Specification of global ACIs
Both Oracle Directory Server Enterprise Edition (DSEE) and the server support global ACIs, which you can use to define ACIs that apply throughout the server.
In servers with multiple naming contexts, this feature allows you to define a rule once as a global ACI rather than maintaining an identical rule in each naming context.
In DSEE, global ACIs are created by modifying the root DSA-specific entry (DSE) to add values of the aci
attribute. In the server, you manage global ACIs with dsconfig
referenced in the global-aci
property of the access control handler.