Hi, I'm evaluating the migrating of an openldap installation to 389 directory server (ca 1200 user objects). With openldap I can restrict client authentication to ssl/tls ldap connections and in parallel allow anonymous (unencrypted) access to items like phone number etc. (slapd.conf with: "security simple_bind=56") Is there a way you can do this with 389 directory server? Regards Johannes