Hello, I noticed that the aci filter "targetscope" is not listed under https://access.redhat.com/documentation/en-US/Red_Hat_Directory_Server/8.2/html/Administration_Guide/Managing_Access_Control-Creating_ACIs_Manually.html despite I have seen it in examples for other Directory Services. I tried to use it in a ldapsearch command together with "target" but I get the following error: MODIFY operation failed Result Code: 21 (Invalid Attribute Syntax) Additional Information: ACL Syntax Error(-5) ACI example: aci: (target="ldap:///cn=gsarno,dc=com")(targetscope="base")(version 3.0; acl "Self entry modification"; allow (read,search) userdn="........ Is targetscope supported in 389DS ? if not is there an alternative way to achieve the same functionality (apply aci to subtree or to the current node etc.) ? Thanks, Giuseppe. -- 389-users mailing list 389-users@xxxxxxxxxxxxxxxxxxxxxxx http://lists.fedoraproject.org/admin/lists/389-users@xxxxxxxxxxxxxxxxxxxxxxx