As I understand it, the generally wise way to setup a tree is to have a
branch for people and a branch for groups... I can do that no problem...
and have.. Within the unit people, I then have a few test entries with
an RDN of:
uid=user,ou=people,dc=mydomain,dc=edu
Each of these 'people' entries are entitled to attributes in...
inetOrgPerson, organizationalPerson, person, posixAccount, eduPerson,
and of course top...
Another thought that I haven't played around with much is extending down
below the uid=somebody,ou=people,dc=domain,dc=edu tree for each ftp
box... which to me, seems like it would have some advantages in that
when the entry was removed it would remove everything below it...