Re: [ldapext] Fwd: I-D ACTION:draft-zeilenga-ldap-managedit-00.txt

Excerpt from section 3.6.:

  In absence
  of a document detailing that the NO-USER-MODIFICATION constraint on a
  particular operational attribute may be relaxed, implementors SHOULD
  assume relaxation of the constraint is not appropriate for that

This means a LDAP client cannot automatically determine which attributes
should be displayed as editable except a small known subset. Is that
really necessary?

I can understand your intention why you won't allow modification of
'structuralObjectClass' etc. But how about the server simply ignoring
them when sent in a modify request?

Ciao, Michael.

