Hi all, In LDAP we have some access rights to grant, (none|compare|search|read|write). I can't think out how the 'search' access works. For example: If I can 'search' (but can't read) what can I do with it? Have I got message: ok, this entry is in subtree? But what next? I have not tested it, I'm only trying get the point. Marcin