The RedHat documentation covers pretty much everything you've asked: http://www.redhat.com/docs/manuals/dir-server/ag/7.1/acl.html Be prepared for some trial and error to get your ACIs working as you'd like. Di Giambelardini Gabriele wrote: > HI to all, I have a problem with some acls needed from a mail client to > visit a address book. > I need to restrict for anonymous user, the fileds ( attributes ) he can > see. other solution may be, negate to anonymous user access to the ldap > and create an specific user for address book, or use the same mail user > also for address book. > > Some body can help me: > for restrict accesso to anonymous user? > for deny access to ldap for anonymous user? > set the right permission for the same user used for mail login?? > > Thanks, excuse me in advance for my english. > > --