Huang Hongfu wrote: > In a general design, we have a role, which is an object of organizationalRole. Within > this role, let us say it will have more than 10 million users. Each user has a > roleOccupant in the role object. Don't do that. Use attribute-based role assignment in the user's entry. Ciao, Michael.
Attachment:
smime.p7s
Description: S/MIME Cryptographic Signature