Yes Bob, exactly. It's possible with DS ? Next, ACL are in charge of give good rights access to the user.... Yann >> Thanks Richard, >> >> but this howto explain how to to match DN certificate to LDAP entry... my >> problem is; i don't want to have a corresponding entry in LDAP directory... >> >> I want to be identify only by the DN in the certificate, and match some ACL.. >> that all. No need to have an entry in the LDAP. >> >> If it's possible in DS... >> > >So you want to bind to the directory server with a valid client >certificate for a user that doesn't exist? For what purpose? > >rob -- Fedora-directory-users mailing list Fedora-directory-users@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-directory-users