Previous Topic: Schema Publishing

Next Topic: Server-Side Sorting

LDAP Controls

LDAP controls are a mechanism for extending or changing the way a server handles a particular operation. Controls may be attached to LDAP operations and generally change the semantics for that specific operation. Controls that are not recognized are ignored if they are not marked critical. If a control is marked critical and is not recognized, the error unsupported critical extension is returned and the operation is not performed.

Because CA Directory supports distribution, it is possible that a control is not honored even though it is recognized. For example, if server-side sorting is requested but the request has to be multi-chained to complete the operation, the server-side sorting control is not honored. If the control is marked critical, an error is returned to the client; otherwise, the control is ignored.

Controls recognized by CA Directory are published through the root DSE according to RFC 4512.