Both Oracle Directory Server Enterprise Edition (DSEE) and the server support global ACIs, which you can use to define ACIs that apply throughout the server.
In servers with multiple naming contexts, this feature allows you to define a rule once as a global ACI rather than maintaining an identical rule in each naming context.
In DSEE, global ACIs are created by modifying the root DSA-specific entry (DSE) to add
values of the aci
attribute. In the server, you manage global ACIs with
dsconfig referenced in the global-aci
property of
the access control handler.