Overview#
NO-USER-MODIFICATION defines the mutability of the AttributeType and implies the data is not to be modified by users. (ReadOnly)Often, depending on the LDAP Server Implementation it may also be considered to be an Operational Attribute whose values are controlled by the DSA.
NO-USER-MODIFICATION requires an Operational Attribute according to RFC 4512[1] which implies the values are controlled by the DSA.
In EDirectory schema files this is the same as the DS_READ_ONLY_ATTR
Microsoft Active Directory uses SystemOnly
More Information#
There might be more information for this subject on one of the following:- ACL (eDirectory Attribute)
- AccountNameHistory
- AdministratorsAddress
- AllowedAttributesEffective
- Assistant
- AssociatedInternetGateway
- AttributeSecurityGUID
- AttributeSyntax
- AttributeTypes
- Audio
- Automount
- AutomountKey
- BackLink
- CollectiveAttributeSubentries
- CreateTimestamp
- CreatorsName
- DS_READ_ONLY_ATTR
- DateOfBirth
- DefaultObjectCategory
- DepartmentNumber
- DetectIntruder
- DirXML-Associations
- DirXML-DriverStartOption
- DirXML-EntitlementRef
- DirXML-JavaDebugPort
- DirXML-NamedPasswords
- DirXML-ShimAuthPassword
- DirXML-State
- DirectReports
- DomainControllerFunctionality
- DomainFunctionality
- DxPwdFailedTime
- DxPwdHistory
- DxPwdLastChange
- DxPwdLoginTime
- DxPwdMustChange
- EDirCloneLock
- EDirectory Extended LDAP Flags
- EntryDN
- EntryFlags
- EntryUUID
- Etag
- FederationBoundary
- ForestFunctionality
- GUID
- GivenName
- IntruderLockoutResetInterval
- IsEphemeral
- IsRecycled
- LastLoginTime
- LastLogon
- LastLogonTimeStamp
- LdapGroupDN
- LdapServerIdleTimeout
- LdapStdCompliance
- LinkID
- LocalEntryID
- LocalReceivedUpTo
- LockedByIntruder
- LockoutAfterDetection
- LoginAllowedTimeMap
- LoginIntruderAddress
- LoginIntruderAttempts
- ManagedBy
- MapiID
- MemberOf
- MemberQueryURL
- Memory
- ModifiersName
- ModifyTimestamp
- MsDS-AdditionalSamAccountName
- MsDS-Approx-Immed-Subordinates
- MsDS-HasInstantiatedNCs
- MsDS-MinimumPasswordAge
- MsDS-MinimumPasswordLength
- MsDS-PasswordComplexityEnabled
- NDSPKIKeyMaterialDN
- Name
- NspmAdminsDoNotExpirePassword
- NspmMaximumLength
- NspmPasswordACL
- NspmPasswordHistory
- NumSubordinates
- OMObjectClass
- OMSyntax
- Obituary
- ObituaryNotify
- ObjectGUID
- ObjectSID
- OperationalAttribute
- Owner
- PartitionStatus
- PasswordExpirationTime
- PurgeVector
- PwdAccountLockedTime
- PwdChangeTime
- PwdChangedTime
- PwdEndTime
- PwdFailureTime
- PwdGraceUseTime
- PwdHistory
- PwdLastSuccess
- PwdPolicySubEntry
- PwdStartTime
- Queue
- RdnAttId
- ReceivedUpTo
- Reference
- Replica
- ReplicaUpTo
- Resolution_AttrubuteType
- Revision
- SchemaFlagsEx
- SchemaIDGUID
- SearchFlags
- SeeAlso
- ServiceDNSName
- StateOrProvinceName
- SubordinateCount
- SubschemaSubentry
- SynchronizedUpTo
- System-Id-Guid
- SystemFlags
- SystemOnly
- TokenGroups
- Uid
- UnixHomeDirectory
- UnknownBaseClass
- UsedBy
- UsnChanged
- VendorName
- WhenChanged
- X500UniqueIdentifier
- [#1] - http://www.rfc-editor.org/rfc/rfc4512.txt
- based on 2013-04-10