4.12. Managed Entries Plug-in Attributes

In some unique circumstances, it is useful to have an entry created automatically when another entry is created. For example, this can be part of Posix integration by creating a specific group entry when a new user is created. Each instance of the Managed Entries Plug-in identifies two areas:
  • The scope of the plug-in, meaning the subtree and the search filter to use to identify entries which require a corresponding managed entry
  • A template entry that defines what the managed entry should look like

4.12.1. managedBase

This attribute sets the subtree under which to create the managed entries. This can be any entry in the directory tree.
Parameter Description
Entry DN cn=instance_name,cn=Managed Entries Plugin,cn=plugins,cn=config
Valid Values Any Directory Server subtree
Default Value None
Syntax DirectoryString
Example managedBase: ou=groups,dc=example,dc=com

4.12.2. managedTemplate

This attribute identifies the template entry to use to create the managed entry. This entry can be located anywhere in the directory tree; however, it is recommended that this entry is in a replicated suffix so that all masters and consumers in replication are using the same template.
The attributes used to create the managed entry template are described in the Red Hat Directory Server 10 Configuration, Command, and File Reference.
Parameter Description
Entry DN cn=instance_name,cn=Managed Entries Plugin,cn=plugins,cn=config
Valid Values Any Directory Server entry of the mepTemplateEntry object class
Default Value None
Syntax DirectoryString
Example managedTemplate: cn=My Template,ou=Templates,dc=example,dc=com

4.12.3. originFilter

This attribute sets the search filter to use to search for and identify the entries within the subtree which require a managed entry. The filter allows the managed entries behavior to be limited to a specific type of entry or subset of entries. The syntax is the same as a regular search filter.
Parameter Description
Entry DN cn=instance_name,cn=Managed Entries Plugin,cn=plugins,cn=config
Valid Values Any valid LDAP filter
Default Value None
Syntax DirectoryString
Example originFilter: objectclass=posixAccount

4.12.4. originScope

This attribute sets the scope of the search to use to see which entries the plug-in monitors. If a new entry is created within the scope subtree, then the Managed Entries Plug-in creates a new managed entry that corresponds to it.
Parameter Description
Entry DN cn=instance_name,cn=Managed Entries Plugin,cn=plugins,cn=config
Valid Values Any Directory Server subtree
Default Value None
Syntax DirectoryString
Example originScope: ou=people,dc=example,dc=com