Dear all, I hope you can help me in order to set up my first 389 Server. My situation : fresh install of 389 (Fedora 14), installed the DS via yum from the standard repos. Everything seems to work properly, DNA as well. Basically i've got 2 problems and 1 question. First of all, i work with 389 console ): 1) Adding a new group (e.g. administrator) i see that there is not the GID attribute and i have to add it (by hand) every time (Advanced propertis ---> Object class ---> Add value ---> Posix Group); it's very boring :-) How can i fix this issue? In general, is it possible to modify the basic DIT ? Indeed i'd like to add much more information (manager, company,...an so on) for each new users in a fast way. 2) I'm writing a Web interface able to manage users account (e.g.:password). For some operations(reset pw) i need a Bind DN user, right? Ok, please could you help me write an ACL (principle of least privilege) for this user? i don't like to use the directory manage (cn=directory manager). My idea is to create a new user able to handle only his OU, and nothing else! 3) I have a PKI. can i manage(store) users keys(public and private) directly through 389? If so, how? could you point me in the right direction? Thank you very much. have a nice weekend /AMR -- Andrea Modesto Rossi Fedora Ambassador -- 389 users mailing list 389-users@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/389-users