In servers with multiple naming contexts, this feature allows you to define a rule once as a global ACI rather than maintaining an identical rule in each naming context.

In DSEE, global ACIs are created by modifying the root DSA-specific entry (DSE) to add values of the aci attribute. In the PingDirectory Server, you manage global ACIs with dsconfig referenced in the global-aci property of the access control handler.