I've committed a simple workaround to OPENLDAP_REL_ENG_1_2. In keeping with RFC1777, no distinction is made between user and operational attributes. http://www.openldap.org/devel/cvsweb.cgi/servers/slapd/result.c.diff?r1=1.7.2.4.2.2&r2=1.7.2.4.2.3 Please test. Kurt