1.3.6.1.4.
1.1466.115.121.1.40 )
matchingRules: ( 2.5.13.17 NAME 'octetStringMatch' SYNTAX 1.3.6.1.4.1.1466.1
15.121.1.40 )
matchingRules: ( 2.5.13.16 NAME 'bitStringMatch' SYNTAX 1.3.6.1.4.1.1466.115
.121.1.6 )
matchingRules: ( 2.5.13.15 NAME 'integerOrderingMatch' SYNTAX 1.3.6.1.4.1.14
66.115.121.1.27 )
matchingRules: ( 2.5.13.14 NAME 'integerMatch' SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.27 )
matchingRules: ( 2.5.13.13 NAME 'booleanMatch' SYNTAX 1.3.6.1.4.1.1466.115.1
21.1.7 )
matchingRules: ( 2.5.13.11 NAME 'caseIgnoreListMatch' SYNTAX 1.3.6.1.4.1.146
6.115.121.1.41 )
matchingRules: ( 2.5.13.10 NAME 'numericStringSubstringsMatch' SYNTAX 1.3.6.
1.4.1.1466.115.121.1.58 )
matchingRules: ( 2.5.13.9 NAME 'numericStringOrderingMatch' SYNTAX 1.3.6.1.4
.1.1466.115.121.1.36 )
matchingRules: ( 2.5.13.8 NAME 'numericStringMatch' SYNTAX 1.3.6.1.4.1.1466.
115.121.1.36 )
matchingRules: ( 2.5.13.7 NAME 'caseExactSubstringsMatch' SYNTAX 1.3.6.1.4.1
.1466.115.121.1.58 )
matchingRules: ( 2.5.13.6 NAME 'caseExactOrderingMatch' SYNTAX 1.3.6.1.4.1.1
466.115.121.1.15 )
matchingRules: ( 2.5.13.5 NAME 'caseExactMatch' SYNTAX 1.3.6.1.4.1.1466.115.
121.1.15 )
matchingRules: ( 2.5.13.4 NAME 'caseIgnoreSubstringsMatch' SYNTAX 1.3.6.1.4.
1.1466.115.121.1.58 )
matchingRules: ( 2.5.13.3 NAME 'caseIgnoreOrderingMatch' SYNTAX 1.3.6.1.4.1.
1466.115.121.1.15 )
matchingRules: ( 2.5.13.2 NAME 'caseIgnoreMatch' SYNTAX 1.3.6.1.4.1.1466.115
.121.1.15 )
matchingRules: ( 1.2.36.79672281.1.13.3 NAME 'rdnMatch' SYNTAX 1.2.36.796722
81.1.5.0 )
matchingRules: ( 1.3.6.1.4.1.4203.666.4.11 NAME 'dnSuperiorMatch' SYNTAX 1.3
.6.1.4.1.1466.115.121.1.12 )
matchingRules: ( 1.3.6.1.4.1.4203.666.4.10 NAME 'dnSubordinateMatch' SYNTAX
1.3.6.1.4.1.1466.115.121.1.12 )
matchingRules: ( 1.3.6.1.4.1.4203.666.4.8 NAME 'dnOneLevelMatch' SYNTAX 1.3.
6.1.4.1.1466.115.121.1.12 )
matchingRules: ( 1.3.6.1.4.1.4203.666.4.9 NAME 'dnSubtreeMatch' SYNTAX 1.3.6
.1.4.1.1466.115.121.1.12 )
matchingRules: ( 2.5.13.1 NAME 'distinguishedNameMatch' SYNTAX 1.3.6.1.4.1.1
466.115.121.1.12 )
matchingRules: ( 2.5.13.0 NAME 'objectIdentifierMatch' SYNTAX 1.3.6.1.4.1.14
66.115.121.1.38 )
matchingRules: ( 1.3.6.1.4.1.4203.666.4.5 NAME 'IA5StringApproxMatch' SYNTAX
1.3.6.1.4.1.1466.115.121.1.26 )
matchingRules: ( 1.3.6.1.4.1.4203.666.4.4 NAME 'directoryStringApproxMatch'
SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
objectClass: top
objectClass: subentry
objectClass: subschema
objectClass: extensibleObject
objectClasses: ( 2.5.6.0 NAME 'top' DESC 'top of the superclass chain' ABSTR
ACT MUST objectClass )
objectClasses: ( 1.3.6.1.4.1.1466.101.120.111 NAME 'extensibleObject' DESC '
RFC4512: extensible object' SUP top AUXILIARY )
objectClasses: ( 2.5.6.1 NAME 'alias' DESC 'RFC4512: an alias' SUP top STRUC
TURAL MUST aliasedObjectName )
objectClasses: ( 2.16.840.1.113730.3.2.6 NAME 'referral' DESC 'namedref: nam
ed subordinate referral' SUP top STRUCTURAL MUST ref )
objectClasses: ( 1.3.6.1.4.1.4203.1.4.1 NAME ( 'OpenLDAProotDSE' 'LDAProotDS
E' ) DESC 'OpenLDAP Root DSE object' SUP top STRUCTURAL MAY cn )
objectClasses: ( 2.5.17.0 NAME 'subentry' DESC 'RFC3672: subentry' SUP top S
TRUCTURAL MUST ( cn $ subtreeSpecification ) )
objectClasses: ( 2.5.20.1 NAME 'subschema' DESC 'RFC4512: controlling subsch
ema (sub)entry' AUXILIARY MAY ( dITStructureRules $ nameForms $ dITContentR
ules $ objectClasses $ attributeTypes $ matchingRules $ matchingRuleUse ) )
objectClasses: ( 2.5.17.2 NAME 'collectiveAttributeSubentry' DESC 'RFC3671:
collective attribute subentry' AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.1466.101.119.2 NAME 'dynamicObject' DESC 'RFC25
89: Dynamic Object' SUP top AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.4203.666.3.4 NAME 'glue' DESC 'Glue Entry' SUP
top STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.4203.666.3.5 NAME 'syncConsumerSubentry' DESC '
Persistent Info for SyncRepl Consumer' AUXILIARY MAY syncreplCookie )
objectClasses: ( 1.3.6.1.4.1.4203.666.3.6 NAME 'syncProviderSubentry' DESC '
Persistent Info for SyncRepl Producer' AUXILIARY MAY contextCSN )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.0.0 NAME 'olcConfig' DESC 'OpenLD
AP configuration object' SUP top ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.0.1 NAME 'olcGlobal' DESC 'OpenLD
AP Global configuration options' SUP olcConfig STRUCTURAL MAY ( cn $ olcCon
figFile $ olcConfigDir $ olcAllows $ olcArgsFile $ olcAttributeOptions $ ol
cAuthIDRewrite $ olcAuthzPolicy $ olcAuthzRegexp $ olcConcurrency $ olcConn
MaxPending $ olcConnMaxPendingAuth $ olcDisallows $ olcGentleHUP $ olcIdleT
imeout $ olcIndexSubstrIfMaxLen $ olcIndexSubstrIfMinLen $ olcIndexSubstrAn
yLen $ olcIndexSubstrAnyStep $ olcIndexIntLen $ olcListenerThreads $ olcLoc
alSSF $ olcLogFile $ olcLogLevel $ olcPasswordCryptSaltFormat $ olcPassword
Hash $ olcPidFile $ olcPluginLogFile $ olcReadOnly $ olcReferral $ olcReplo
gFile $ olcRequires $ olcRestrict $ olcReverseLookup $ olcRootDSE $ olcSasl
Auxprops $ olcSaslHost $ olcSaslRealm $ olcSaslSecProps $ olcSecurity $ olc
ServerID $ olcSizeLimit $ olcSockbufMaxIncoming $ olcSockbufMaxIncomingAuth
$ olcTCPBuffer $ olcThreads $ olcTimeLimit $ olcTLSCACertificateFile $ olc
TLSCACertificatePath $ olcTLSCertificateFile $ olcTLSCertificateKeyFile $ o
lcTLSCipherSuite $ olcTLSCRLCheck $ olcTLSRandFile $ olcTLSVerifyClient $ o
lcTLSDHParamFile $ olcTLSCRLFile $ olcTLSProtocolMin $ olcToolThreads $ olc
WriteTimeout $ olcObjectIdentifier $ olcAttributeTypes $ olcObjectClasses $
olcDitContentRules $ olcLdapSyntaxes ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.0.2 NAME 'olcSchemaConfig' DESC '
OpenLDAP schema object' SUP olcConfig STRUCTURAL MAY ( cn $ olcObjectIdenti
fier $ olcLdapSyntaxes $ olcAttributeTypes $ olcObjectClasses $ olcDitConte
ntRules ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.0.3 NAME 'olcBackendConfig' DESC
'OpenLDAP Backend-specific options' SUP olcConfig STRUCTURAL MUST olcBacken
d )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.0.4 NAME 'olcDatabaseConfig' DESC
'OpenLDAP Database-specific options' SUP olcConfig STRUCTURAL MUST olcData
base MAY ( olcHidden $ olcSuffix $ olcSubordinate $ olcAccess $ olcAddConte
ntAcl $ olcLastMod $ olcLimits $ olcMaxDerefDepth $ olcPlugin $ olcReadOnly
$ olcReplica $ olcReplicaArgsFile $ olcReplicaPidFile $ olcReplicationInte
rval $ olcReplogFile $ olcRequires $ olcRestrict $ olcRootDN $ olcRootPW $
olcSchemaDN $ olcSecurity $ olcSizeLimit $ olcSyncUseSubentry $ olcSyncrepl
$ olcTimeLimit $ olcUpdateDN $ olcUpdateRef $ olcMirrorMode $ olcMonitorin
g $ olcExtraAttrs ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.0.5 NAME 'olcOverlayConfig' DESC
'OpenLDAP Overlay-specific options' SUP olcConfig STRUCTURAL MUST olcOverla
y )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.0.6 NAME 'olcIncludeFile' DESC 'O
penLDAP configuration include file' SUP olcConfig STRUCTURAL MUST olcInclud
e MAY ( cn $ olcRootDSE ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.0.7 NAME 'olcFrontendConfig' DESC
'OpenLDAP frontend configuration' AUXILIARY MAY ( olcDefaultSearchBase $ o
lcPasswordHash $ olcSortVals ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.0.8 NAME 'olcModuleList' DESC 'Op
enLDAP dynamic module info' SUP olcConfig STRUCTURAL MAY ( cn $ olcModulePa
th $ olcModuleLoad ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.2.2.1 NAME 'olcLdifConfig' DESC '
LDIF backend configuration' SUP olcDatabaseConfig STRUCTURAL MUST olcDbDire
ctory )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.2.12.1 NAME 'olcMdbConfig' DESC '
MDB backend configuration' SUP olcDatabaseConfig STRUCTURAL MUST olcDbDirec
tory MAY ( olcDbCheckpoint $ olcDbEnvFlags $ olcDbNoSync $ olcDbIndex $ olc
DbMaxReaders $ olcDbMaxSize $ olcDbMode $ olcDbSearchStack $ olcDbRtxnSize
) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.2.1.2 NAME 'olcHdbConfig' DESC 'H
DB backend configuration' SUP olcDatabaseConfig STRUCTURAL MUST olcDbDirect
ory MAY ( olcDbCacheSize $ olcDbCheckpoint $ olcDbChecksum $ olcDbConfig $
olcDbCryptFile $ olcDbCryptKey $ olcDbNoSync $ olcDbDirtyRead $ olcDbIDLcac
heSize $ olcDbIndex $ olcDbLinearIndex $ olcDbLockDetect $ olcDbMode $ olcD
bSearchStack $ olcDbShmKey $ olcDbCacheFree $ olcDbDNcacheSize $ olcDbPageS
ize ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.2.3.1 NAME 'olcLDAPConfig' DESC '
LDAP backend configuration' SUP olcDatabaseConfig STRUCTURAL MAY ( olcDbURI
$ olcDbStartTLS $ olcDbACLAuthcDn $ olcDbACLPasswd $ olcDbACLBind $ olcDbI
DAssertAuthcDn $ olcDbIDAssertPasswd $ olcDbIDAssertBind $ olcDbIDAssertMod
e $ olcDbIDAssertAuthzFrom $ olcDbIDAssertPassThru $ olcDbRebindAsUser $ ol
cDbChaseReferrals $ olcDbTFSupport $ olcDbProxyWhoAmI $ olcDbTimeout $ olcD
bIdleTimeout $ olcDbConnTtl $ olcDbNetworkTimeout $ olcDbProtocolVersion $
olcDbSingleConn $ olcDbCancel $ olcDbQuarantine $ olcDbUseTemporaryConn $ o
lcDbConnectionPoolMax $ olcDbSessionTrackingRequest $ olcDbNoRefs $ olcDbNo
UndefFilter $ olcDbOnErr $ olcDbKeepalive ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.3.1 NAME 'olcChainConfig' DESC
'Chain configuration' SUP olcOverlayConfig STRUCTURAL MAY ( olcChainingBeha
vior $ olcChainCacheURI $ olcChainMaxReferralDepth $ olcChainReturnError )
)
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.3.2 NAME 'olcChainDatabase' DES
C 'Chain remote server configuration' AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.3.3 NAME 'olcPBindConfig' DESC
'Proxy Bind configuration' SUP olcOverlayConfig STRUCTURAL MUST olcDbURI MA
Y ( olcDbStartTLS $ olcDbNetworkTimeout $ olcDbQuarantine ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.7.1 NAME 'olcDistProcConfig' DE
SC 'Distributed procedures <draft-sermersheim-ldap-distproc> configuration'
SUP olcOverlayConfig STRUCTURAL MAY ( olcChainingBehavior $ olcChainCacheU
RI ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.7.2 NAME 'olcDistProcDatabase'
DESC 'Distributed procedure remote server configuration' AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.2.3.2 NAME 'olcMetaConfig' DESC '
Meta backend configuration' SUP olcDatabaseConfig STRUCTURAL MAY ( olcDbCon
nTtl $ olcDbDnCacheTtl $ olcDbIdleTimeout $ olcDbOnErr $ olcDbPseudoRootBin
dDefer $ olcDbSingleConn $ olcDbUseTemporaryConn $ olcDbConnectionPoolMax $
olcDbBindTimeout $ olcDbCancel $ olcDbChaseReferrals $ olcDbClientPr $ olc
DbDefaultTarget $ olcDbNetworkTimeout $ olcDbNoRefs $ olcDbNoUndefFilter $
olcDbNretries $ olcDbProtocolVersion $ olcDbQuarantine $ olcDbRebindAsUser
$ olcDbSessionTrackingRequest $ olcDbStartTLS $ olcDbTFSupport ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.2.3.3 NAME 'olcMetaTargetConfig'
DESC 'Meta target configuration' SUP olcConfig STRUCTURAL MUST ( olcMetaSub
$ olcDbURI ) MAY ( olcDbACLAuthcDn $ olcDbACLPasswd $ olcDbIDAssertAuthzFr
om $ olcDbIDAssertBind $ olcDbMap $ olcDbRewrite $ olcDbSubtreeExclude $ ol
cDbSubtreeInclude $ olcDbTimeout $ olcDbKeepalive $ olcDbFilter $ olcDbBind
Timeout $ olcDbCancel $ olcDbChaseReferrals $ olcDbClientPr $ olcDbDefaultT
arget $ olcDbNetworkTimeout $ olcDbNoRefs $ olcDbNoUndefFilter $ olcDbNretr
ies $ olcDbProtocolVersion $ olcDbQuarantine $ olcDbRebindAsUser $ olcDbSes
sionTrackingRequest $ olcDbStartTLS $ olcDbTFSupport ) )
objectClasses: ( 1.3.6.1.4.1.4203.666.3.16.1 NAME 'monitor' DESC 'OpenLDAP s
ystem monitoring' SUP top STRUCTURAL MUST cn MAY ( description $ seeAlso $
labeledURI $ monitoredInfo $ managedInfo $ monitorOverlay ) )
objectClasses: ( 1.3.6.1.4.1.4203.666.3.16.2 NAME 'monitorServer' DESC 'Serv
er monitoring root entry' SUP monitor STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.4203.666.3.16.3 NAME 'monitorContainer' DESC 'm
onitor container class' SUP monitor STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.4203.666.3.16.4 NAME 'monitorCounterObject' DES
C 'monitor counter class' SUP monitor STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.4203.666.3.16.5 NAME 'monitorOperation' DESC 'm
onitor operation class' SUP monitor STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.4203.666.3.16.6 NAME 'monitorConnection' DESC '
monitor connection class' SUP monitor STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.4203.666.3.16.7 NAME 'managedObject' DESC 'moni
tor managed entity class' SUP monitor STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.4203.666.3.16.8 NAME 'monitoredObject' DESC 'mo
nitor monitored entity class' SUP monitor STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.2.4.1 NAME 'olcMonitorConfig' DES
C 'Monitor backend configuration' SUP olcDatabaseConfig STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.2.5.1 NAME 'olcRelayConfig' DESC
'Relay backend configuration' SUP olcDatabaseConfig STRUCTURAL MAY olcRelay
)
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.15.1 NAME 'olcAuditlogConfig' D
ESC 'Auditlog configuration' SUP olcOverlayConfig STRUCTURAL MAY olcAuditlo
gFile )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.4.1 NAME 'olcAccessLogConfig' D
ESC 'Access log configuration' SUP olcOverlayConfig STRUCTURAL MUST olcAcce
ssLogDB MAY ( olcAccessLogOps $ olcAccessLogPurge $ olcAccessLogSuccess $ o
lcAccessLogOld $ olcAccessLogOldAttr $ olcAccessLogBase ) )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.0 NAME 'auditContainer' DESC 'A
uditLog container' SUP top STRUCTURAL MAY ( cn $ reqStart $ reqEnd ) )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.1 NAME 'auditObject' DESC 'Open
LDAP request auditing' SUP top STRUCTURAL MUST ( reqStart $ reqType $ reqSe
ssion ) MAY ( reqDN $ reqAuthzID $ reqControls $ reqRespControls $ reqEnd $
reqResult $ reqMessage $ reqReferral $ reqEntryUUID ) )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.2 NAME 'auditReadObject' DESC '
OpenLDAP read request record' SUP auditObject STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.3 NAME 'auditWriteObject' DESC
'OpenLDAP write request record' SUP auditObject STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.4 NAME 'auditAbandon' DESC 'Aba
ndon operation' SUP auditObject STRUCTURAL MUST reqId )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.5 NAME 'auditAdd' DESC 'Add ope
ration' SUP auditWriteObject STRUCTURAL MUST reqMod )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.6 NAME 'auditBind' DESC 'Bind o
peration' SUP auditObject STRUCTURAL MUST ( reqVersion $ reqMethod ) )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.7 NAME 'auditCompare' DESC 'Com
pare operation' SUP auditReadObject STRUCTURAL MUST reqAssertion )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.8 NAME 'auditDelete' DESC 'Dele
te operation' SUP auditWriteObject STRUCTURAL MAY reqOld )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.9 NAME 'auditModify' DESC 'Modi
fy operation' SUP auditWriteObject STRUCTURAL MUST reqMod MAY reqOld )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.10 NAME 'auditModRDN' DESC 'Mod
RDN operation' SUP auditWriteObject STRUCTURAL MUST ( reqNewRDN $ reqDelete
OldRDN ) MAY ( reqNewSuperior $ reqMod $ reqOld ) )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.11 NAME 'auditSearch' DESC 'Sea
rch operation' SUP auditReadObject STRUCTURAL MUST ( reqScope $ reqDerefAli
ases $ reqAttrsonly ) MAY ( reqFilter $ reqAttr $ reqEntries $ reqSizeLimit
$ reqTimeLimit ) )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.5.2.12 NAME 'auditExtended' DESC 'E
xtended operation' SUP auditObject STRUCTURAL MAY reqData )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.19.1 NAME 'olcCollectConfig' DE
SC 'Collective Attribute configuration' SUP olcOverlayConfig STRUCTURAL MAY
olcCollectInfo )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.8.1 NAME 'olcDynamicList' DESC
'Dynamic list configuration' SUP olcOverlayConfig STRUCTURAL MAY olcDLattrS
et )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.11.1 NAME 'olcRefintConfig' DES
C 'Referential integrity configuration' SUP olcOverlayConfig STRUCTURAL MAY
( olcRefintAttribute $ olcRefintNothing $ olcRefintModifiersName ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.18.1 NAME 'olcMemberOf' DESC 'M
ember-of configuration' SUP olcOverlayConfig STRUCTURAL MAY ( olcMemberOfDN
$ olcMemberOfDangling $ olcMemberOfDanglingError $ olcMemberOfRefInt $ olc
MemberOfGroupOC $ olcMemberOfMemberAD $ olcMemberOfMemberOfAD ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.1.1 NAME 'olcSyncProvConfig' DE
SC 'SyncRepl Provider configuration' SUP olcOverlayConfig STRUCTURAL MAY (
olcSpCheckpoint $ olcSpSessionlog $ olcSpNoPresent $ olcSpReloadHint ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.14.1 NAME 'olcTranslucentConfig
' DESC 'Translucent configuration' SUP olcOverlayConfig STRUCTURAL MAY ( ol
cTranslucentStrict $ olcTranslucentNoGlue $ olcTranslucentLocal $ olcTransl
ucentRemote $ olcTranslucentBindLocal $ olcTranslucentPwModLocal ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.14.2 NAME 'olcTranslucentDataba
se' DESC 'Translucent target database configuration' AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.10.1 NAME 'olcUniqueConfig' DES
C 'Attribute value uniqueness configuration' SUP olcOverlayConfig STRUCTURA
L MAY ( olcUniqueBase $ olcUniqueIgnore $ olcUniqueAttribute $ olcUniqueStr
ict $ olcUniqueURI ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.13.1 NAME 'olcConstraintConfig'
DESC 'Constraint overlay configuration' SUP olcOverlayConfig STRUCTURAL MA
Y olcConstraintAttribute )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.5.1 NAME 'olcValSortConfig' DES
C 'Value Sorting configuration' SUP olcOverlayConfig STRUCTURAL MUST olcVal
SortAttr )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.21.1 NAME 'olcSssVlvConfig' DES
C 'SSS VLV configuration' SUP olcOverlayConfig STRUCTURAL MAY ( olcSssVlvMa
x $ olcSssVlvMaxKeys $ olcSssVlvMaxPerConn ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.12.1 NAME 'olcPPolicyConfig' DE
SC 'Password Policy configuration' SUP olcOverlayConfig STRUCTURAL MAY ( ol
cPPolicyDefault $ olcPPolicyHashCleartext $ olcPPolicyUseLockout $ olcPPoli
cyForwardUpdates ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.3.9.1 NAME 'olcDDSConfig' DESC 'R
FC2589 Dynamic directory services configuration' SUP olcOverlayConfig STRUC
TURAL MAY ( olcDDSstate $ olcDDSmaxTtl $ olcDDSminTtl $ olcDDSdefaultTtl $
olcDDSinterval $ olcDDStolerance $ olcDDSmaxDynamicObjects ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.12.2.4.4.5.1 NAME 'olcLastBindConfig' DE
SC 'Last Bind configuration' SUP olcOverlayConfig STRUCTURAL MAY olcLastBin
dPrecision )
objectClasses: ( 1.3.6.1.4.1.4203.666.3.16.0.1.1.2 NAME 'olmMDBDatabase' SUP
top AUXILIARY MAY olmDbDirectory )
objectClasses: ( 2.5.6.2 NAME 'country' DESC 'RFC2256: a country' SUP top ST
RUCTURAL MUST c MAY ( searchGuide $ description ) )
objectClasses: ( 2.5.6.3 NAME 'locality' DESC 'RFC2256: a locality' SUP top
STRUCTURAL MAY ( street $ seeAlso $ searchGuide $ st $ l $ description ) )
objectClasses: ( 2.5.6.4 NAME 'organization' DESC 'RFC2256: an organization'
SUP top STRUCTURAL MUST o MAY ( userPassword $ searchGuide $ seeAlso $ bus
inessCategory $ x121Address $ registeredAddress $ destinationIndicator $ pr
eferredDeliveryMethod $ telexNumber $ teletexTerminalIdentifier $ telephone
Number $ internationaliSDNNumber $ facsimileTelephoneNumber $ street $ post
OfficeBox $ postalCode $ postalAddress $ physicalDeliveryOfficeName $ st $
l $ description ) )
objectClasses: ( 2.5.6.5 NAME 'organizationalUnit' DESC 'RFC2256: an organiz
ational unit' SUP top STRUCTURAL MUST ou MAY ( userPassword $ searchGuide $
seeAlso $ businessCategory $ x121Address $ registeredAddress $ destination
Indicator $ preferredDeliveryMethod $ telexNumber $ teletexTerminalIdentifi
er $ telephoneNumber $ internationaliSDNNumber $ facsimileTelephoneNumber $
street $ postOfficeBox $ postalCode $ postalAddress $ physicalDeliveryOffi
ceName $ st $ l $ description ) )
objectClasses: ( 2.5.6.6 NAME 'person' DESC 'RFC2256: a person' SUP top STRU
CTURAL MUST ( sn $ cn ) MAY ( userPassword $ telephoneNumber $ seeAlso $ de
scription ) )
objectClasses: ( 2.5.6.7 NAME 'organizationalPerson' DESC 'RFC2256: an organ
izational person' SUP person STRUCTURAL MAY ( title $ x121Address $ registe
redAddress $ destinationIndicator $ preferredDeliveryMethod $ telexNumber $
teletexTerminalIdentifier $ telephoneNumber $ internationaliSDNNumber $ fa
csimileTelephoneNumber $ street $ postOfficeBox $ postalCode $ postalAddres
s $ physicalDeliveryOfficeName $ ou $ st $ l ) )
objectClasses: ( 2.5.6.8 NAME 'organizationalRole' DESC 'RFC2256: an organiz
ational role' SUP top STRUCTURAL MUST cn MAY ( x121Address $ registeredAddr
ess $ destinationIndicator $ preferredDeliveryMethod $ telexNumber $ telete
xTerminalIdentifier $ telephoneNumber $ internationaliSDNNumber $ facsimile
TelephoneNumber $ seeAlso $ roleOccupant $ preferredDeliveryMethod $ street
$ postOfficeBox $ postalCode $ postalAddress $ physicalDeliveryOfficeName
$ ou $ st $ l $ description ) )
objectClasses: ( 2.5.6.9 NAME 'groupOfNames' DESC 'RFC2256: a group of names
(DNs)' SUP top STRUCTURAL MUST ( member $ cn ) MAY ( businessCategory $ se
eAlso $ owner $ ou $ o $ description ) )
objectClasses: ( 2.5.6.10 NAME 'residentialPerson' DESC 'RFC2256: an residen
tial person' SUP person STRUCTURAL MUST l MAY ( businessCategory $ x121Addr
ess $ registeredAddress $ destinationIndicator $ preferredDeliveryMethod $
telexNumber $ teletexTerminalIdentifier $ telephoneNumber $ internationaliS
DNNumber $ facsimileTelephoneNumber $ preferredDeliveryMethod $ street $ po
stOfficeBox $ postalCode $ postalAddress $ physicalDeliveryOfficeName $ st
$ l ) )
objectClasses: ( 2.5.6.11 NAME 'applicationProcess' DESC 'RFC2256: an applic
ation process' SUP top STRUCTURAL MUST cn MAY ( seeAlso $ ou $ l $ descript
ion ) )
objectClasses: ( 2.5.6.12 NAME 'applicationEntity' DESC 'RFC2256: an applica
tion entity' SUP top STRUCTURAL MUST ( presentationAddress $ cn ) MAY ( sup
portedApplicationContext $ seeAlso $ ou $ o $ l $ description ) )
objectClasses: ( 2.5.6.13 NAME 'dSA' DESC 'RFC2256: a directory system agent
(a server)' SUP applicationEntity STRUCTURAL MAY knowledgeInformation )
objectClasses: ( 2.5.6.14 NAME 'device' DESC 'RFC2256: a device' SUP top STR
UCTURAL MUST cn MAY ( serialNumber $ seeAlso $ owner $ ou $ o $ l $ descrip
tion ) )
objectClasses: ( 2.5.6.15 NAME 'strongAuthenticationUser' DESC 'RFC2256: a s
trong authentication user' SUP top AUXILIARY MUST userCertificate )
objectClasses: ( 2.5.6.16 NAME 'certificationAuthority' DESC 'RFC2256: a cer
tificate authority' SUP top AUXILIARY MUST ( authorityRevocationList $ cert
ificateRevocationList $ cACertificate ) MAY crossCertificatePair )
objectClasses: ( 2.5.6.17 NAME 'groupOfUniqueNames' DESC 'RFC2256: a group o
f unique names (DN and Unique Identifier)' SUP top STRUCTURAL MUST ( unique
Member $ cn ) MAY ( businessCategory $ seeAlso $ owner $ ou $ o $ descripti
on ) )
objectClasses: ( 2.5.6.18 NAME 'userSecurityInformation' DESC 'RFC2256: a us
er security information' SUP top AUXILIARY MAY supportedAlgorithms )
objectClasses: ( 2.5.6.16.2 NAME 'certificationAuthority-V2' SUP certificati
onAuthority AUXILIARY MAY deltaRevocationList )
objectClasses: ( 2.5.6.19 NAME 'cRLDistributionPoint' SUP top STRUCTURAL MUS
T cn MAY ( certificateRevocationList $ authorityRevocationList $ deltaRevoc
ationList ) )
objectClasses: ( 2.5.6.20 NAME 'dmd' SUP top STRUCTURAL MUST dmdName MAY ( u
serPassword $ searchGuide $ seeAlso $ businessCategory $ x121Address $ regi
steredAddress $ destinationIndicator $ preferredDeliveryMethod $ telexNumbe
r $ teletexTerminalIdentifier $ telephoneNumber $ internationaliSDNNumber $
facsimileTelephoneNumber $ street $ postOfficeBox $ postalCode $ postalAdd
ress $ physicalDeliveryOfficeName $ st $ l $ description ) )
objectClasses: ( 2.5.6.21 NAME 'pkiUser' DESC 'RFC2587: a PKI user' SUP top
AUXILIARY MAY userCertificate )
objectClasses: ( 2.5.6.22 NAME 'pkiCA' DESC 'RFC2587: PKI certificate author
ity' SUP top AUXILIARY MAY ( authorityRevocationList $ certificateRevocatio
nList $ cACertificate $ crossCertificatePair ) )
objectClasses: ( 2.5.6.23 NAME 'deltaCRL' DESC 'RFC2587: PKI user' SUP top A
UXILIARY MAY deltaRevocationList )
objectClasses: ( 1.3.6.1.4.1.250.3.15 NAME 'labeledURIObject' DESC 'RFC2079:
object that contains the URI attribute type' SUP top AUXILIARY MAY labeled
URI )
objectClasses: ( 0.9.2342.19200300.100.4.19 NAME 'simpleSecurityObject' DESC
'RFC1274: simple security object' SUP top AUXILIARY MUST userPassword )
objectClasses: ( 1.3.6.1.4.1.1466.344 NAME 'dcObject' DESC 'RFC2247: domain
component object' SUP top AUXILIARY MUST dc )
objectClasses: ( 1.3.6.1.1.3.1 NAME 'uidObject' DESC 'RFC2377: uid object' S
UP top AUXILIARY MUST uid )
objectClasses: ( 0.9.2342.19200300.100.4.4 NAME ( 'pilotPerson' 'newPilotPer
son' ) SUP person STRUCTURAL MAY ( userid $ textEncodedORAddress $ rfc822Ma
ilbox $ favouriteDrink $ roomNumber $ userClass $ homeTelephoneNumber $ hom
ePostalAddress $ secretary $ personalTitle $ preferredDeliveryMethod $ busi
nessCategory $ janetMailbox $ otherMailbox $ mobileTelephoneNumber $ pagerT
elephoneNumber $ organizationalStatus $ mailPreferenceOption $ personalSign
ature ) )
objectClasses: ( 0.9.2342.19200300.100.4.5 NAME 'account' SUP top STRUCTURAL
MUST userid MAY ( description $ seeAlso $ localityName $ organizationName
$ organizationalUnitName $ host ) )
objectClasses: ( 0.9.2342.19200300.100.4.6 NAME 'document' SUP top STRUCTURA
L MUST documentIdentifier MAY ( commonName $ description $ seeAlso $ locali
tyName $ organizationName $ organizationalUnitName $ documentTitle $ docume
ntVersion $ documentAuthor $ documentLocation $ documentPublisher ) )
objectClasses: ( 0.9.2342.19200300.100.4.7 NAME 'room' SUP top STRUCTURAL MU
ST commonName MAY ( roomNumber $ description $ seeAlso $ telephoneNumber )
)
objectClasses: ( 0.9.2342.19200300.100.4.9 NAME 'documentSeries' SUP top STR
UCTURAL MUST commonName MAY ( description $ seeAlso $ telephonenumber $ loc
alityName $ organizationName $ organizationalUnitName ) )
objectClasses: ( 0.9.2342.19200300.100.4.13 NAME 'domain' SUP top STRUCTURAL
MUST domainComponent MAY ( associatedName $ organizationName $ description
$ businessCategory $ seeAlso $ searchGuide $ userPassword $ localityName $
stateOrProvinceName $ streetAddress $ physicalDeliveryOfficeName $ postalA
ddress $ postalCode $ postOfficeBox $ streetAddress $ facsimileTelephoneNum
ber $ internationalISDNNumber $ telephoneNumber $ teletexTerminalIdentifier
$ telexNumber $ preferredDeliveryMethod $ destinationIndicator $ registere
dAddress $ x121Address ) )
objectClasses: ( 0.9.2342.19200300.100.4.14 NAME 'RFC822localPart' SUP domai
n STRUCTURAL MAY ( commonName $ surname $ description $ seeAlso $ telephone
Number $ physicalDeliveryOfficeName $ postalAddress $ postalCode $ postOffi
ceBox $ streetAddress $ facsimileTelephoneNumber $ internationalISDNNumber
$ telephoneNumber $ teletexTerminalIdentifier $ telexNumber $ preferredDeli
veryMethod $ destinationIndicator $ registeredAddress $ x121Address ) )
objectClasses: ( 0.9.2342.19200300.100.4.15 NAME 'dNSDomain' SUP domain STRU
CTURAL MAY ( ARecord $ MDRecord $ MXRecord $ NSRecord $ SOARecord $ CNAMERe
cord ) )
objectClasses: ( 0.9.2342.19200300.100.4.17 NAME 'domainRelatedObject' DESC
'RFC1274: an object related to an domain' SUP top AUXILIARY MUST associated
Domain )
objectClasses: ( 0.9.2342.19200300.100.4.18 NAME 'friendlyCountry' SUP count
ry STRUCTURAL MUST friendlyCountryName )
objectClasses: ( 0.9.2342.19200300.100.4.20 NAME 'pilotOrganization' SUP ( o
rganization $ organizationalUnit ) STRUCTURAL MAY buildingName )
objectClasses: ( 0.9.2342.19200300.100.4.21 NAME 'pilotDSA' SUP dsa STRUCTUR
AL MAY dSAQuality )
objectClasses: ( 0.9.2342.19200300.100.4.22 NAME 'qualityLabelledData' SUP t
op AUXILIARY MUST dsaQuality MAY ( subtreeMinimumQuality $ subtreeMaximumQu
ality ) )
objectClasses: ( 2.16.840.1.113730.3.2.2 NAME 'inetOrgPerson' DESC 'RFC2798:
Internet Organizational Person' SUP organizationalPerson STRUCTURAL MAY (
audio $ businessCategory $ carLicense $ departmentNumber $ displayName $ em
ployeeNumber $ employeeType $ givenName $ homePhone $ homePostalAddress $ i
nitials $ jpegPhoto $ labeledURI $ mail $ manager $ mobile $ o $ pager $ ph
oto $ roomNumber $ secretary $ uid $ userCertificate $ x500uniqueIdentifier
$ preferredLanguage $ userSMIMECertificate $ userPKCS12 ) )
objectClasses: ( 2.16.840.1.113730.3.2.147 NAME 'inetLocalMailRecipient' DES
C 'Internet local mail recipient' SUP top AUXILIARY MAY ( mailLocalAddress
$ mailHost $ mailRoutingAddress ) )
objectClasses: ( 1.3.6.1.4.1.42.2.27.1.2.5 NAME 'nisMailAlias' DESC 'NIS mai
l alias' SUP top STRUCTURAL MUST cn MAY rfc822MailMember )
objectClasses: ( 1.3.6.1.1.1.2.0 NAME 'posixAccount' DESC 'Abstraction of an
account with POSIX attributes' SUP top AUXILIARY MUST ( cn $ uid $ uidNumb
er $ gidNumber $ homeDirectory ) MAY ( userPassword $ loginShell $ gecos $
description ) )
objectClasses: ( 1.3.6.1.1.1.2.1 NAME 'shadowAccount' DESC 'Additional attri
butes for shadow passwords' SUP top AUXILIARY MUST uid MAY ( userPassword $
shadowLastChange $ shadowMin $ shadowMax $ shadowWarning $ shadowInactive
$ shadowExpire $ shadowFlag $ description ) )
objectClasses: ( 1.3.6.1.1.1.2.2 NAME 'posixGroup' DESC 'Abstraction of a gr
oup of accounts' SUP top STRUCTURAL MUST ( cn $ gidNumber ) MAY ( userPassw
ord $ memberUid $ description ) )
objectClasses: ( 1.3.6.1.1.1.2.3 NAME 'ipService' DESC 'Abstraction an Inter
net Protocol service' SUP top STRUCTURAL MUST ( cn $ ipServicePort $ ipServ
iceProtocol ) MAY description )
objectClasses: ( 1.3.6.1.1.1.2.4 NAME 'ipProtocol' DESC 'Abstraction of an I
P protocol' SUP top STRUCTURAL MUST ( cn $ ipProtocolNumber $ description )
MAY description )
objectClasses: ( 1.3.6.1.1.1.2.5 NAME 'oncRpc' DESC 'Abstraction of an ONC/R
PC binding' SUP top STRUCTURAL MUST ( cn $ oncRpcNumber $ description ) MAY
description )
objectClasses: ( 1.3.6.1.1.1.2.6 NAME 'ipHost' DESC 'Abstraction of a host,
an IP device' SUP top AUXILIARY MUST ( cn $ ipHostNumber ) MAY ( l $ descri
ption $ manager ) )
objectClasses: ( 1.3.6.1.1.1.2.7 NAME 'ipNetwork' DESC 'Abstraction of an IP
network' SUP top STRUCTURAL MUST ( cn $ ipNetworkNumber ) MAY ( ipNetmaskN
umber $ l $ description $ manager ) )
objectClasses: ( 1.3.6.1.1.1.2.8 NAME 'nisNetgroup' DESC 'Abstraction of a n
etgroup' SUP top STRUCTURAL MUST cn MAY ( nisNetgroupTriple $ memberNisNetg
roup $ description ) )
objectClasses: ( 1.3.6.1.1.1.2.9 NAME 'nisMap' DESC 'A generic abstraction o
f a NIS map' SUP top STRUCTURAL MUST nisMapName MAY description )
objectClasses: ( 1.3.6.1.1.1.2.10 NAME 'nisObject' DESC 'An entry in a NIS m
ap' SUP top STRUCTURAL MUST ( cn $ nisMapEntry $ nisMapName ) MAY descripti
on )
objectClasses: ( 1.3.6.1.1.1.2.11 NAME 'ieee802Device' DESC 'A device with a
MAC address' SUP top AUXILIARY MAY macAddress )
objectClasses: ( 1.3.6.1.1.1.2.12 NAME 'bootableDevice' DESC 'A device with
boot parameters' SUP top AUXILIARY MAY ( bootFile $ bootParameter ) )
objectClasses: ( 1.3.6.1.4.1.42.2.27.4.2.1 NAME 'javaContainer' DESC 'Contai
ner for a Java object' SUP top STRUCTURAL MUST cn )
objectClasses: ( 1.3.6.1.4.1.42.2.27.4.2.4 NAME 'javaObject' DESC 'Java obje
ct representation' SUP top ABSTRACT MUST javaClassName MAY ( javaClassNames
$ javaCodebase $ javaDoc $ description ) )
objectClasses: ( 1.3.6.1.4.1.42.2.27.4.2.5 NAME 'javaSerializedObject' DESC
'Java serialized object' SUP javaObject AUXILIARY MUST javaSerializedData )
objectClasses: ( 1.3.6.1.4.1.42.2.27.4.2.8 NAME 'javaMarshalledObject' DESC
'Java marshalled object' SUP javaObject AUXILIARY MUST javaSerializedData )
objectClasses: ( 1.3.6.1.4.1.42.2.27.4.2.7 NAME 'javaNamingReference' DESC '
JNDI reference' SUP javaObject AUXILIARY MAY ( javaReferenceAddress $ javaF
actory ) )
objectClasses: ( 1.3.6.1.4.1.42.2.27.4.2.10 NAME 'corbaContainer' DESC 'Cont
ainer for a CORBA object' SUP top STRUCTURAL MUST cn )
objectClasses: ( 1.3.6.1.4.1.42.2.27.4.2.9 NAME 'corbaObject' DESC 'CORBA ob
ject representation' SUP top ABSTRACT MAY ( corbaRepositoryId $ description
) )
objectClasses: ( 1.3.6.1.4.1.42.2.27.4.2.11 NAME 'corbaObjectReference' DESC
'CORBA interoperable object reference' SUP corbaObject AUXILIARY MUST corb
aIor )
objectClasses: ( 2.16.840.1.113730.3.2.33 NAME 'groupOfURLs' SUP top STRUCTU
RAL MUST cn MAY ( memberURL $ businessCategory $ description $ o $ ou $ own
er $ seeAlso ) )
objectClasses: ( 1.3.6.1.4.1.4203.666.11.8.2.1 NAME 'dgIdentityAux' SUP top
AUXILIARY MAY ( dgIdentity $ dgAuthz ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.4.3 NAME 'OpenLDAPorg' DESC 'OpenLDAP Or
ganizational Object' SUP organization STRUCTURAL MAY ( buildingName $ displ
ayName $ labeledURI ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.4.4 NAME 'OpenLDAPou' DESC 'OpenLDAP Org
anizational Unit Object' SUP organizationalUnit STRUCTURAL MAY ( buildingNa
me $ displayName $ labeledURI $ o ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.4.5 NAME 'OpenLDAPperson' DESC 'OpenLDAP
Person' SUP ( pilotPerson $ inetOrgPerson ) STRUCTURAL MUST ( uid $ cn ) M
AY ( givenName $ labeledURI $ o ) )
objectClasses: ( 1.3.6.1.4.1.4203.1.4.6 NAME 'OpenLDAPdisplayableObject' DES
C 'OpenLDAP Displayable Object' AUXILIARY MAY displayName )
objectClasses: ( 1.3.6.1.4.1.4754.2.99.1 NAME 'pwdPolicyChecker' SUP top AUX
ILIARY MAY pwdCheckModule )
objectClasses: ( 1.3.6.1.4.1.42.2.27.8.2.1 NAME 'pwdPolicy' SUP top AUXILIAR
Y MUST pwdAttribute MAY ( pwdMinAge $ pwdMaxAge $ pwdInHistory $ pwdCheckQu
ality $ pwdMinLength $ pwdExpireWarning $ pwdGraceAuthNLimit $ pwdLockout $
pwdLockoutDuration $ pwdMaxFailure $ pwdFailureCountInterval $ pwdMustChan
ge $ pwdAllowUserChange $ pwdSafeModify $ pwdMaxRecordedFailure ) )
objectClasses: ( 2.5.6.24 NAME 'pmiUser' DESC 'X.509 PMI user object class'
SUP top AUXILIARY MAY attributeCertificateAttribute )
objectClasses: ( 2.5.6.25 NAME 'pmiAA' DESC 'X.509 PMI AA object class' SUP
top AUXILIARY MAY ( aACertificate $ attributeCertificateRevocationList $ at
tributeAuthorityRevocationList ) )
objectClasses: ( 2.5.6.26 NAME 'pmiSOA' DESC 'X.509 PMI SOA object class' SU
P top AUXILIARY MAY ( attributeCertificateRevocationList $ attributeAuthori
tyRevocationList $ attributeDescriptorCertificate ) )
objectClasses: ( 2.5.6.27 NAME 'attCertCRLDistributionPt' DESC 'X.509 Attrib
ute certificate CRL distribution point object class' SUP top AUXILIARY MAY
( attributeCertificateRevocationList $ attributeAuthorityRevocationList ) )
objectClasses: ( 2.5.6.33 NAME 'pmiDelegationPath' DESC 'X.509 PMI delegatio
n path' SUP top AUXILIARY MAY delegationPath )
objectClasses: ( 2.5.6.32 NAME 'privilegePolicy' DESC 'X.509 Privilege polic
y object class' SUP top AUXILIARY MAY privPolicy )
objectClasses: ( 2.5.6.34 NAME 'protectedPrivilegePolicy' DESC 'X.509 Protec
ted privilege policy object class' SUP top AUXILIARY MAY protPrivPolicy )
objectClasses: ( 1.3.6.1.4.1.5322.17.1.1 NAME 'authorizedServiceObject' DESC
'Auxiliary object class for adding authorizedService attribute' SUP top AU
XILIARY MAY authorizedService )
objectClasses: ( 1.3.6.1.4.1.5322.17.1.2 NAME 'hostObject' DESC 'Auxiliary o
bject class for adding host attribute' SUP top AUXILIARY MAY host )
objectClasses: ( 1.3.6.1.4.1.11.1.3.1.2.5 NAME 'DUAConfigProfile' DESC 'Abst
raction of a base configuration for a DUA' SUP top STRUCTURAL MUST cn MAY (
defaultServerList $ preferredServerList $ defaultSearchBase $ defaultSearc
hScope $ searchTimeLimit $ bindTimeLimit $ credentialLevel $ authentication
Method $ followReferrals $ dereferenceAliases $ serviceSearchDescriptor $ s
erviceCredentialLevel $ serviceAuthenticationMethod $ objectclassMap $ attr
ibuteMap $ profileTTL ) )
objectClasses: ( 1.2.840.113533.7.67.9 NAME 'emailAddressUser' SUP top AUXIL
IARY MAY email )
objectClasses: ( 1.2.840.113533.7.67.1 NAME 'entrustCA' SUP top AUXILIARY MA
Y ( cACertificate $ certificateRevocationList $ authorityRevocationList $ d
eltaRevocationList $ crossCertificatePair $ userPassword $ attributeCertifi
cate ) )
objectClasses: ( 1.2.840.113533.7.67.14 NAME 'entrustDNQualifierUser' SUP to
p AUXILIARY MAY dnQualifier )
objectClasses: ( 1.2.840.113533.7.67.15 NAME 'entrustNamedObject' SUP top AU
XILIARY MAY ( name $ cn $ sn $ givenName $ initials $ generationQualifier $
c $ l $ st $ o $ ou $ title ) )
objectClasses: ( 1.2.840.113533.7.67.17 NAME 'entrustPolicyObject' SUP top A
UXILIARY MAY entrustPolicyCertificate )
objectClasses: ( 1.2.840.113533.7.67.13 NAME 'entrustRoamingUser' SUP top AU
XILIARY MAY ( entrustRoamFileEncInfo $ entrustRoamingProfile $ entrustRoami
ngPAB $ entrustRoamingRecipList $ entrustRoamingSLA $ entrustRoamingPRV $ e
ntrustRoamingEOP $ entrustRoamingCAPAB $ uid ) )
objectClasses: ( 1.2.840.113533.7.67.0 NAME 'entrustUser' SUP top AUXILIARY
MAY userCertificate )
objectClasses: ( 1.2.840.113533.7.67.18 NAME 'entrustRoamingDataUser' SUP to
p AUXILIARY MAY ( entrustRoamFileEncInfo $ entrustRoamingProfile $ entrustR
oamingPAB $ entrustRoamingRecipList $ entrustRoamingSLA $ entrustRoamingPRV
$ entrustRoamingEOP $ entrustRoamingCAPAB $ entrustRoamingID ) )
objectClasses: ( 1.3.6.1.4.1.5923.1.1.2 NAME 'eduPerson' AUXILIARY MAY ( edu
PersonAffiliation $ eduPersonNickname $ eduPersonOrgDN $ eduPersonOrgUnitDN
$ eduPersonPrimaryAffiliation $ eduPersonPrincipalName $ eduPersonEntitlem
ent $ eduPersonPrimaryOrgUnitDN $ eduPersonScopedAffiliation ) )
objectClasses: ( 1.3.6.1.4.1.5923.1.2.2 NAME 'eduOrg' AUXILIARY MAY ( cn $ e
duOrgHomePageURI $ eduOrgIdentityAuthNPolicyURI $ eduOrgLegalName $ eduOrgS
uperiorURI $ eduOrgWhitePagesURI ) )
objectClasses: ( 1.3.6.1.4.1.25178.1.1.1 NAME 'schacPersonalCharacteristics'
DESC 'Personal characteristics describe the individual person represented
by the entry' AUXILIARY MAY ( schacMotherTongue $ schacGender $ schacDateOf
Birth $ schacPlaceOfBirth $ schacCountryOfCitizenship $ schacSn1 $ schacSn2
$ schacPersonalTitle ) )
objectClasses: ( 1.3.6.1.4.1.25178.1.1.2 NAME 'schacContactLocation' DESC 'P
rimary means of locating and contacting potential collaborators and other p
ersons-of-interest at peer institutions' AUXILIARY MAY ( schacHomeOrganizat
ion $ schacHomeOrganizationType $ schacCountryOfResidence $ schacUserPresen
ceID ) )
objectClasses: ( 1.3.6.1.4.1.25178.1.1.3 NAME 'schacEmployeeInfo' DESC 'Empl
oyee information includes attributes that have relevance to the employee ro
le, such as position, office hours, and job title' AUXILIARY MAY schacPerso
nalPosition )
objectClasses: ( 1.3.6.1.4.1.25178.1.1.4 NAME 'schacLinkageIdentifiers' DESC
'Used to link a directory entry with records in external data stores or ot
her directory entries' AUXILIARY MAY ( schacPersonalUniqueCode $ schacPerso
nalUniqueID ) )
objectClasses: ( 1.3.6.1.4.1.25178.1.1.5 NAME 'schacEntryMetadata' DESC 'Use
d to contain information about the entry itself, often its status, birth, a
nd death' AUXILIARY MAY schacExpiryDate )
objectClasses: ( 1.3.6.1.4.1.25178.1.1.6 NAME 'schacEntryConfidentiality' DE
SC 'Used to indicate whether an entry is visible publicly, visible only to
affiliates of the institution, or not visible at all' AUXILIARY MAY schacUs
erPrivateAttribute )
objectClasses: ( 1.3.6.1.4.1.25178.1.1.7 NAME 'schacUserEntitlements' DESC '
Authorization for services' AUXILIARY MAY schacUserStatus )
objectClasses: ( 1.3.6.1.4.1.25178.1.1.8 NAME 'schacGroupMembership' DESC 'G
roups used to provide/restrict authorization to entries and attributes' AUX
ILIARY MAY ( schacProjectMembership $ schacProjectSpecificRole ) )
objectClasses: ( 1.3.6.1.4.1.25178.1.0.1.1 NAME 'schacExperimentalOC' DESC '
Experimental Object Class' AUXILIARY MAY schacYearOfBirth )
objectClasses: ( 1.3.6.1.4.1.2428.20.2 NAME 'dNSDomain2' SUP dNSDomain STRUC
TURAL MAY ( DNSTTL $ DNSClass $ WKSRecord $ PTRRecord $ HINFORecord $ MINFO
Record $ TXTRecord $ RPRecord $ AFSDBRecord $ SIGRecord $ KEYRecord $ GPOSR
ecord $ AAAARecord $ LOCRecord $ NXTRecord $ SRVRecord $ NAPTRRecord $ KXRe
cord $ CERTRecord $ A6Record $ DNAMERecord $ APLRecord $ DSRecord $ SSHFPRe
cord $ IPSECKEYRecord $ RRSIGRecord $ NSECRecord $ DNSKEYRecord $ DHCIDReco
rd $ SPFRecord $ nSec3ParamRecord $ TLSARecord $ CAARecord $ DLVRecord ) )
objectClasses: ( 1.3.6.1.1.1.2.14 NAME 'NisKeyObject' DESC 'NisKeyObject' SU
P top STRUCTURAL MUST ( cn $ nisPublickey $ nisSecretkey ) MAY ( uidNumber
$ description ) )
objectClasses: ( 1.3.1.6.1.1.1.2.15 NAME 'nisDomainObject' DESC 'nisDomainOb
ject' SUP top AUXILIARY MUST nisDomain )
objectClasses: ( 2.16.840.1.113730.3.2.4 NAME 'mailGroup' DESC 'mailGroup' S
UP top STRUCTURAL MUST mail MAY ( cn $ mgrpRFC822MailMember ) )
objectClasses: ( 1.3.6.1.4.1.42.2.27.1.2.6 NAME 'nisNetId' DESC 'nisNetId' S
UP top STRUCTURAL MUST cn MAY ( nisNetIdUser $ nisNetIdGroup $ nisNetIdHost
) )
objectClasses: ( 1.3.6.1.4.1.42.2.27.5.2.7 NAME 'SolarisNamingProfile' DESC
'Solaris LDAP NSS Profile' SUP top AUXILIARY MUST ( cn $ SolarisLDAPServers
) MAY ( SolarisBindDN $ SolarisBindPassword $ SolarisSearchBaseDN $ Solari
sAuthMethod $ SolarisTransportSecurity $ SolarisSearchReferral $ SolarisDat
aSearchDN $ SolarisSearchScope $ SolarisSearchTimeLimit $ SolarisCacheTTL )
)
objectClasses: ( 1.3.6.1.4.1.1466.154.151.160.1 NAME 'liPerson' SUP person S
TRUCTURAL MAY ( rfc822Mailbox $ userCertificate $ labeledURI $ givenName $
generationQualifier $ o $ l $ c $ personalTitle $ initials $ middleName $ u
niqueIdentifier $ homeTelephoneNumber $ homeFax $ homePostalAddress $ thumb
nailPhoto $ title $ facsimileTelephoneNumber $ mobileTelephoneNumber $ page
rTelephoneNumber $ postalAddress $ ou $ roomNumber $ otherMailbox $ telexNu
mber $ thumbnailLogo $ secretary $ manager $ description $ telephoneNumber
$ userPassword ) )
objectClasses: ( 1.3.6.1.4.1.1466.154.151.160.2 NAME 'liOrganization' SUP or
ganization STRUCTURAL MAY ( rfc822Mailbox $ labeledURI $ c $ uniqueIdentifi
er $ otherMailbox $ thumbnailLogo $ manager ) )
objectClasses: ( 1.3.6.1.4.1.13769.2.2.1 NAME 'mozillaAbPersonObsolete' SUP
inetOrgPerson STRUCTURAL MAY ( mozillaNickname $ mozillaUseHtmlMail $ mozil
laSecondEmail $ mozillaPostalAddress2 $ mozillaHomePostalAddress2 $ mozilla
HomeLocalityName $ mozillaHomeState $ mozillaHomePostalCode $ mozillaHomeCo
untryName $ mozillaHomeFriendlyCountryName $ mozillaHomeUrl $ mozillaWorkUr
l $ mozillaCustom1 $ mozillaCustom2 $ mozillaCustom3 $ mozillaCustom4 $ nsA
IMid $ c $ co ) )
objectClasses: ( 1.3.6.1.4.1.7165.2.2.6 NAME 'sambaSamAccount' DESC 'Samba 3
.0 Auxilary SAM Account' SUP top AUXILIARY MUST ( uid $ sambaSID ) MAY ( cn
$ sambaLMPassword $ sambaNTPassword $ sambaPwdLastSet $ sambaLogonTime $ s
ambaLogoffTime $ sambaKickoffTime $ sambaPwdCanChange $ sambaPwdMustChange
$ sambaAcctFlags $ displayName $ sambaHomePath $ sambaHomeDrive $ sambaLogo
nScript $ sambaProfilePath $ description $ sambaUserWorkstations $ sambaPri
maryGroupSID $ sambaDomainName $ sambaMungedDial $ sambaBadPasswordCount $
sambaBadPasswordTime $ sambaPasswordHistory $ sambaLogonHours ) )
objectClasses: ( 1.3.6.1.4.1.7165.2.2.4 NAME 'sambaGroupMapping' DESC 'Samba
Group Mapping' SUP top AUXILIARY MUST ( gidNumber $ sambaSID $ sambaGroupT
ype ) MAY ( displayName $ description $ sambaSIDList ) )
objectClasses: ( 1.3.6.1.4.1.7165.2.2.14 NAME 'sambaTrustPassword' DESC 'Sam
ba Trust Password' SUP top STRUCTURAL MUST ( sambaDomainName $ sambaNTPassw
ord $ sambaTrustFlags ) MAY ( sambaSID $ sambaPwdLastSet ) )
objectClasses: ( 1.3.6.1.4.1.7165.2.2.15 NAME 'sambaTrustedDomainPassword' D
ESC 'Samba Trusted Domain Password' SUP top STRUCTURAL MUST ( sambaDomainNa
me $ sambaSID $ sambaClearTextPassword $ sambaPwdLastSet ) MAY sambaPreviou
sClearTextPassword )
objectClasses: ( 1.3.6.1.4.1.7165.2.2.5 NAME 'sambaDomain' DESC 'Samba Domai
n Information' SUP top STRUCTURAL MUST ( sambaDomainName $ sambaSID ) MAY (
sambaNextRid $ sambaNextGroupRid $ sambaNextUserRid $ sambaAlgorithmicRidB
ase $ sambaMinPwdLength $ sambaPwdHistoryLength $ sambaLogonToChgPwd $ samb
aMaxPwdAge $ sambaMinPwdAge $ sambaLockoutDuration $ sambaLockoutObservatio
nWindow $ sambaLockoutThreshold $ sambaForceLogoff $ sambaRefuseMachinePwdC
hange ) )
objectClasses: ( 1.3.6.1.4.1.7165.2.2.7 NAME 'sambaUnixIdPool' DESC 'Pool fo
r allocating UNIX uids/gids' SUP top AUXILIARY MUST ( uidNumber $ gidNumber
) )
objectClasses: ( 1.3.6.1.4.1.7165.2.2.8 NAME 'sambaIdmapEntry' DESC 'Mapping
from a SID to an ID' SUP top AUXILIARY MUST sambaSID MAY ( uidNumber $ gid
Number ) )
objectClasses: ( 1.3.6.1.4.1.7165.2.2.9 NAME 'sambaSidEntry' DESC 'Structura
l Class for a SID' SUP top STRUCTURAL MUST sambaSID )
objectClasses: ( 1.3.6.1.4.1.7165.2.2.10 NAME 'sambaConfig' DESC 'Samba Conf
iguration Section' SUP top AUXILIARY MAY description )
objectClasses: ( 1.3.6.1.4.1.7165.2.2.11 NAME 'sambaShare' DESC 'Samba Share
Section' SUP top STRUCTURAL MUST sambaShareName MAY description )
objectClasses: ( 1.3.6.1.4.1.7165.2.2.12 NAME 'sambaConfigOption' DESC 'Samb
a Configuration Option' SUP top STRUCTURAL MUST sambaOptionName MAY ( samba
BoolOption $ sambaIntegerOption $ sambaStringOption $ sambaStringListoption
$ description ) )
objectClasses: ( 1.3.6.1.4.1.7165.2.2.16 NAME 'sambaTrustedDomain' DESC 'Sam
ba Trusted Domain Object' SUP top STRUCTURAL MUST cn MAY ( sambaTrustType $
sambaTrustAttributes $ sambaTrustDirection $ sambaTrustPartner $ sambaFlat
Name $ sambaTrustAuthOutgoing $ sambaTrustAuthIncoming $ sambaSecurityIdent
ifier $ sambaTrustForestTrustInfo $ sambaTrustPosixOffset $ sambaSupportedE
ncryptionTypes ) )
objectClasses: ( 1.3.6.1.4.1.5322.10.2.1 NAME 'krb5Principal' SUP top AUXILI
ARY MUST krb5PrincipalName MAY ( cn $ krb5PrincipalRealm ) )
objectClasses: ( 1.3.6.1.4.1.5322.10.2.2 NAME 'krb5KDCEntry' SUP krb5Princip
al AUXILIARY MUST krb5KeyVersionNumber MAY ( krb5ValidStart $ krb5ValidEnd
$ krb5PasswordEnd $ krb5MaxLife $ krb5MaxRenew $ krb5KDCFlags $ krb5Encrypt
ionType $ krb5Key ) )
objectClasses: ( 1.3.6.1.4.1.5322.10.2.3 NAME 'krb5Realm' SUP top AUXILIARY
MUST krb5RealmName )
objectClasses: ( 2.16.840.1.113719.1.301.6.1.1 NAME 'krbContainer' SUP top S
TRUCTURAL MUST cn )
objectClasses: ( 2.16.840.1.113719.1.301.6.2.1 NAME 'krbRealmContainer' SUP
top STRUCTURAL MUST cn MAY ( krbMKey $ krbUPEnabled $ krbSubTrees $ krbSear
chScope $ krbLdapServers $ krbSupportedEncSaltTypes $ krbDefaultEncSaltType
s $ krbTicketPolicyReference $ krbKdcServers $ krbPwdServers $ krbAdmServer
s $ krbPrincNamingAttr $ krbPwdPolicyReference $ krbPrincContainerRef ) )
objectClasses: ( 2.16.840.1.113719.1.301.6.3.1 NAME 'krbService' SUP top ABS
TRACT MUST cn MAY ( krbHostServer $ krbRealmReferences ) )
objectClasses: ( 2.16.840.1.113719.1.301.6.4.1 NAME 'krbKdcService' SUP krbS
ervice STRUCTURAL )
objectClasses: ( 2.16.840.1.113719.1.301.6.5.1 NAME 'krbPwdService' SUP krbS
ervice STRUCTURAL )
objectClasses: ( 2.16.840.1.113719.1.301.6.8.1 NAME 'krbPrincipalAux' SUP to
p AUXILIARY MAY ( krbPrincipalName $ krbCanonicalName $ krbUPEnabled $ krbP
rincipalKey $ krbTicketPolicyReference $ krbPrincipalExpiration $ krbPasswo
rdExpiration $ krbPwdPolicyReference $ krbPrincipalType $ krbPwdHistory $ k
rbLastPwdChange $ krbLastAdminUnlock $ krbPrincipalAliases $ krbLastSuccess
fulAuth $ krbLastFailedAuth $ krbLoginFailedCount $ krbExtraData $ krbAllow
edToDelegateTo $ krbPrincipalAuthInd ) )
objectClasses: ( 2.16.840.1.113719.1.301.6.9.1 NAME 'krbPrincipal' SUP top S
TRUCTURAL MUST krbPrincipalName MAY krbObjectReferences )
objectClasses: ( 2.16.840.1.113719.1.301.6.11.1 NAME 'krbPrincRefAux' SUP to
p AUXILIARY MAY krbPrincipalReferences )
objectClasses: ( 2.16.840.1.113719.1.301.6.13.1 NAME 'krbAdmService' SUP krb
Service STRUCTURAL )
objectClasses: ( 2.16.840.1.113719.1.301.6.14.1 NAME 'krbPwdPolicy' SUP top
STRUCTURAL MUST cn MAY ( krbMaxPwdLife $ krbMinPwdLife $ krbPwdMinDiffChars
$ krbPwdMinLength $ krbPwdHistoryLength $ krbPwdMaxFailure $ krbPwdFailure
CountInterval $ krbPwdLockoutDuration $ krbPwdAttributes $ krbPwdMaxLife $
krbPwdMaxRenewableLife $ krbPwdAllowedKeysalts ) )
objectClasses: ( 2.16.840.1.113719.1.301.6.16.1 NAME 'krbTicketPolicyAux' SU
P top AUXILIARY MAY ( krbTicketFlags $ krbMaxTicketLife $ krbMaxRenewableAg
e ) )
objectClasses: ( 2.16.840.1.113719.1.301.6.17.1 NAME 'krbTicketPolicy' SUP t
op STRUCTURAL MUST cn )
objectClasses: ( 1.3.6.1.4.1.2428.70.2.1 NAME 'esg' SUP top STRUCTURAL MUST
( esgSid $ esgSN $ esgFormat $ esgAlwaysOn $ esgSource ) MAY ( esgInfo $ es
gInfoUri $ esgFirstShown $ esgFinalEnd $ esgDuration $ esgTotalDuration $ e
sgIntervalOffset $ esgRepeatInterval $ esgStreamUri $ esgSdp $ esgSdpUri $
esgTool $ esgCategory $ esgContact $ esgContactMail $ esgContactPhone $ esg
ContactDN ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.1 NAME 'dhcpService' DESC 'Servic
e object that represents the actual DHCP Service configuration. This is a c
ontainer object.' SUP top STRUCTURAL MUST cn MAY ( dhcpPrimaryDN $ dhcpSeco
ndaryDN $ dhcpServerDN $ dhcpSharedNetworkDN $ dhcpSubnetDN $ dhcpGroupDN $
dhcpHostDN $ dhcpClassesDN $ dhcpOptionsDN $ dhcpZoneDN $ dhcpKeyDN $ dhcp
FailOverPeerDN $ dhcpStatements $ dhcpComments $ dhcpOption ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.2 NAME 'dhcpSharedNetwork' DESC '
This stores configuration information for a shared network.' SUP top STRUCT
URAL MUST cn MAY ( dhcpSubnetDN $ dhcpPoolDN $ dhcpOptionsDN $ dhcpZoneDN $
dhcpStatements $ dhcpComments $ dhcpOption ) X-NDS_CONTAINMENT 'dhcpServic
e' )
objectClasses: ( 2.16.840.1.113719.1.203.6.3 NAME 'dhcpSubnet' DESC 'This cl
ass defines a subnet. This is a container object.' SUP top STRUCTURAL MUST
( cn $ dhcpNetMask ) MAY ( dhcpRange $ dhcpPoolDN $ dhcpGroupDN $ dhcpHostD
N $ dhcpClassesDN $ dhcpLeasesDN $ dhcpOptionsDN $ dhcpZoneDN $ dhcpKeyDN $
dhcpFailOverPeerDN $ dhcpStatements $ dhcpComments $ dhcpOption ) X-NDS_CO
NTAINMENT ( 'dhcpService' 'dhcpSharedNetwork' ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.4 NAME 'dhcpPool' DESC 'This stor
es configuration information about a pool.' SUP top STRUCTURAL MUST ( cn $
dhcpRange ) MAY ( dhcpClassesDN $ dhcpPermitList $ dhcpLeasesDN $ dhcpOptio
nsDN $ dhcpZoneDN $ dhcpKeyDN $ dhcpStatements $ dhcpComments $ dhcpOption
) X-NDS_CONTAINMENT ( 'dhcpSubnet' 'dhcpSharedNetwork' ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.5 NAME 'dhcpGroup' DESC 'Group ob
ject that lists host DNs and parameters. This is a container object.' SUP t
op STRUCTURAL MUST cn MAY ( dhcpHostDN $ dhcpOptionsDN $ dhcpStatements $ d
hcpComments $ dhcpOption ) X-NDS_CONTAINMENT ( 'dhcpSubnet' 'dhcpService' )
)
objectClasses: ( 2.16.840.1.113719.1.203.6.6 NAME 'dhcpHost' DESC 'This repr
esents information about a particular client' SUP top STRUCTURAL MUST cn MA
Y ( dhcpLeaseDN $ dhcpHWAddress $ dhcpOptionsDN $ dhcpStatements $ dhcpComm
ents $ dhcpOption ) X-NDS_CONTAINMENT ( 'dhcpService' 'dhcpSubnet' 'dhcpGro
up' ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.7 NAME 'dhcpClass' DESC 'Represen
ts information about a collection of related clients.' SUP top STRUCTURAL M
UST cn MAY ( dhcpSubClassesDN $ dhcpOptionsDN $ dhcpStatements $ dhcpCommen
ts $ dhcpOption ) X-NDS_CONTAINMENT ( 'dhcpService' 'dhcpSubnet' ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.8 NAME 'dhcpSubClass' DESC 'Repre
sents information about a collection of related classes.' SUP top STRUCTURA
L MUST cn MAY ( dhcpClassData $ dhcpOptionsDN $ dhcpStatements $ dhcpCommen
ts $ dhcpOption ) X-NDS_CONTAINMENT 'dhcpClass' )
objectClasses: ( 2.16.840.1.113719.1.203.6.9 NAME 'dhcpOptions' DESC 'Repres
ents information about a collection of options defined.' SUP top AUXILIARY
MUST cn MAY ( dhcpOption $ dhcpComments ) X-NDS_CONTAINMENT ( 'dhcpService'
'dhcpSharedNetwork' 'dhcpSubnet' 'dhcpPool' 'dhcpGroup' 'dhcpHost' 'dhcpCl
ass' ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.10 NAME 'dhcpLeases' DESC 'This c
lass represents an IP Address, which may or may not have been leased.' SUP
top STRUCTURAL MUST ( cn $ dhcpAddressState ) MAY ( dhcpExpirationTime $ dh
cpStartTimeOfState $ dhcpLastTransactionTime $ dhcpBootpFlag $ dhcpDomainNa
me $ dhcpDnsStatus $ dhcpRequestedHostName $ dhcpAssignedHostName $ dhcpRes
ervedForClient $ dhcpAssignedToClient $ dhcpRelayAgentInfo $ dhcpHWAddress
) X-NDS_CONTAINMENT ( 'dhcpService' 'dhcpSubnet' 'dhcpPool' ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.11 NAME 'dhcpLog' DESC 'This is t
he object that holds past information about the IP address. The cn is the t
ime/date stamp when the address was assigned or released, the address state
at the time, if the address was assigned or released.' SUP top STRUCTURAL
MUST cn MAY ( dhcpAddressState $ dhcpExpirationTime $ dhcpStartTimeOfState
$ dhcpLastTransactionTime $ dhcpBootpFlag $ dhcpDomainName $ dhcpDnsStatus
$ dhcpRequestedHostName $ dhcpAssignedHostName $ dhcpReservedForClient $ dh
cpAssignedToClient $ dhcpRelayAgentInfo $ dhcpHWAddress $ dhcpErrorLog ) X-
NDS_CONTAINMENT ( 'dhcpLeases' 'dhcpPool' 'dhcpSubnet' 'dhcpSharedNetwork'
'dhcpService' ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.12 NAME 'dhcpServer' DESC 'DHCP S
erver Object' SUP top STRUCTURAL MUST cn MAY ( dhcpServiceDN $ dhcpLocatorD
N $ dhcpVersion $ dhcpImplementation $ dhcpHashBucketAssignment $ dhcpDelay
edServiceParameter $ dhcpMaxClientLeadTime $ dhcpFailOverEndpointState $ dh
cpStatements $ dhcpComments $ dhcpOption ) X-NDS_CONTAINMENT ( 'organizatio
n' 'organizationalunit' 'domain' ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.13 NAME 'dhcpTSigKey' DESC 'TSIG
key for secure dynamic updates' SUP top STRUCTURAL MUST ( cn $ dhcpKeyAlgor
ithm $ dhcpKeySecret ) MAY dhcpComments X-NDS_CONTAINMENT ( 'dhcpService' '
dhcpSharedNetwork' 'dhcpSubnet' ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.14 NAME 'dhcpDnsZone' DESC 'DNS Z
one for updating leases' SUP top STRUCTURAL MUST ( cn $ dhcpDnsZoneServer )
MAY ( dhcpKeyDN $ dhcpComments ) X-NDS_CONTAINMENT ( 'dhcpService' 'dhcpSh
aredNetwork' 'dhcpSubnet' ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.15 NAME 'dhcpFailOverPeer' DESC '
This class defines the Fail over peer' SUP top STRUCTURAL MUST ( cn $ dhcpF
ailOverPrimaryServer $ dhcpFailOverSecondaryServer $ dhcpFailoverPrimaryPor
t $ dhcpFailOverSecondaryPort ) MAY ( dhcpFailOverResponseDelay $ dhcpFailO
verUnackedUpdates $ dhcpMaxClientLeadTime $ dhcpFailOverSplit $ dhcpHashBuc
ketAssignment $ dhcpFailOverLoadBalanceTime $ dhcpComments ) X-NDS_CONTAINM
ENT ( 'dhcpService' 'dhcpSharedNetwork' 'dhcpSubnet' ) )
objectClasses: ( 2.16.840.1.113719.1.203.6.16 NAME 'dhcpLocator' DESC 'Locat
or object for DHCP configuration in the tree. There will be a single dhcpLo
cator object in the tree with links to all the DHCP objects in the tree' SU
P top STRUCTURAL MUST cn MAY ( dhcpServiceDN $ dhcpServerDN $ dhcpSharedNet
workDN $ dhcpSubnetDN $ dhcpPoolDN $ dhcpGroupDN $ dhcpHostDN $ dhcpClasses
DN $ dhcpKeyDN $ dhcpZoneDN $ dhcpFailOverPeerDN $ dhcpOption $ dhcpComment
s ) X-NDS_CONTAINMENT ( 'organization' 'organizationalunit' 'domain' ) )
objectClasses: ( 1.3.6.1.4.1.18420.1.2.10 NAME 'dlzZone' DESC 'Zone name por
tion of a domain name' SUP top STRUCTURAL MUST ( objectclass $ dlzZoneName
) )
objectClasses: ( 1.3.6.1.4.1.18420.1.2.20 NAME 'dlzHost' DESC 'Host name por
tion of a domain name' SUP top STRUCTURAL MUST ( objectclass $ dlzHostName
) )
objectClasses: ( 1.3.6.1.4.1.18420.1.2.30 NAME 'dlzAbstractRecord' DESC 'Dat
a common to all DNS record types' SUP top ABSTRACT MUST ( objectclass $ dlz
RecordID $ dlzHostName $ dlzType $ dlzTTL ) )
objectClasses: ( 1.3.6.1.4.1.18420.1.2.40 NAME 'dlzGenericRecord' DESC 'Gene
ric DNS record - useful when a specific object class has not been defined f
or a DNS record' SUP dlzAbstractRecord STRUCTURAL MUST dlzData )
objectClasses: ( 1.3.6.1.4.1.18420.1.2.50 NAME 'dlzARecord' DESC 'DNS A reco
rd' SUP dlzAbstractrecord STRUCTURAL MUST dlzIPAddr )
objectClasses: ( 1.3.6.1.4.1.18420.1.2.60 NAME 'dlzNSRecord' DESC 'DNS NS re
cord' SUP dlzGenericRecord STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.18420.1.2.70 NAME 'dlzMXRecord' DESC 'DNS MX re
cord' SUP dlzGenericRecord STRUCTURAL MUST dlzPreference )
objectClasses: ( 1.3.6.1.4.1.18420.1.2.80 NAME 'dlzSOARecord' DESC 'DNS SOA
record' SUP dlzAbstractRecord STRUCTURAL MUST ( dlzSerial $ dlzRefresh $ dl
zRetry $ dlzExpire $ dlzMinimum $ dlzAdminEmail $ dlzPrimaryNS ) )
objectClasses: ( 1.3.6.1.4.1.18420.1.2.90 NAME 'dlzTextRecord' DESC 'Text da
ta with spaces should be wrapped in double quotes' SUP dlzGenericRecord STR
UCTURAL )
objectClasses: ( 1.3.6.1.4.1.18420.1.2.100 NAME 'dlzPTRRecord' DESC 'DNS PTR
record' SUP dlzGenericRecord STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.18420.1.2.110 NAME 'dlzCNameRecord' DESC 'DNS C
Name record' SUP dlzGenericRecord STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.18420.1.2.120 NAME 'dlzXFR' DESC 'Host allowed
to perform zone transfer' SUP top STRUCTURAL MUST ( objectclass $ dlzRecord
ID $ dlzIPAddr ) )
objectClasses: ( 1.3.6.1.1.1.2.16 NAME 'automountMap' SUP top STRUCTURAL MUS
T automountMapName MAY description )
objectClasses: ( 1.3.6.1.1.1.2.17 NAME 'automount' DESC 'Automount informati
on' SUP top STRUCTURAL MUST ( automountKey $ automountInformation ) MAY des
cription )
objectClasses: ( 1.2.826.0.1.3344810.1.0.13 NAME 'x509base' ABSTRACT MAY x50
9version )
objectClasses: ( 1.2.826.0.1.3344810.1.0.14 NAME 'x509CRL' SUP x509base ABST
RACT MUST ( x509CRLThisUpdate $ x509signatureAlgorithm $ x509issuer ) MAY (
x509CRLNextUpdate $ x509serialNumber $ x509authorityKeyIdentifier $ x509au
thorityCertIssuer $ x509authorityCertSerialNumber $ x509issuerRfc822Name $
x509issuerDNSName $ x509issuerDirectoryName $ x509issuerUniformResourceIden
tifier $ x509issuerIPAddress $ x509issuerRegisteredID $ x509CRLNumber $ x50
9CRLDPRfc822Name $ x509CRLDPDNSName $ x509CRLDPDN $ x509CRLDPURI $ x509CRLD
PIPAddress $ x509CRLDPRegisteredID $ x509CRLDPOnlyUserCerts $ x509CRLDPOnly
CACerts $ x509CRLDPOnlySomeReasons $ x509CRLDPOnlyAttCerts $ x509CRLDPindir
ect $ x509CRLDeltaIndicator ) )
objectClasses: ( 1.2.826.0.1.3344810.1.0.19 NAME 'x509certificateRevocationL
ist' SUP x509CRL STRUCTURAL MUST certificateRevocationList )
objectClasses: ( 1.2.826.0.1.3344810.1.0.20 NAME 'x509authorityRevocationLis
t' SUP x509CRL STRUCTURAL MUST authorityRevocationList )
objectClasses: ( 1.2.826.0.1.3344810.1.0.21 NAME 'x509deltaRevocationList' S
UP x509CRL STRUCTURAL MUST deltaRevocationList )
objectClasses: ( 1.2.826.0.1.3344810.1.0.15 NAME 'x509CRLentry' SUP x509base
STRUCTURAL MUST ( x509serialNumber $ x509CRLCertRevocationDate ) MAY ( x50
9CRLCertInvalidityDate $ x509CRLCertReasonCode $ x509CRLCertHoldInstruction
Code $ x509CRLCertIssuerRfc822Name $ x509CRLCertIssuerDnsName $ x509CRLCert
IssuerDN $ x509CRLCertIssuerURI $ x509CRLCertIssuerIpAddress $ x509CRLCertI
ssuerRegisteredID ) )
objectClasses: ( 1.3.6.1.4.1.10126.1.5.4.2.3 NAME 'x509PKC' SUP x509base ABS
TRACT MUST ( x509serialNumber $ x509validityNotBefore $ x509signatureAlgori
thm $ x509issuer $ x509validityNotAfter $ x509subjectPublicKeyInfoAlgorithm
) MAY ( x509authorityKeyIdentifier $ x509authorityCertIssuer $ x509authori
tyCertSerialNumber $ x509subjectKeyIdentifier $ x509keyUsage $ x509policyIn
formationIdentifier $ x509subjectRfc822Name $ x509subjectDnsName $ x509subj
ectDirectoryName $ x509subjectUniformResourceIdentifier $ x509subjectIpAddr
ess $ x509subjectRegisteredID $ x509issuerRfc822Name $ x509issuerDnsName $
x509issuerDirectoryName $ x509issuerUniformResourceIdentifier $ x509issuerI
pAddress $ x509issuerRegisteredID $ x509extKeyUsage $ x509FullcRLDistributi
onPointURI $ x509certHolder $ x509issuerSerial $ x509basicConstraintsCa ) )
objectClasses: ( 1.3.6.1.4.1.10126.1.5.4.2.4 NAME 'x509userCertificate' SUP
x509PKC STRUCTURAL MUST userCertificate MAY x509subject )
objectClasses: ( 1.3.6.1.4.1.10126.1.5.4.2.5 NAME 'x509caCertificate' SUP x5
09PKC STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.10126.1.5.4.2.2 NAME 'x509certificateHolder' AU
XILIARY MAY x509certLocation )
objectClasses: ( 1.2.826.0.1.3344810.1.0.16 NAME 'x509AC' SUP x509base ABSTR
ACT MUST ( x509version $ x509signatureAlgorithm $ x509issuer $ x509serialNu
mber $ x509validityNotBefore $ x509validityNotAfter ) MAY ( x509ACHolderPKC
SerialNumber $ x509ACHolderPKCissuerDN $ x509ACHolderRfc822Name $ x509ACHol
derDNSName $ x509ACHolderDN $ x509ACHolderURI $ x509ACHolderIPAddress $ x50
9ACHolderRegisteredID $ x509authorityCertIssuer $ x509authorityCertSerialNu
mber $ x509authorityKeyIdentifier $ x509ACObjectDigest $ x509ACDigestAlgori
thm $ x509ACDigestedObjectType $ x509issuerSerial ) )
objectClasses: ( 1.2.826.0.1.3344810.1.0.17 NAME 'x509attributeCertificate'
SUP x509AC STRUCTURAL )
objectClasses: ( 1.2.826.0.1.3344810.1.0.18 NAME 'x509aACertificate' SUP x50
9AC STRUCTURAL )
objectClasses: ( 1.2.826.0.1.3344810.1.0.22 NAME 'x509ACext' AUXILIARY MAY (
x509issuerRfc822Name $ x509issuerDNSName $ x509issuerUniformResourceIdenti
fier $ x509issuerIPAddress $ x509issuerRegisteredID $ x509authorityCertIssu
er $ x509authorityCertSerialNumber $ x509authorityKeyIdentifier $ x509ACAud
itID $ x509ACTargetRfc822Name $ x509ACTargetDNSName $ x509ACTargetDN $ x509
ACTargetURI $ x509ACTargetIPAddress $ x509ACTargetRegisteredID $ x509ACTarg
etGroupRfc822Name $ x509ACTargetGroupDNSName $ x509ACTargetGroupDN $ x509AC
TargetGroupURI $ x509ACTargetGroupIPAddress $ x509ACTargetGroupRegisteredID
$ x509DPRfc822Name $ x509DPDNSName $ x509DPDN $ x509DPURI $ x509DPIPAddres
s $ x509DPRegisteredID $ x509DPrelativeToIssuer $ x509DPissuerRfc822Name $
x509DPissuerDNSName $ x509DPissuerDN $ x509DPissuerURI $ x509DPissuerIPAddr
ess $ x509DPissuerRegisteredID $ x509DPReasonCodes $ x509ACNoRevocation ) )
objectClasses: ( 1.3.6.1.1.11.1.1 NAME 'vPIMUser' DESC 'draft-ietf-vpim-vpim
dir: vPIMUser object contains about the dialed telephone number' SUP top AU
XILIARY MUST ( vPIMRfc822Mailbox $ vPIMTelephoneNumber ) MAY ( vPIMSpokenNa
me $ vPIMSupportedUABehaviors $ vPIMSupportedAudioMediaTypes $ vPIMSupporte
dMessageContext $ vPIMTextName $ vPIMExtendedAbsenceStatus $ vPIMMaxMessage
Size $ vPIMSubMailboxes ) )
objectClasses: ( 1.3.6.1.4.1.22736.5.2.1 NAME 'AsteriskExtension' DESC 'PBX
Extension Information for Asterisk' SUP top AUXILIARY MUST cn MAY ( AstCont
ext $ AstExtension $ AstPriority $ AstApplication $ AstApplicationData ) )
objectClasses: ( 1.3.6.1.4.1.22736.5.2.2 NAME 'AsteriskIAXUser' DESC 'IAX2 U
ser information for Asterisk' SUP AsteriskExtension AUXILIARY MUST cn MAY (
AstAccountAMAFlags $ AstAccountCallerID $ AstAccountContext $ AstAccountFu
llContact $ AstAccountHost $ AstAccountMailbox $ AstMD5secret $ AstAccountD
eny $ AstAccountPermit $ AstAccountPort $ AstAccountQualify $ AstAccountTyp
e $ AstAccountLanguage $ AstAccountDisallowedCodec $ AstAccountExpirationTi
mestamp $ AstAccountRegistrationContext $ AstAccountRegistrationExten $ Ast
AccountNoTransfer $ AstAccountName $ AstAccountLastQualifyMilliseconds $ As
tAccountCallLimit $ AstAccountSubscribeContext $ AstAccountIPAddress $ AstA
ccountUserAgent ) )
objectClasses: ( 1.3.6.1.4.1.22736.5.2.3 NAME 'AsteriskSIPUser' DESC 'SIP Us
er information for Asterisk' SUP AsteriskExtension AUXILIARY MUST cn MAY (
AstAccountAccountCode $ AstAccountAllowOverlap $ AstAccountAllowedCodec $ A
stAccountAMAFlags $ AstAccountCallGroup $ AstAccountCallLimit $ AstAccountC
allerID $ AstAccountCanCallForward $ AstAccountCanReinvite $ AstAccountCont
ext $ AstAccountDTMFMode $ AstAccountDefaultUser $ AstAccountDeny $ AstAcco
untDisallowedCodec $ AstAccountExpirationTimestamp $ AstAccountFromDomain $
AstAccountFromUser $ AstAccountFullContact $ AstAccountHost $ AstAccountIg
noreSDPVersion $ AstAccountInsecure $ AstAccountIPAddress $ AstAccountLangu
age $ AstAccountLastQualifyMilliseconds $ AstAccountMailbox $ AstAccountMus
icOnHold $ AstAccountNAT $ AstAccountName $ AstAccountPermit $ AstAccountPi
ckupGroup $ AstAccountPort $ AstAccountPromiscRedir $ AstAccountQualify $ A
stAccountRTPHoldTimeout $ AstAccountRTPTimeout $ AstAccountRealmedPassword
$ AstAccountRegistrationContext $ AstAccountRegistrationExten $ AstAccountR
egistrationServer $ AstAccountRestrictCID $ AstAccountSecret $ AstAccountSe
tVar $ AstAccountSubscribeContext $ AstAccountTransport $ AstAccountType $
AstAccountUserAgent $ AstAccountVideoSupport $ AstAccountPathSupport ) )
objectClasses: ( 1.3.6.1.4.1.22736.5.2.4 NAME 'AsteriskConfig' DESC 'Asteris
k configuration Information' SUP top AUXILIARY MUST cn MAY ( AstConfigFilen
ame $ AstConfigCategory $ AstConfigCategoryMetric $ AstConfigVariableName $
AstConfigVariableValue $ AstConfigCommented ) )
objectClasses: ( 1.3.6.1.4.1.22736.5.2.5 NAME 'AsteriskVoiceMail' DESC 'Aste
risk voicemail information' SUP top AUXILIARY MUST ( cn $ AstContext $ AstV
oicemailMailbox $ AstVoicemailPassword ) MAY ( AstVoicemailFullname $ AstVo
icemailEmail $ AstVoicemailPager $ AstVoicemailOptions $ AstVoicemailTimest
amp $ AstVoicemailContext ) )
objectClasses: ( 1.3.6.1.4.1.22736.5.2.6 NAME 'AsteriskDialplan' DESC 'Aster
isk Dialplan Information' SUP top STRUCTURAL MUST AstExtension )
objectClasses: ( 1.3.6.1.4.1.22736.5.2.7 NAME 'AsteriskAccount' DESC 'Asteri
sk Account Information' SUP top STRUCTURAL MUST AstAccountName )
objectClasses: ( 1.3.6.1.4.1.22736.5.2.8 NAME 'AsteriskMailbox' DESC 'Asteri
sk Mailbox Information' SUP top STRUCTURAL MUST AstVoicemailMailbox )
objectClasses: ( 1.3.6.1.4.1.3401.8.2.23 NAME 'pgpServerInfo' DESC 'PGP defi
ned objectclass to maintain information about PGP key space store' SUP top
STRUCTURAL MUST ( cn $ pgpBaseKeySpaceDN ) MAY ( pgpSoftware $ pgpVersion )
X-ORIGIN 'Pretty Good Privacy (PGP)' )
objectClasses: ( 1.3.6.1.4.1.3401.8.2.24 NAME 'pgpKeyInfo' DESC 'PGP defined
objectclass to maintain information about a PGP key' SUP top STRUCTURAL MU
ST ( pgpCertID $ pgpKey ) MAY ( pgpDisabled $ pgpKeyID $ pgpKeyType $ pgpUs
erID $ pgpKeyCreateTime $ pgpSignerID $ pgpRevoked $ pgpSubKeyID $ pgpKeySi
ze $ pgpKeyExpireTime ) X-ORIGIN 'Pretty Good Privacy (PGP)' )
objectClasses: ( 1.3.6.1.4.1.3401.8.2.5 NAME 'pgpReconElement' DESC 'PGP def
ined objectclass of a reconstruction data object' STRUCTURAL MUST objectCla
ss MAY ( pgpReconCertID $ pgpReconData $ owner ) X-ORIGIN 'Pretty Good Priv
acy (PGP)' )
objectClasses: ( 1.3.6.1.4.1.3401.8.2.4 NAME 'pgpProfile' DESC 'PGP defined
objectclass of a collection admin prefs' SUP top STRUCTURAL MUST objectClas
s MAY ( cn $ owner ) X-ORIGIN 'Pretty Good Privacy (PGP)' )
objectClasses: ( 1.3.6.1.4.1.3401.8.2.1 NAME 'pgpElement' DESC 'PGP defined
objectclass of a single admin pref object' SUP top STRUCTURAL MUST objectCl
ass MAY ( pgpElementType $ pgpData $ owner ) X-ORIGIN 'Pretty Good Privacy
(PGP)' )
objectClasses: ( 1.2.840.113556.1.5.87 NAME 'calEntry' DESC 'Calendering and
free/busy information' SUP top AUXILIARY MAY ( calCalURI $ calFBURL $ calC
APURI $ calCalAdrURI $ calOtherCAPURIs $ calOtherCalURIs $ calOtherFBURLs $
calOtherCalAdrURIs ) )
objectClasses: ( 1.3.6.1.4.1.13040.2.2.1 NAME 'hordePerson' DESC 'Horde Pref
erences' SUP top AUXILIARY MAY ( mail $ hordePrefs $ impPrefs $ turbaPrefs
$ gollemPrefs $ kronolithPrefs $ mnemoPrefs $ trollPrefs $ nagPrefs $ klutz
Prefs $ jonahPrefs $ hermesPrefs $ junoPrefs $ treanPrefs $ whupsPrefs $ in
goPrefs $ geniePrefs $ scryPrefs $ anselPrefs $ wickedPrefs $ choraPrefs $
agoraPrefs $ goopsPrefs $ merkPrefs $ volosPrefs $ mimpPrefs $ mottlePrefs
$ nicPrefs $ occamPrefs $ odinPrefs $ rakimPrefs $ seshaPrefs $ swooshPrefs
$ thorPrefs $ ulaformPrefs ) )
objectClasses: ( 1.3.6.1.4.1.13040.2.2.2 NAME 'hordeGroup' DESC 'Horde Group
' SUP top AUXILIARY MAY mail )
objectClasses: ( 1.3.6.1.4.1.13040.4.2.1 NAME 'turbaContact' DESC 'Turba Con
tact' SUP top AUXILIARY MAY ( turbaType $ turbaMembers $ calFBURL ) )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.92 NAME 'dlmOtherIdentifyingInfoI
nstance' DESC 'helper class to tie indexed arrays in core model together' S
UP top STRUCTURAL MUST arrayIndex MAY ( dlmOtherIdentifyingInfo $ dlmIdenti
fyingDescription ) )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.1 NAME 'dlm1ManagedElement' DESC
'ManagedElement is an abstract class that provides a common sup
erclass (or top of the inheritance tree) for the non-association
classes in the CIM Schema.' SUP top ABSTRACT MAY ( dlmCaption $ dlmDescrip
tion $ orderedCimModelPath $ orderedCimKeys ) )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.2 NAME 'dlm1ManagedSystemElement'
DESC 'ManagedSystemElement is the base class for the System Ele
ment hierarchy. Membership Criteria: Any distinguishable compone
nt of a System is a candidate for inclusion in this class. Examp
les: software components, such as files; and devices, such as di
sk drives and controllers, and physical components such
as chips and cards.' SUP dlm1ManagedElement ABSTRACT MAY ( dlmInstallDat
e $ dlmName $ dlmStatus ) )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.10 NAME 'dlm1Collection' DESC 'Co
llection is an abstract class that provides a common superclass
for data elements that represent collections of ManagedElements
and its subclasses.' SUP dlm1ManagedElement ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.4 NAME 'dlm1LogicalElement' DESC
'LogicalElement is a base class for all the components of a Syst
em that represent abstract system components, such as Files, Pro
cesses, or system capabilities in the form of Logical Devices.'
SUP dlm1ManagedSystemElement ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.5 NAME 'dlm1System' DESC 'A Syste
m is a LogicalElement that aggregates an enumerable set of Manag
ed System Elements. The aggregation operates as a functional who
le. Within any particular subclass of System, there is a well-d
efined list of Managed System Element classes whose instances
must be aggregated.' SUP dlm1LogicalElement ABSTRACT MAY ( dlmCre
ationClassName $ dlmName $ dlmNameFormat $ dlmPrimaryOwnerContact $ dlmPrim
aryOwnerName $ dlmRoles ) )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.6 NAME 'dlm1ComputerSystem' DESC
'A class derived from System that is a special collection of Man
agedSystemElements. This collection provides compute capabilitie
s and serves as aggregation point to associate one or more of th
e following elements: FileSystem, OperatingSystem, Pr
ocessor and Memory (Volatile and/or NonVolatile Storage).' SUP d
lm1System ABSTRACT MAY ( dlmDedicated $ dlmNameFormat ) )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.93 NAME 'dlm1AdminDomain' DESC 'T
his is a special grouping of ManagedSystemElements. The grouping
is viewed as a single entity, reflecting that all of its compon
ents are administered similarly - either by the same user,
group of users or policy. It serves as an aggregation poin
t to associate one or more of the following elements: network de
vices, such as routers and switches, servers, and other resource
s that can be accessed by end systems. This grouping of devices
plays an essential role in ensuring that the same adm
inistrative policy and actions are applied to all of the devices
in the grouping. The specific behavior and/or semantics of the
AdminDomain can be identified through its aggregated and associa
ted entities. The System class and its subclasses provide the sc
ope for numerous types of managed objects. As such, these
classes must have the ability to create unique keys. This a
ttribute is used by the System class and its subclasses to defin
e a unique Name, independent of the specific discovery protocol
used. Use of the heuristic is optional, but recommended. AdminD
omain is a part of the Core model, which has frequently been us
ed in the Networks Model to group together various network
resources that must be administered the same way, perhaps
using the same policies. Viewed in this light, its principal su
bclass is AutonomousSystem.' SUP dlm1System ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.94 NAME 'dlm1AdminDomainAuxClass'
DESC 'This is a special grouping of ManagedSystemElements. The
grouping is viewed as a single entity, reflecting that all of it
s components are administered similarly - either by the same use
r, group of users or policy. It serves as an aggregation
point to associate one or more of the following elements: ne
twork devices, such as routers and switches, servers, and other
resources that can be accessed by end systems. This grouping of
devices plays an essential role in ensuring that the same
administrative policy and actions are applied to all of the
devices in the grouping. The specific behavior and/or semantics
of the AdminDomain can be identified through its aggregated and
associated entities. The System class and its subclasses provid
e the scope for numerous types of managed objects. As such, thes
e classes must have the ability to create unique keys.
This attribute is used by the System class and its subclasses
to define a unique Name, independent of the specific discovery
protocol used. Use of the heuristic is optional, but recommended
. AdminDomain is a part of the Core model, which has frequently
been used in the Networks Model to group together various netwo
rk resources that must be administered the same way,
perhaps using the same policies. Viewed in this light, its prin
cipal subclass is AutonomousSystem.' SUP dlm1AdminDomain AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.95 NAME 'dlm1AdminDomainInstance'
DESC 'This is a special grouping of ManagedSystemElements. The
grouping is viewed as a single entity, reflecting that all of it
s components are administered similarly - either by the same use
r, group of users or policy. It serves as an aggregation
point to associate one or more of the following elements: ne
twork devices, such as routers and switches, servers, and other
resources that can be accessed by end systems. This grouping of
devices plays an essential role in ensuring that the same
administrative policy and actions are applied to all of the
devices in the grouping. The specific behavior and/or semantics
of the AdminDomain can be identified through its aggregated and
associated entities. The System class and its subclasses provid
e the scope for numerous types of managed objects. As such, thes
e classes must have the ability to create unique keys.
This attribute is used by the System class and its subclasses
to define a unique Name, independent of the specific discovery
protocol used. Use of the heuristic is optional, but recommended
. AdminDomain is a part of the Core model, which has frequently
been used in the Networks Model to group together various netwo
rk resources that must be administered the same way,
perhaps using the same policies. Viewed in this light, its prin
cipal subclass is AutonomousSystem.' SUP dlm1AdminDomain STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.8 NAME 'dlm1Service' DESC 'A Serv
ice is a Logical Element that contains the information necessary
to represent and manage the functionality provided by a Device
and/or SoftwareFeature. A Service is a general-purpose object
to configure and manage the implementation of function
ality. It is not the functionality itself.' SUP dlm1LogicalElement ABSTRAC
T MAY ( dlmCreationClassName $ dlmName $ dlmStartMode $ dlmStarted ) )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.9 NAME 'dlm1ServiceAccessPoint' D
ESC 'ServiceAccessPoint represents the ability to utilize or inv
oke a Service. Access points represent that a Service is made a
vailable to other entities for use.' SUP dlm1LogicalElement ABS
TRACT MAY ( dlmCreationClassName $ dlmName ) )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.15 NAME 'dlm1Setting' DESC 'The S
etting class represents configuration-related and operational pa
rameters for one or more ManagedSystem Element(s). A
ManagedSystemElement may have multiple Setting objects associat
ed with it. The current operational values for an Element"s para
meters are reflected by properties in the Element itself or by
properties in its associations. These properties do not have to
be the same values present in the Setting object. For
example, a modem may have a Setting baud rate of 56Kb/sec but b
e operating at 19.2Kb/sec.' SUP dlm1ManagedElement ABSTRACT MAY dlmSettingI
D )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.42 NAME 'dlm1Dependency' DESC 'De
pendency is a generic association used to establish dependency r
elationships between ManagedElements.' SUP top ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.34 NAME 'dlm1ElementSetting' DESC
'ElementSetting represents the association between Managed Sys
temElements and the Setting class(es) defined for them.' SUP top
ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.35 NAME 'dlm1ElementSettingAuxCla
ss' DESC 'ElementSetting represents the association between Man
aged SystemElements and the Setting class(es) defined for them.'
SUP dlm1ElementSetting AUXILIARY MAY ( dlmElementSettingElementRef $ dlmEl
ementSettingSettingRef ) )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.60 NAME 'dlm1MemberOfCollection'
DESC 'MemberOfCollection is an aggregation used to establish mem
bership of ManagedElements in a Collection.' SUP top ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.412.100.2.1.3.61 NAME 'dlm1MemberOfCollectionAu
xClass' DESC 'MemberOfCollection is an aggregation used to estab
lish membership of ManagedElements in a Collection.' SUP dlm1Mem
berOfCollection AUXILIARY MAY ( dlmMemberOfCollectionCollectionRef $ dlmMem
berOfCollectionMemberRef ) )
objectClasses: ( 1.3.6.1.4.1.10126.7.1.4.1.8 NAME 'dlm1FilterList' DESC 'A F
ilterList is used by network devices to identify routes by aggrega
ting a set of FilterEntries into a unit, called a FilterList. Filt
erLists can also be used to accept or deny routing updates.
A FilterList is weak to the network device (e.g., the ComputerS
ystem) that contains it. Hence, the ComputerSystem keys are propag
ated to this class.' SUP dlm1LogicalElement STRUCTURAL MAY ( dlmName $ dlm1
FilterListDirection ) )
objectClasses: ( 1.3.6.1.4.1.10126.7.1.4.1.1 NAME 'dlm1FilterEntryBase' DESC
'FilterEntryBase is an abstract class to define the naming of all
filter entries, and to allow their common aggregation into Filter
Lists. The FilterEntry subclass represents packet filtering. Other
types of Entries are possible - for example, to filter security c
redentials. FilterEntryBase is weak to the network device (e.g., t
he ComputerSystem) that contains it. Hence, the ComputerSystem
keys are propagated to this class.' SUP dlm1LogicalElement ABSTRACT M
AY ( dlmCreationClassName $ dlmName $ dlm1FilterEntryBaseIsNegated ) )
objectClasses: ( 1.3.6.1.4.1.10126.7.1.4.1.2 NAME 'dlm1FilterEntryBaseAuxCla
ss' SUP dlm1FilterEntryBase AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.10126.7.1.4.1.3 NAME 'dlm1FilterEntryBaseInstan
ce' SUP dlm1FilterEntryBase STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.10126.7.1.4.1.4 NAME 'dlm1ProtocolEndpoint' DES
C 'A communication point from which data may be sent or received.
ProtocolEndpoints link router interfaces and switch ports to Logic
alNetworks.' SUP dlm1ServiceAccessPoint ABSTRACT MAY ( dlmName $ dlmProtoco
lType $ dlmOtherTypeDescription ) )
objectClasses: ( 1.3.6.1.4.1.10126.7.1.4.1.5 NAME 'dlm1IPProtocolEndpoint' D
ESC 'The IP address that this ProtocolEndpoint represents, formatt
ed according to the appropriate convention as defined in the Addre
ssType property of this class (e.g., 171.79.6.40).' SUP dlm1Protoc
olEndpoint ABSTRACT MAY ( dlmIPAddress $ dlmIPSubnetMask $ dlmIPAddressType
$ dlmIPVersionSupport ) )
objectClasses: ( 1.3.6.1.4.1.10126.7.1.4.1.6 NAME 'dlm1IPProtocolEndpointAux
Class' DESC 'Auxilary Class for this IPProtocolEndpoint.' SUP dlm1IPProtoco
lEndpoint AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.10126.7.1.4.1.7 NAME 'dlm1IPProtocolEndpointIns
tance' DESC 'A structural class for an IPProtocolEndpoint.' SUP dlm1IPProto
colEndpoint STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.47 NAME 'dlm1OrganizationalEntity
' DESC 'OrganizationalEntity is an abstract class from which cla
sses that fit into an organizational structure are derived.' SUP
dlm1ManagedElement ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.48 NAME 'dlm1UserEntity' DESC 'Us
erEntity is an abstract class that represents users.' SUP dlm1Or
ganizationalEntity ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.49 NAME 'dlm1UsersAccess' DESC 'T
he UsersAccess object class is used to specify a system user th
at permitted access to system resources. The ManagedElement th
at has access to system resources (represented in the model in t
he ElementAsUser association) may be a person, a service, a serv
ice access point or any collection thereof. Whereas the
Account class represents the user"s relationship to a system
from the perspective of the security services of the system, the
UserAccess class represents the relationships to the systems in
dependent of a particular system or service.' SUP dlm1UserEntity
ABSTRACT MAY ( dlmBiometric $ dlmCreationClassName $ dlmElementID $ dlmNam
e ) )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.4 NAME 'dlm1SecurityService' DESC
'SecurityService ...' SUP dlm1Service ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.8 NAME 'dlm1AuthenticationService
' DESC 'AuthenticationService verifies users" identities through
some means. These services are decomposed into a subclass that p
rovides credentials to users and a subclass that provides for th
e verification of the validity of a credential and, perhaps, the
appropriateness of its use for access to target resourc
es. The persistent state information used from one such verificat
ion to another is maintained in an Account for that Users Access
on that AuthenticationService.' SUP dlm1SecurityService ABSTRACT
)
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.9 NAME 'dlm1AuthenticationService
AuxClass' DESC 'AuthenticationService verifies users" identities
through some means. These services are decomposed into a subclas
s that provides credentials to users and a subclass that provide
s for the verification of the validity of a credential and, perha
ps, the appropriateness of its use for access to target
resources. The persistent state information used from one such v
erification to another is maintained in an Account for that Users
Access on that AuthenticationService.' SUP dlm1AuthenticationSer
vice AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.10 NAME 'dlm1AuthenticationServic
eInstance' DESC 'AuthenticationService verifies users" identities
through some means. These services are decomposed into a subcla
ss that provides credentials to users and a subclass that provid
es for the verification of the validity of a credential and, perh
aps, the appropriateness of its use for access to target
resources. The persistent state information used from one such
verification to another is maintained in an Account for that User
s Access on that AuthenticationService.' SUP dlm1AuthenticationSe
rvice STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.14 NAME 'dlm1CredentialManagement
Service' DESC 'CredentialManagementService issues credentials and
manages the credential lifecycle.' SUP dlm1AuthenticationService ABSTRACT
)
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.15 NAME 'dlm1CredentialManagement
ServiceAuxClass' DESC 'CredentialManagementService issues credentials
and manages the credential lifecycle.' SUP dlm1CredentialManagementSer
vice AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.16 NAME 'dlm1CredentialManagement
ServiceInstance' DESC 'CredentialManagementService issues credentials
and manages the credential lifecycle.' SUP dlm1CredentialManagementSer
vice STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.50 NAME 'dlm1UsersAccessAuxClass'
DESC 'The UsersAccess object class is used to specify a system
user that permitted access to system resources. The ManagedEl
ement that has access to system resources (represented in the mo
del in the ElementAsUser association) may be a person, a service
, a service access point or any collection thereof. Whereas the
Account class represents the user"s relationship to a
system from the perspective of the security services of the sys
tem, the UserAccess class represents the relationships to the sy
stems independent of a particular system or service.' SUP dlm1Us
ersAccess AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.51 NAME 'dlm1UsersAccessInstance'
DESC 'The UsersAccess object class is used to specify a system
user that permitted access to system resources. The ManagedEl
ement that has access to system resources (represented in the mo
del in the ElementAsUser association) may be a person, a service
, a service access point or any collection thereof. Whereas the
Account class represents the user"s relationship to a
system from the perspective of the security services of the sys
tem, the UserAccess class represents the relationships to the sy
stems independent of a particular system or service.' SUP dlm1Us
ersAccess STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.75 NAME 'dlm1ElementAsUser' DESC
'ElementAsUser is an association used to establish the "ownersh
ip" of UsersAccess object instances. That is, the ManagedElemen
t may have UsersAccess to systems and, therefore, be "users" on
those systems. UsersAccess instances must have an "owning"
ManagedElement. Typically, the ManagedElements will be
limited to Collection, Person, Service and ServiceAccessPoint. O
ther non-human ManagedElements that might be thought of as havin
g UsersAccess (e.g., a device or system) have services that have
the UsersAccess.' SUP dlm1Dependency ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.76 NAME 'dlm1ElementAsUserAuxClas
s' DESC 'ElementAsUser is an association used to establish the
"ownership" of UsersAccess object instances. That is, the Manag
edElement may have UsersAccess to systems and, therefore, be "u
sers" on those systems. UsersAccess instances must have an "own
ing" ManagedElement. Typically, the ManagedElements will
be limited to Collection, Person, Service and ServiceAccess
Point. Other non-human ManagedElements that might be thought of
as having UsersAccess (e.g., a device or system) have services t
hat have the UsersAccess.' SUP dlm1ElementAsUser AUXILIARY MAY (
dlmElementAsUserAntecedentRef $ dlmElementAsUserDependentRef ) )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.91 NAME 'dlm1UsersCredential' DES
C 'UsersCredential is an association used to establish the crede
ntials that may be used for a UsersAccess to a system or set of
systems. ' SUP dlm1Dependency ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.92 NAME 'dlm1UsersCredentialAuxCl
ass' DESC 'UsersCredential is an association used to establish t
he credentials that may be used for a UsersAccess to a system or
set of systems. ' SUP dlm1UsersCredential AUXILIARY MAY ( dlmUsersCredenti
alAntecedentRef $ dlmUsersCredentialDependentRef ) )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.52 NAME 'dlm1Credential' DESC 'Su
bclasses of Credential define materials, information, or other da
ta which are used to prove the identity of a UsersAccess to a pa
rticular SecurityService. Generally, there may be some shared
information, or credential material which is used to iden
tify and authenticate ones self in the process of gaining access
to, or permission to use, an Account. Such credential material ma
y be used to authenticate a users access identity initially, as
done by a AuthenticationService (see later), and additionally on
an ongoing basis during the course of a connection or
other security association, as proof that each received message
or communication came from the owning user access of that crede
ntial material.' SUP dlm1ManagedElement ABSTRACT )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.62 NAME 'dlm1SharedSecret' DESC '
SharedSecret is the secret shared between a Users Access and a p
articular SharedSecret security service. Secrets may be in the
form of a password used for initial authentication, or as with a
session key, used as part of a message authentication code to ve
rify that a message originated by the pricinpal with whom the
secret is shared. It is important to note that SharedSecr
et is not just the password, but rather is the password used with
a particular security service.' SUP dlm1Credential ABSTRACT MAY ( dlmRemot
eID $ dlmAlgorithm $ dlmProtocol $ dlmSecret ) )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.63 NAME 'dlm1SharedSecretAuxClass
' DESC 'SharedSecret is the secret shared between a Users Access
and a particular SharedSecret security service. Secrets may be
in the form of a password used for initial authentication, or as
with a session key, used as part of a message authentication co
de to verify that a message originated by the pricinpal with who
m the secret is shared. It is important to note that Sh
aredSecret is not just the password, but rather is the password u
sed with a particular security service.' SUP dlm1SharedSecret AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.412.100.4.1.1.64 NAME 'dlm1SharedSecretInstance
' DESC 'SharedSecret is the secret shared between a Users Access
and a particular SharedSecret security service. Secrets may be
in the form of a password used for initial authentication, or as
with a session key, used as part of a message authentication co
de to verify that a message originated by the pricinpal with who
m the secret is shared. It is important to note that Sh
aredSecret is not just the password, but rather is the password u
sed with a particular security service.' SUP dlm1SharedSecret STRUCTURAL )
objectClasses: ( 1.3.6.1.1.6.1.1 NAME 'pcimPolicy' DESC 'RFC 3703: An abstra
ct class that is the base class for all classes that describe policy-relate
d instances.' SUP dlm1ManagedElement ABSTRACT MAY ( cn $ dlmCaption $ dlmDe
scription $ orderedCimKeys $ pcimKeywords ) )
objectClasses: ( 1.3.6.1.1.6.1.8 NAME 'pcimRuleConditionAssociation' DESC 'R
FC 3703: This class contains attributes characterizing the relationship bet
ween a policy rule and one of its policy conditions.' SUP pcimPolicy STRUCT
URAL MUST ( pcimConditionGroupNumber $ pcimConditionNegated ) MAY ( pcimCon
ditionName $ pcimConditionDN ) )
objectClasses: ( 1.3.6.1.1.6.1.10 NAME 'pcimRuleActionAssociation' DESC 'RFC
3703: This class contains attributes characterizing the relationship betwe
en a policy rule and one of its policy actions.' SUP pcimPolicy STRUCTURAL
MUST pcimActionOrder MAY ( pcimActionName $ pcimActionDN ) )
objectClasses: ( 1.3.6.1.1.6.1.11 NAME 'pcimConditionAuxClass' DESC 'RFC 370
3: A class representing a condition to be evaluated in conjunction with a p
olicy rule.' SUP top AUXILIARY )
objectClasses: ( 1.3.6.1.1.6.1.14 NAME 'pcimActionAuxClass' DESC 'RFC 3703:
A class representing an action to be performed as a result of a policy rule
.' SUP top AUXILIARY )
objectClasses: ( 1.3.6.1.1.6.1.18 NAME 'pcimRepository' DESC 'RFC 3703: A co
ntainer for reusable policy information.' SUP dlm1AdminDomain ABSTRACT MAY
pcimRepositoryName )
objectClasses: ( 1.3.6.1.1.9.1.1 NAME 'pcelsPolicySet' DESC 'RFC 4104: Set o
f policies' SUP pcimPolicy ABSTRACT MAY ( pcelsPolicySetName $ pcelsDecisio
nStrategy $ pcimRoles $ pcelsPolicySetList ) )
objectClasses: ( 1.3.6.1.1.9.1.2 NAME 'pcelsPolicySetAssociation' DESC 'RFC
4104: Associates a policy set to an aggregating entry' SUP pcimPolicy STRUC
TURAL MUST pcelsPriority MAY ( pcelsPolicySetName $ pcelsPolicySetDN ) )
objectClasses: ( 1.3.6.1.1.9.1.3 NAME 'pcelsGroup' DESC 'RFC 4104: Base clas
s for representing a policy group' SUP pcelsPolicySet ABSTRACT MAY pcimGrou
pName )
objectClasses: ( 1.3.6.1.1.9.1.4 NAME 'pcelsGroupAuxClass' DESC 'RFC 4104: A
uxiliary class for representing a policy group' SUP pcelsGroup AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.5 NAME 'pcelsGroupInstance' DESC 'RFC 4104: S
tructural class for representing a policy group' SUP pcelsGroup STRUCTURAL
)
objectClasses: ( 1.3.6.1.1.9.1.6 NAME 'pcelsRule' DESC 'RFC 4104: Base class
for representing a policy rule' SUP pcelsPolicySet ABSTRACT MAY ( pcimRule
Name $ pcimRuleEnabled $ pcimRuleUsage $ pcimRuleMandatory $ pcelsRuleValid
ityPeriodList $ pcelsConditionListType $ pcelsConditionList $ pcelsActionLi
st $ pcelsSequencedActions $ pcelsExecutionStrategy ) )
objectClasses: ( 1.3.6.1.1.9.1.7 NAME 'pcelsRuleAuxClass' DESC 'RFC 4104: Au
xiliary class for representing a policy rule' SUP pcelsRule AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.8 NAME 'pcelsRuleInstance' DESC 'RFC 4104: St
ructural class for representing a policy rule' SUP pcelsRule STRUCTURAL )
objectClasses: ( 1.3.6.1.1.9.1.9 NAME 'pcelsConditionAssociation' DESC 'RFC
4104: Associates a policy conditions to an aggregating entry' SUP pcimRuleC
onditionAssociation STRUCTURAL )
objectClasses: ( 1.3.6.1.1.9.1.10 NAME 'pcelsActionAssociation' DESC 'RFC 41
04: Associates a policy conditions to an aggregating entry' SUP pcimRuleAct
ionAssociation STRUCTURAL )
objectClasses: ( 1.3.6.1.1.9.1.11 NAME 'pcelsSimpleConditionAuxClass' DESC '
RFC 4104: Value matching condition for a policy variable' SUP pcimCondition
AuxClass AUXILIARY MAY ( pcelsVariableDN $ pcelsValueDN ) )
objectClasses: ( 1.3.6.1.1.9.1.12 NAME 'pcelsCompoundConditionAuxClass' DESC
'RFC 4104: Boolean combination of simpler conditions' SUP pcimConditionAux
Class AUXILIARY MAY ( pcelsConditionListType $ pcelsConditionList ) )
objectClasses: ( 1.3.6.1.1.9.1.13 NAME 'pcelsCompoundFilterConditionAuxClass
' DESC 'RFC 4104: A compound condition with mirroring capabilities' SUP pce
lsCompoundConditionAuxClass AUXILIARY MAY pcelsIsMirrored )
objectClasses: ( 1.3.6.1.1.9.1.14 NAME 'pcelsSimpleActionAuxClass' DESC 'RFC
4104: Value assignment action for a policy variable' SUP pcimActionAuxClas
s AUXILIARY MAY ( pcelsVariableDN $ pcelsValueDN ) )
objectClasses: ( 1.3.6.1.1.9.1.15 NAME 'pcelsCompoundActionAuxClass' DESC 'R
FC 4104: Sequence of actions with specific execution strategy' SUP pcimActi
onAuxClass AUXILIARY MAY ( pcelsActionList $ pcelsSequencedActions $ pcelsE
xecutionStrategy ) )
objectClasses: ( 1.3.6.1.1.9.1.16 NAME 'pcelsVariable' DESC 'RFC 4104: Base
class for representing a policy variable' SUP top ABSTRACT MAY ( pcelsVaria
bleName $ pcelsExpectedValueList ) )
objectClasses: ( 1.3.6.1.1.9.1.17 NAME 'pcelsExplicitVariableAuxClass' DESC
'RFC 4104: Explicitly defined policy variable' SUP pcelsVariable AUXILIARY
MUST ( pcelsVariableModelClass $ pcelsVariableModelProperty ) )
objectClasses: ( 1.3.6.1.1.9.1.18 NAME 'pcelsImplicitVariableAuxClass' DESC
'RFC 4104: Implicitly defined policy variable' SUP pcelsVariable AUXILIARY
MAY pcelsExpectedValueTypes )
objectClasses: ( 1.3.6.1.1.9.1.19 NAME 'pcelsSourceIPv4VariableAuxClass' DES
C 'RFC 4104: Source IP v4 address' SUP pcelsImplicitVariableAuxClass AUXILI
ARY )
objectClasses: ( 1.3.6.1.1.9.1.20 NAME 'pcelsSourceIPv6VariableAuxClass' DES
C 'RFC 4104: Source IP v6 address' SUP pcelsImplicitVariableAuxClass AUXILI
ARY )
objectClasses: ( 1.3.6.1.1.9.1.21 NAME 'pcelsDestinationIPv4VariableAuxClass
' DESC 'RFC 4104: Destination IP v4 address' SUP pcelsImplicitVariableAuxCl
ass AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.22 NAME 'pcelsDestinationIPv6VariableAuxClass
' DESC 'RFC 4104: Destination IP v6 address' SUP pcelsImplicitVariableAuxCl
ass AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.23 NAME 'pcelsSourcePortVariableAuxClass' DES
C 'RFC 4104: Source port' SUP pcelsImplicitVariableAuxClass AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.24 NAME 'pcelsDestinationPortVariableAuxClass
' DESC 'RFC 4104: Destination port' SUP pcelsImplicitVariableAuxClass AUXIL
IARY )
objectClasses: ( 1.3.6.1.1.9.1.25 NAME 'pcelsIPProtocolVariableAuxClass' DES
C 'RFC 4104: IP protocol number' SUP pcelsImplicitVariableAuxClass AUXILIAR
Y )
objectClasses: ( 1.3.6.1.1.9.1.26 NAME 'pcelsIPVersionVariableAuxClass' DESC
'RFC 4104: IP version number' SUP pcelsImplicitVariableAuxClass AUXILIARY
)
objectClasses: ( 1.3.6.1.1.9.1.27 NAME 'pcelsIPToSVariableAuxClass' DESC 'RF
C 4104: IP ToS octet' SUP pcelsImplicitVariableAuxClass AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.28 NAME 'pcelsDSCPVariableAuxClass' DESC 'RFC
4104: DiffServ code point' SUP pcelsImplicitVariableAuxClass AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.29 NAME 'pcelsFlowIdVariableAuxClass' DESC 'R
FC 4104: Flow Identifier' SUP pcelsImplicitVariableAuxClass AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.30 NAME 'pcelsSourceMACVariableAuxClass' DESC
'RFC 4104: Source MAC address' SUP pcelsImplicitVariableAuxClass AUXILIARY
)
objectClasses: ( 1.3.6.1.1.9.1.31 NAME 'pcelsDestinationMACVariableAuxClass'
DESC 'RFC 4104: Destination MAC address' SUP pcelsImplicitVariableAuxClass
AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.32 NAME 'pcelsVLANVariableAuxClass' DESC 'RFC
4104: VLAN' SUP pcelsImplicitVariableAuxClass AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.33 NAME 'pcelsCoSVariableAuxClass' DESC 'RFC
4104: Class of service' SUP pcelsImplicitVariableAuxClass AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.34 NAME 'pcelsEthertypeVariableAuxClass' DESC
'RFC 4104: Ethertype' SUP pcelsImplicitVariableAuxClass AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.35 NAME 'pcelsSourceSAPVariableAuxClass' DESC
'RFC 4104: Source SAP' SUP pcelsImplicitVariableAuxClass AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.36 NAME 'pcelsDestinationSAPVariableAuxClass'
DESC 'RFC 4104: Destination SAP' SUP pcelsImplicitVariableAuxClass AUXILIA
RY )
objectClasses: ( 1.3.6.1.1.9.1.37 NAME 'pcelsSNAPOUIVariableAuxClass' DESC '
RFC 4104: SNAP OUI' SUP pcelsImplicitVariableAuxClass AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.38 NAME 'pcelsSNAPTypeVariableAuxClass' DESC
'RFC 4104: SNAP type' SUP pcelsImplicitVariableAuxClass AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.39 NAME 'pcelsFlowDirectionVariableAuxClass'
DESC 'RFC 4104: Flow direction' SUP pcelsImplicitVariableAuxClass AUXILIARY
)
objectClasses: ( 1.3.6.1.1.9.1.40 NAME 'pcelsValueAuxClass' DESC 'RFC 4104:
Base class for representing a policy value' SUP top AUXILIARY MAY pcelsValu
eName )
objectClasses: ( 1.3.6.1.1.9.1.41 NAME 'pcelsIPv4AddrValueAuxClass' DESC 'RF
C 4104: Provides IPv4 addresses' SUP pcelsValueAuxClass AUXILIARY MUST pcel
sIPv4AddrList )
objectClasses: ( 1.3.6.1.1.9.1.42 NAME 'pcelsIPv6AddrValueAuxClass' DESC 'RF
C 4104: Provides IPv6 addresses' SUP pcelsValueAuxClass AUXILIARY MUST pcel
sIPv6AddrList )
objectClasses: ( 1.3.6.1.1.9.1.43 NAME 'pcelsMACAddrValueAuxClass' DESC 'RFC
4104: Provides MAC addresses' SUP pcelsValueAuxClass AUXILIARY MUST pcelsM
ACAddrList )
objectClasses: ( 1.3.6.1.1.9.1.44 NAME 'pcelsStringValueAuxClass' DESC 'RFC
4104: Provides string values' SUP pcelsValueAuxClass AUXILIARY MUST pcelsSt
ringList )
objectClasses: ( 1.3.6.1.1.9.1.45 NAME 'pcelsBitStringValueAuxClass' DESC 'R
FC 4104: Provides bit strings' SUP pcelsValueAuxClass AUXILIARY MUST pcelsB
itStringList )
objectClasses: ( 1.3.6.1.1.9.1.46 NAME 'pcelsIntegerValueAuxClass' DESC 'RFC
4104: Provides integer values' SUP pcelsValueAuxClass AUXILIARY MUST pcels
IntegerList )
objectClasses: ( 1.3.6.1.1.9.1.47 NAME 'pcelsBooleanValueAuxClass' DESC 'RFC
4104: Provides a boolean value.' SUP pcelsValueAuxClass AUXILIARY MUST pce
lsBoolean )
objectClasses: ( 1.3.6.1.1.9.1.48 NAME 'pcelsReusableContainer' DESC 'RFC 41
04: Container for reusable policy information' SUP pcimRepository ABSTRACT
MAY ( pcelsReusableContainerName $ pcelsReusableContainerList ) )
objectClasses: ( 1.3.6.1.1.9.1.49 NAME 'pcelsReusableContainerAuxClass' DESC
'RFC 4104: Container for reusable policy information' SUP pcelsReusableCon
tainer AUXILIARY )
objectClasses: ( 1.3.6.1.1.9.1.50 NAME 'pcelsReusableContainerInstance' DESC
'RFC 4104: Container for reusable policy information' SUP pcelsReusableCon
tainer STRUCTURAL )
objectClasses: ( 1.3.6.1.1.9.1.51 NAME 'pcelsRoleCollection' DESC 'RFC 4104:
Collection of managed elements that share a common role' SUP pcimPolicy ST
RUCTURAL MUST pcelsRole MAY ( pcelsRoleCollectionName $ pcelsElementList )
)
objectClasses: ( 1.3.6.1.1.9.1.52 NAME 'pcelsFilterEntryBase' DESC 'RFC 4104
: Base class for message or packet filters' SUP pcimPolicy ABSTRACT MAY ( p
celsFilterName $ pcelsFilterIsNegated ) )
objectClasses: ( 1.3.6.1.1.9.1.53 NAME 'pcelsIPHeadersFilter' DESC 'RFC 4104
: IP header filter' SUP pcelsFilterEntryBase STRUCTURAL MAY ( pcelsIPHdrVer
sion $ pcelsIPHdrSourceAddress $ pcelsIPHdrSourceAddressEndOfRange $ pcelsI
PHdrSourceMask $ pcelsIPHdrDestAddress $ pcelsIPHdrDestAddressEndOfRange $
pcelsIPHdrDestMask $ pcelsIPHdrProtocolID $ pcelsIPHdrSourcePortStart $ pce
lsIPHdrSourcePortEnd $ pcelsIPHdrDestPortStart $ pcelsIPHdrDestPortEnd $ pc
elsIPHdrDSCPList $ pcelsIPHdrFlowLabel ) )
objectClasses: ( 1.3.6.1.1.9.1.54 NAME 'pcels8021Filter' DESC 'RFC 4104: 802
.1 header filter' SUP pcelsFilterEntryBase STRUCTURAL MAY ( pcels8021HdrSou
rceMACAddress $ pcels8021HdrSourceMACMask $ pcels8021HdrDestMACAddress $ pc
els8021HdrDestMACMask $ pcels8021HdrProtocolID $ pcels8021HdrPriority $ pce
ls8021HdrVLANID ) )
objectClasses: ( 1.3.6.1.1.9.1.55 NAME 'pcelsFilterListAuxClass' DESC 'RFC 4
104: Collection of pcelsFilterEntryBase filters' SUP pcimConditionAuxClass
AUXILIARY MAY ( pcelsFilterListName $ pcelsFilterDirection $ pcelsFilterEnt
ryList ) )
objectClasses: ( 1.3.6.1.1.9.1.56 NAME 'pcelsVendorVariableAuxClass' DESC 'R
FC 4104: Defines registered means to describe a policy variable' SUP pcelsV
ariable AUXILIARY MAY ( pcelsVendorVariableData $ pcelsVendorVariableEncodi
ng ) )
objectClasses: ( 1.3.6.1.1.9.1.57 NAME 'pcelsVendorValueAuxClass' DESC 'RFC
4104: Defines registered means to describe a policy value' SUP pcelsValueAu
xClass AUXILIARY MAY ( pcelsVendorValueData $ pcelsVendorValueEncoding ) )
objectClasses: ( 1.3.6.1.4.1.7924.2.1.2.1 NAME 'demailBaseObject' DESC '' SU
P top AUXILIARY MUST mail MAY c )
objectClasses: ( 1.3.6.1.4.1.7924.2.1.2.2 NAME 'demailSecurityObject' DESC '
' SUP demailBaseObject AUXILIARY MUST demailMaxAuthLevel )
objectClasses: ( 1.3.6.1.4.1.7924.2.1.2.3 NAME 'demailPersonObject' DESC ''
SUP demailSecurityObject AUXILIARY MAY personalTitle )
objectClasses: ( 1.3.6.1.4.1.7924.2.1.2.4 NAME 'demailLegalPersonObject' DES
C '' SUP demailSecurityObject AUXILIARY MUST displayName )
objectClasses: ( 1.3.6.1.4.1.7924.2.1.2.5 NAME 'demailLegalPersonUserObject'
DESC '' SUP demailSecurityObject AUXILIARY MUST ( displayName $ o ) )
objectClasses: ( 1.3.6.1.4.1.15953.9.2.1 NAME 'sudoRole' DESC 'Sudoer Entrie
s' SUP top STRUCTURAL MUST cn MAY ( sudoUser $ sudoHost $ sudoCommand $ sud
oRunAs $ sudoRunAsUser $ sudoRunAsGroup $ sudoOption $ sudoNotBefore $ sudo
NotAfter $ sudoOrder $ description ) )
objectClasses: ( 1.3.6.1.4.1.24552.500.1.1.2.0 NAME 'ldapPublicKey' DESC 'MA
NDATORY: OpenSSH LPK objectclass' SUP top AUXILIARY MAY ( sshPublicKey $ ui
d ) )
objectClasses: ( 1.3.6.1.4.1.34380.1.1.1.2 NAME 'puppetClient' DESC 'Puppet
Client object class' SUP top AUXILIARY MAY ( puppetClass $ parentNode $ env
ironment $ puppetVar ) )
objectClasses: ( 1.3.6.1.4.1.29426.2.2.2.1 NAME 'DKIM' DESC 'DKIM Selector a
nd Key container' SUP top AUXILIARY MUST ( DKIMSelector $ DKIMKey ) MAY ( D
KIMIdentity $ DKIMDomain ) )
objectClasses: ( 1.3.6.1.4.1.19937.1.2.1 NAME 'systemQuotas' DESC 'System Qu
otas' SUP posixAccount AUXILIARY MUST uid MAY quota )
objectClasses: ( 1.3.6.1.3.1.1.1.1.2 NAME 'tacacsAccount' DESC 'Tacacs user
object' SUP top AUXILIARY MUST cn MAY ( tacacsClient $ tacacsMember $ tacac
sProfile $ tacacsFlag ) )
objectClasses: ( 1.3.6.1.4.1.3.8.1.2.1 NAME 'cmuSaslUser' SUP top AUXILIARY
MAY ( userPassword $ cmusaslsecretCRAM-MD5 $ cmusaslsecretDIGEST-MD5 $ cmus
aslsecretOTP $ cmusaslsecretSRP ) )
objectClasses: ( 1.3.6.1.4.1.31103.1.1001 NAME 'fedfsNsdbContainerInfo' DESC
'Describes NCE location' SUP top AUXILIARY MUST fedfsNceDN MAY ( fedfsAnno
tation $ fedfsDescr ) )
objectClasses: ( 1.3.6.1.4.1.31103.1.1002 NAME 'fedfsFsn' DESC 'Represents a
fileset' SUP top STRUCTURAL MUST ( fedfsFsnUuid $ fedfsFsnTTL ) MAY ( fedf
sAnnotation $ fedfsDescr ) )
objectClasses: ( 1.3.6.1.4.1.31103.1.1003 NAME 'fedfsFsl' DESC 'A physical l
ocation of a fileset' SUP top ABSTRACT MUST ( fedfsFslUuid $ fedfsFsnUuid )
MAY ( fedfsAnnotation $ fedfsDescr ) )
objectClasses: ( 1.3.6.1.4.1.31103.1.1004 NAME 'fedfsNfsFsl' DESC 'An NFS lo
cation of a fileset' SUP fedfsFsl STRUCTURAL MUST ( fedfsNfsURI $ fedfsNfsC
urrency $ fedfsNfsGenFlagWritable $ fedfsNfsGenFlagGoing $ fedfsNfsGenFlagS
plit $ fedfsNfsTransFlagRdma $ fedfsNfsClassSimul $ fedfsNfsClassHandle $ f
edfsNfsClassFileid $ fedfsNfsClassWritever $ fedfsNfsClassChange $ fedfsNfs
ClassReaddir $ fedfsNfsReadRank $ fedfsNfsReadOrder $ fedfsNfsWriteRank $ f
edfsNfsWriteOrder $ fedfsNfsVarSub $ fedfsNfsValidFor ) )
objectClasses: ( 0.0.8.350.1.1.1.2.1 NAME 'commURIObject' DESC 'object that
contains the URI attribute type' SUP top AUXILIARY MAY commURI )
objectClasses: ( 0.0.8.350.1.1.2.2.1 NAME 'commObject' DESC 'object that con
tains the Communication attributes' SUP top STRUCTURAL MUST commUniqueId MA
Y ( commOwner $ commPrivate ) )
objectClasses: ( 0.0.8.350.1.1.6.2.1 NAME 'SIPIdentity' DESC 'SIPIdentity ob
ject' SUP top AUXILIARY MAY ( SIPIdentitySIPURI $ SIPIdentityRegistrarAddre
ss $ SIPIdentityProxyAddress $ SIPIdentityAddress $ SIPIdentityPassword $ S
IPIdentityUserName $ SIPIdentityServiceLevel $ userSMIMECertificate ) )
objectClasses: ( 1.3.6.1.4.1.11344.4.3.2.1 NAME 'radiusprofile' SUP top AUXI
LIARY MAY ( radiusArapFeatures $ radiusArapSecurity $ radiusArapZoneAccess
$ radiusAuthType $ radiusCallbackId $ radiusCallbackNumber $ radiusCalledSt
ationId $ radiusCallingStationId $ radiusClass $ radiusClientIPAddress $ ra
diusFilterId $ radiusFramedAppleTalkLink $ radiusFramedAppleTalkNetwork $ r
adiusFramedAppleTalkZone $ radiusFramedCompression $ radiusFramedIPAddress
$ radiusFramedIPNetmask $ radiusFramedIPXNetwork $ radiusFramedMTU $ radius
FramedProtocol $ radiusAttribute $ radiusFramedRoute $ radiusFramedRouting
$ radiusIdleTimeout $ radiusGroupName $ radiusHint $ radiusHuntgroupName $
radiusLoginIPHost $ radiusLoginLATGroup $ radiusLoginLATNode $ radiusLoginL
ATPort $ radiusLoginLATService $ radiusLoginService $ radiusLoginTCPPort $
radiusLoginTime $ radiusPasswordRetry $ radiusPortLimit $ radiusPrompt $ ra
diusProxyToRealm $ radiusRealm $ radiusReplicateToRealm $ radiusServiceType
$ radiusSessionTimeout $ radiusStripUserName $ radiusTerminationAction $ r
adiusTunnelClientEndpoint $ radiusProfileDN $ radiusSimultaneousUse $ radiu
sTunnelAssignmentId $ radiusTunnelMediumType $ radiusTunnelPassword $ radiu
sTunnelPreference $ radiusTunnelPrivateGroupId $ radiusTunnelServerEndpoint
$ radiusTunnelType $ radiusUserCategory $ radiusVSA $ radiusExpiration $ d
ialupAccess $ radiusNASIpAddress $ radiusReplyMessage $ radiusControlAttrib
ute $ radiusReplyAttribute $ radiusRequestAttribute ) )
objectClasses: ( 1.3.6.1.4.1.11344.4.3.2.2 NAME 'radiusObjectProfile' DESC '
A Container Objectclass to be used for creating radius profile object' SUP
top STRUCTURAL MUST cn MAY ( uid $ userPassword $ description ) )
objectClasses: ( 1.3.6.1.4.1.11344.1.100.1.1 NAME 'radiusClient' DESC 'radiu
sClient object class' SUP top STRUCTURAL MUST ( radiusClientIdentifier $ ra
diusClientSecret ) MAY ( radiusClientShortname $ radiusClientVirtualServer
$ radiusClientType $ radiusClientRequireMa $ radiusClientComment ) )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.6.1 NAME 'msPerson' DESC 'Supplement
class for person entries' AUXILIARY MAY ( c $ gender $ businessTitle $ per
sonalTitle $ dateOfBirth $ uniqueIdentifier $ nickName $ organizationalStat
us $ userClass $ buildingName $ houseIdentifier $ labeledBICandIBAN $ emplo
yeeType $ birthName $ birthPlace $ euVATId $ delegatesTo $ serialNumber ) )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.6.8 NAME 'msOrganization' DESC 'Supp
lement class for organizations/companies' AUXILIARY MAY ( c $ mail $ labele
dURI $ euVATId $ labeledBICandIBAN $ uniqueIdentifier $ displayName $ organ
izationalStatus ) )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.6.6 NAME 'musician' DESC 'Musician'
AUXILIARY MAY ( musicalInstrument $ musicalOrchestra $ musicalArtistName )
)
objectClasses: ( 1.3.6.1.4.1.5427.1.389.6.660 NAME 'germanBankArrangement' D
ESC 'German bank account information' AUXILIARY MUST ( germanBankAccountNum
ber $ germanBankCode ) MAY ( germanBankAccountHolder $ germanBankName $ ger
manBankAccountInfo ) )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.6.20 NAME 'namedObject' SUP top STRU
CTURAL MUST cn MAY ( uniqueIdentifier $ description ) )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.6.21 NAME 'namedPolicy' SUP namedObj
ect STRUCTURAL )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.6.9 NAME 'mailboxRelatedObject' DESC
'For pointing to an associated RFC2821 (functional) mailbox from any entry
' AUXILIARY MAY ( displayName $ mail $ intlMailAddr ) )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.4226.6.1 NAME 'oathUser' DESC 'OATH-
LDAP: User Object' ABSTRACT X-ORIGIN 'OATH-LDAP' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.4226.6.2 NAME 'oathParams' DESC 'OAT
H-LDAP: Parameter object' ABSTRACT MUST ( oathOTPLength $ oathHMACAlgorithm
) MAY ( oathSecretMaxAge $ oathSecretLength $ oathMaxUsageCount $ oathThro
ttleLimit $ oathEncCert $ oathSuccessResultCode $ oathSuccessMessage $ oath
FailureResultCode $ oathFailureMessage ) X-ORIGIN 'OATH-LDAP' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.4226.6.3 NAME 'oathToken' DESC 'OATH
-LDAP: User Object' ABSTRACT MAY ( oathSecret $ oathSecretTime $ oathLastLo
gin $ oathFailureCount $ oathLastFailure $ oathTokenSerialNumber $ oathToke
nIdentifier $ oathTokenPIN ) X-ORIGIN 'OATH-LDAP' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.4226.6.1.1 NAME 'oathHOTPUser' DESC
'OATH-LDAP: HOTP user object' SUP oathUser AUXILIARY MAY oathHOTPToken X-OR
IGIN 'OATH-LDAP' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.4226.6.2.1 NAME 'oathHOTPParams' DES
C 'OATH-LDAP: HOTP parameter object' SUP oathParams AUXILIARY MUST oathHOTP
LookAhead X-ORIGIN 'OATH-LDAP' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.4226.6.3.1 NAME 'oathHOTPToken' DESC
'OATH-LDAP: HOTP token object' SUP oathToken AUXILIARY MAY ( oathHOTPParam
s $ oathHOTPCounter ) X-ORIGIN 'OATH-LDAP' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.4226.6.1.2 NAME 'oathTOTPUser' DESC
'OATH-LDAP: TOTP user object' SUP oathUser AUXILIARY MUST oathTOTPToken X-O
RIGIN 'OATH-LDAP' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.4226.6.2.2 NAME 'oathTOTPParams' DES
C 'OATH-LDAP: TOTP parameter object' SUP oathParams AUXILIARY MUST oathTOTP
TimeStepPeriod X-ORIGIN 'OATH-LDAP' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.4226.6.3.2 NAME 'oathTOTPToken' DESC
'OATH-LDAP: TOTP token' SUP oathToken AUXILIARY MAY ( oathTOTPParams $ oat
hTOTPLastTimeStep ) X-ORIGIN 'OATH-LDAP' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.42.201 DESC 'Test object class witho
ut NAME' SUP top STRUCTURAL MUST 1.3.6.1.4.1.5427.1.389.42.1 )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.42.202 DESC 'Test object class with
experimental flag' SUP top AUXILIARY MUST X-experimentalFlag )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.42.203 NAME 'X-experimentalNoSuperCl
assAuxiliary' DESC 'Auxiliary object class without superior class' AUXILIAR
Y )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.42.204 NAME 'X-experimentalNoSuperCl
assStructural' DESC 'Auxiliary object class without superior class' STRUCTU
RAL )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.42.824753556 DESC 'Testing really bi
g OID number' AUXILIARY )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.42.8247535563333 NAME 'testPersonAcc
ount' DESC 'account/inetOrgPerson' SUP ( account $ inetOrgPerson ) STRUCTUR
AL )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.6.330 NAME 'msPwdResetObject' DESC '
Entry for which a temporary password was set' AUXILIARY MUST ( msPwdResetPa
sswordHash $ msPwdResetTimestamp $ msPwdResetExpirationTime $ msPwdResetEna
bled ) MAY msPwdResetAdminPw )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.6.331 NAME 'msPwdResetPolicy' DESC '
Entry defining the password reset policy' AUXILIARY MUST ( msPwdResetMaxAge
$ msPwdResetEnabled $ msPwdResetHashAlgorithm $ msPwdResetPwLen $ msPwdRes
etAdminPwLen ) )
objectClasses: ( 1.2.826.0.1.3458854.2.1.1.1 NAME 'groupOfEntries' SUP top S
TRUCTURAL MUST cn MAY ( member $ businessCategory $ seeAlso $ owner $ ou $
o $ description ) )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.24 NAME 'aeTag' DESC 'AE-DIR:
Tag for marking objects with arbitrary shared information' SUP namedObject
STRUCTURAL MUST ( aeStatus $ description ) X-ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.21 NAME 'aeObject' DESC 'AE-DI
R: Managed object' ABSTRACT MUST aeStatus MAY ( description $ aeNotBefore $
aeNotAfter $ aeTicketId $ aeTag ) X-ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.23 NAME 'aePosixIdRanges' DESC
'AE-DIR: POSIX UID/GID pool' AUXILIARY MAY ( aeUidNumberMin $ aeUidNumberM
ax $ uidNumber $ aeGidNumberMin $ aeGidNumberMax $ gidNumber ) X-ORIGIN 'AE
-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.26 NAME 'aePolicy' DESC 'AE-DI
R: policy entry' SUP ( namedPolicy $ aeObject ) STRUCTURAL MUST description
X-ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.22 NAME 'aeRoot' DESC 'AE-DIR:
Top-level search root entry' SUP ( organizationalUnit $ aeObject ) STRUCTU
RAL X-ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.29 NAME 'aeDept' DESC 'AE-DIR:
Department within an organization' SUP ( organizationalUnit $ aeObject ) S
TRUCTURAL MUST departmentNumber MAY ( o $ displayName $ manager $ aeSourceU
ri ) X-ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.20 NAME 'aeZone' DESC 'AE-DIR:
Zone for delegated administration' SUP ( namedObject $ aeObject ) STRUCTUR
AL MUST description MAY ( aeDept $ aeZoneAdmins $ aeZoneAuditors $ aePasswo
rdAdmins ) X-ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.1 NAME 'aeGroup' DESC 'AE-DIR:
Group entry' SUP ( groupOfEntries $ posixGroup $ groupOfURLs $ aeObject )
STRUCTURAL MUST description MAY aeDept X-ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.7 NAME 'aeSudoRule' DESC 'AE-D
IR: Specific SUDO rule' SUP ( sudoRole $ aeObject ) STRUCTURAL MUST ( sudoU
ser $ description ) X-ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.2 NAME 'aeUser' DESC 'AE-DIR:
User' SUP ( inetOrgPerson $ account $ aeObject ) STRUCTURAL MUST ( uid $ ae
Person $ givenName $ displayName ) MAY aeRemoteHost X-ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.13 NAME 'aeSrvGroup' DESC 'AE-
DIR: Server type/group' SUP ( namedObject $ aeObject ) STRUCTURAL MUST ( cn
$ description ) MAY ( aeSrvGroup $ aeProxyFor $ aeLogStorePeriod $ aeSetup
Groups $ aeLogStoreGroups $ aeLoginGroups $ aeVisibleGroups $ aeDisplayName
Groups $ aeVisibleSudoers $ aeSSHProxyCommand ) X-ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.5 NAME 'aeMailbox' DESC 'AE-DI
R: Mailbox entry' SUP ( namedObject $ aeObject ) STRUCTURAL X-ORIGIN 'AE-DI
R' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.6 NAME 'aeDevice' DESC 'AE-DIR
: Arbitrary device mounted in a case' SUP ( device $ aeObject ) STRUCTURAL
MUST aeStatus MAY ( displayName $ aeStockId $ aeHwSerialNumber $ aePerson )
X-ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.6.1 NAME 'aeHost' DESC 'AE-DIR
: Single host (server)' SUP aeDevice STRUCTURAL MUST host MAY ( aeSrvGroup
$ aeStockId $ aeRemoteHost $ userPassword ) X-ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.6.2 NAME 'aeNwDevice' DESC 'AE
-DIR: Single network adapter built into aeDevice' SUP aeDevice STRUCTURAL M
AY ( aeFqdn $ aeDeviceSlot $ aeDevicePort $ aeNwDevice ) X-ORIGIN 'AE-DIR'
)
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.8 NAME 'aePerson' DESC 'AE-DIR
: person class' SUP ( inetOrgPerson $ aeObject ) STRUCTURAL MUST ( givenNam
e $ aeDept ) MAY ( aeSourceUri $ uniqueIdentifier $ employeeNumber $ c ) X-
ORIGIN 'AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.4 NAME 'aeService' DESC 'AE-DI
R: Service user' SUP ( account $ aeObject ) STRUCTURAL MUST ( uid $ descrip
tion ) MAY ( aeRemoteHost $ aeHost $ aeSrvGroup $ userPassword ) X-ORIGIN '
AE-DIR' )
objectClasses: ( 1.3.6.1.4.1.5427.1.389.100.6.25 NAME 'aeAuthcToken' DESC 'A
E-DIR: Authentication token device (e.g. yubikey)' SUP aeDevice STRUCTURAL
MUST ( aeHwSerialNumber $ serialNumber $ aePerson $ displayName ) MAY userP
assword X-ORIGIN 'AE-DIR' )
|