Ureader.com  
Microsoft software help and Community
   home   |   control panel login   |   archive   |  
 
platform
active.directory
adsi
adsi.iis-admin
base
com_ole
complus_mts
component_svcs
database
directx
gdi
graphics_mm
internet.client
internet.server
internet.server.isapi-dev
localization
mapi
messaging
msi
mslayerforunicode
multimedia
networking
networking.ipv6
sdk_install
security
shell
telephony.tapi_2
telephony.tapi_3
telephony.tsp
telephony.wte
tools
ui
ui_shell
win_base_svcs
win16
  
 
date: Thu, 17 Apr 2008 13:34:34 +0800,    group: microsoft.public.platformsdk.active.directory        back       


How to set role for users to access in AD only for fetching details and not create/update/delete   
Hello,

Im using Active directory and want to search for a user and retrieve some of 
its details using the LDAP API provided by java. But for this i need to get 
the context to LDAP with the LDAP admin id and pwd. I want to know is there 
a way to set up an user id in AD which can be used only for retrieving 
details from AD and not any further admin access.
I mean is there a role based access in AD?

Thanks

url:http://ureader.com/gp/1633-1.aspx
date: Thu, 17 Apr 2008 13:34:34 +0800   author:   bagya

Re: How to set role for users to access in AD only for fetching details and not create/update/delete   
Generally speaking, a normal user account can search within AD and see most 
objects but will not have rights to modify anything except a few attributes 
defined on itself.  You should not need an admin account for doing what you 
are doing.

Joe K.
-- 
Joe Kaplan-MS MVP Directory Services Programming
Co-author of "The .NET Developer's Guide to Directory Services Programming"
http://www.directoryprogramming.net
--
"bagya"  wrote in message 
news:00259f76db694b0fabafbd2d09a7bba3@newspe.com...
> Hello,
>
> Im using Active directory and want to search for a user and retrieve some 
> of
> its details using the LDAP API provided by java. But for this i need to 
> get
> the context to LDAP with the LDAP admin id and pwd. I want to know is 
> there
> a way to set up an user id in AD which can be used only for retrieving
> details from AD and not any further admin access.
> I mean is there a role based access in AD?
>
> Thanks
>
> url:http://ureader.com/gp/1633-1.aspx
date: Thu, 17 Apr 2008 10:44:14 -0500   author:   Joe Kaplan

Google
 
Web ureader.com


    COPYRIGHT 2007, YARDI TECHNOLOGY LIMITED, ALL RIGHT RESERVE  |   contact us