Novell Home

Sensing object events from LDAP feeds

Novell Cool Solutions: Question & Answer

Posted: 17 Mar 2005

Q:
I'd like to set up the DirXML driver (on the master eDirectory) to sense user/group object event activities from the LDAP feeds. Then I want it to populate user objects with the missing group membership info from the incoming group object info.

The problem appears to be succinctly covered by the Cool Solutions tool 1571. However, I'm not sure just how to proceed with it - do I set it up as a stand-alone driver, or copy and paste aspects of example code into an edir2edir driver?

A:
It looks like it will do at least part of what needs to be done. You would just need to import the XML as a preconfigured driver. Some things that it won't do for you are:

1. Fix any existing group memberships.
2. Update any memberships that come in as part of the the initial add of the group.
3. Establish security equivalence, which is managed by a separate pair of attributes.

Each of these things could be fixed with a little work by someone who knows how to make DirXML jump through hoops, but you may be better off either fixing the LDAP tools to create group membership in the form that eDirectory needs, or to pre-process the the LDAP feeds to put it in that form.

Novell Cool Solutions (corporate web communities) are produced by WebWise Solutions. www.webwiseone.com

Novell® Making IT Work As One

© 2008 Novell, Inc. All Rights Reserved.