You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@directory.apache.org by bu...@apache.org on 2012/11/05 13:21:19 UTC

svn commit: r837327 - in /websites/staging/directory/trunk/content: ./ apacheds/ apacheds/advanced-ug/

Author: buildbot
Date: Mon Nov  5 12:21:18 2012
New Revision: 837327

Log:
Staging update by buildbot for directory

Added:
    websites/staging/directory/trunk/content/apacheds/advanced-ug/2-server-config.html
    websites/staging/directory/trunk/content/apacheds/advanced-ug/3-admin-model.html
Removed:
    websites/staging/directory/trunk/content/apacheds/advanced-ug/1.6-admin-model.html
Modified:
    websites/staging/directory/trunk/content/   (props changed)
    websites/staging/directory/trunk/content/apacheds/advanced-ug/1-architecture.html
    websites/staging/directory/trunk/content/apacheds/advanced-users-guide.html

Propchange: websites/staging/directory/trunk/content/
------------------------------------------------------------------------------
--- cms:source-revision (original)
+++ cms:source-revision Mon Nov  5 12:21:18 2012
@@ -1 +1 @@
-1405672
+1405769

Modified: websites/staging/directory/trunk/content/apacheds/advanced-ug/1-architecture.html
==============================================================================
--- websites/staging/directory/trunk/content/apacheds/advanced-ug/1-architecture.html (original)
+++ websites/staging/directory/trunk/content/apacheds/advanced-ug/1-architecture.html Mon Nov  5 12:21:18 2012
@@ -113,7 +113,7 @@
         </div>
         <div class="nav_up">
         
-            <a href="0-community.html">0 - Community</a>
+            <a href="../advanced-users-guide.html">Advanced User Guide</a>
 		
         </div>
         <div class="nav_next">
@@ -134,7 +134,6 @@
 <li><a href="1.3-interceptors.html">1.3 - Interceptors</a></li>
 <li><a href="1.4-backend.html">1.4 - Backend</a></li>
 <li><a href="1.5-schema-manager.html">1.5 - SchemaManager</a></li>
-<li><a href="1.6-admin-model.html">1.6 - Administrative Model</a></li>
 </ul>
 
 
@@ -146,7 +145,7 @@
         </div>
         <div class="nav_up">
         
-            <a href="0-community.html">0 - Community</a>
+            <a href="../advanced-users-guide.html">Advanced User Guide</a>
 		
         </div>
         <div class="nav_next">

Added: websites/staging/directory/trunk/content/apacheds/advanced-ug/2-server-config.html
==============================================================================
--- websites/staging/directory/trunk/content/apacheds/advanced-ug/2-server-config.html (added)
+++ websites/staging/directory/trunk/content/apacheds/advanced-ug/2-server-config.html Mon Nov  5 12:21:18 2012
@@ -0,0 +1,440 @@
+<!DOCTYPE html>
+<!--
+    Licensed to the Apache Software Foundation (ASF) under one or more
+    contributor license agreements.  See the NOTICE file distributed with
+    this work for additional information regarding copyright ownership.
+    The ASF licenses this file to You under the Apache License, Version 2.0
+    (the "License"); you may not use this file except in compliance with
+    the License.  You may obtain a copy of the License at
+
+       http://www.apache.org/licenses/LICENSE-2.0
+
+    Unless required by applicable law or agreed to in writing, software
+    distributed under the License is distributed on an "AS IS" BASIS,
+    WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
+    See the License for the specific language governing permissions and
+    limitations under the License.
+-->
+<html>
+	<head>
+		<title>2 - Server Configuration &mdash; Apache Directory</title>
+		
+        <link href="./../../css/common.css" rel="stylesheet" type="text/css">
+    	<link href="./../../css/green.css" rel="stylesheet" type="text/css">
+    
+	</head>
+	<body>
+	    <div id="container">
+            <div id="header">
+                <div id="subProjectsNavBar">
+                    <a href="./../../">
+                        
+                        Apache Directory Project
+                        
+                    </a>
+                    &nbsp;|&nbsp;
+                    <a href="./../../apacheds">
+                        
+                        <STRONG>ApacheDS</STRONG>
+                        
+                    </a>
+                    &nbsp;|&nbsp;
+                    <a href="./../../studio">
+                        
+                        Apache Directory Studio
+                        
+                    </a>
+                    &nbsp;|&nbsp;
+                    <a href="./../../api">
+                        
+                        Apache LDAP API
+                        
+                    </a>
+                </div><!-- subProjectsNavBar -->
+            </div><!-- header -->
+            <div id="content">
+                <div id="leftColumn">
+                    
+<div id="navigation">
+    
+    <h5>ApacheDS 2.0</h5>
+    <ul>
+        <li><a href="./../../apacheds/">Home</a></li>
+        <li><a href="./../../apacheds/features.html">Features</a></li>
+    </ul>
+    <h5>Downloads</h5>
+    <ul>
+        <li><a href="./../../apacheds/downloads.html">ApacheDS 2.0.0-M8</a>&nbsp;&nbsp;<img src="./../../images/new_badge.gif" alt="" style="margin- bottom:- 3px;" border="0"></li>
+        <li><a href="./../../apacheds/download-old-versions.html">Older versions</a></li>
+    </ul>
+    <h5>Documentation</h5>
+    <ul>
+        <li><a href="./../../apacheds/basic-users-guide.html">Basic User's Guide </a></li>
+        <li><a href="./../../apacheds/advanced-users-guide.html">Advanced User's Guide</a></li>
+        <li><a href="./../../apacheds/developers-guide.html">Developer's Guide</a></li>
+        <!--li><a href="./../../apacheds/gen-docs/latest">Generated Reports (e.g. JavaDocs)</a></li-->
+    </ul>
+    
+    
+    <h5>Support</h5>
+    <ul>
+        <li><a href="./../../mailing-lists-and-irc.html">Mailing Lists &amp; IRC</a></li>
+        <li><a href="./../../sources.html">Sources</a></li>
+        <li><a href="./../../issue-tracking.html">Issue Tracking</a></li>
+        <li><a href="./../../commercial-support.html">Commercial Support</a></li>
+    </ul>
+    <h5>Community</h5>
+    <ul>
+        <li><a href="./../../contribute.html">How to Contribute</a></li>
+        <li><a href="./../../team.html">Team</a></li>
+        <li><a href="./../../original-project-proposal.html">Original Project Proposal</a></li>
+        <li><a href="./../../special-thanks.html" class="external-link" rel="nofollow">Special Thanks</a></li>
+    </ul>
+    <h5>About Apache</h5>
+    <ul>
+        <li><a href="http://www.apache.org/">Apache</a></li>
+        <li><a href="http://www.apache.org/licenses/">License</a></li>
+        <li><a href="http://www.apache.org/foundation/sponsorship.html">Sponsorship</a></li>
+        <li><a href="http://www.apache.org/foundation/thanks.html">Thanks</a></li>
+        <li><a href="http://www.apache.org/security/">Security</a></li>
+    </ul>
+    
+</div><!-- navigation -->
+
+                </div><!-- leftColumn -->
+                <div id="rightColumn">
+
+
+    <div class="nav">
+        <div class="nav_prev">
+        
+            <a href="1-architecture.html">1 - Architecture</a>
+		
+        </div>
+        <div class="nav_up">
+        
+            <a href="../advanced-users-guide.html">Advanced User Guide</a>
+		
+        </div>
+        <div class="nav_next">
+        
+            <a href="3-admin-model.html">4 - Administrative Model</a>
+		
+        </div>
+        <div class="clearfix"></div>
+    </div>
+
+
+<h1 id="2-server-configuraion">2 - Server Configuraion</h1>
+<p>We will now describe the server configuration. Usually, all the configuration is done using Apache Directory Studio, which offers a pretty GUI. One can also configure the server using LDAP request, as the configuration is stored in teh <strong>DIT</strong>. Otherwise, all the configuration modifications won't be applied on a started server : usually, you will have to restart the server in order to get those modifications applied.</p>
+<h2 id="configurable-elements">Configurable elements</h2>
+<p>Here is the list of elements that can be configuraed :</p>
+<ul>
+<li>
+<p>AdsBean</p>
+<ul>
+<li>boolean enabled</li>
+<li>String description</li>
+</ul>
+</li>
+<li>
+<p>DirectryServiceBean -&gt; AdsBean</p>
+<ul>
+<li>String directoryServiceId</li>
+<li>int dsReplicaId</li>
+<li>boolean dsAccessControlEnabled</li>
+<li>boolean dsAllowAnonymousAccess</li>
+<li>boolean dsDenormalizeOpAttrsEnabled</li>
+<li>int dsMaxPDUSize</li>
+<li>boolean dsPasswordHidden</li>
+<li>long dsSyncPeriodMillis</li>
+<li>String dsTestEntries</li>
+<li>ChangeLogBean</li>
+<li>JournalBean</li>
+<li>List<ServerBean></li>
+<li>List<InterceptorBean></li>
+<li>List<PartitionBean></li>
+</ul>
+</li>
+<li>
+<p>ChangeLogBean -&gt; AdsBean</p>
+<ul>
+<li>String changeLogId</li>
+<li>boolean changeLogExposed</li>
+</ul>
+</li>
+<li>
+<p>JournalBean -&gt; AdsBean</p>
+<ul>
+<li>String journalId</li>
+<li>String journalFileName</li>
+<li>String journalWorkingDir</li>
+<li>int journalRotation</li>
+</ul>
+</li>
+<li>
+<p>ServerBean -&gt; AdsBean</p>
+<ul>
+<li>String serverId</li>
+<li>List<TransportBean></li>
+</ul>
+</li>
+<li>
+<p>TransportBean -&gt; AdsBean</p>
+<ul>
+<li>String transportId</li>
+<li>String transportAddress</li>
+<li>int systemPort</li>
+<li>boolean transportEnableSsl</li>
+<li>int transportNbThreads</li>
+<li>int transportBackLog</li>
+</ul>
+</li>
+<li>
+<p>TcpTransportBean -&gt; AdsBean</p>
+</li>
+<li>
+<p>UdpTransportBean -&gt; AdsBean</p>
+</li>
+<li>
+<p>NtpServerBean -&gt; ServerBean</p>
+</li>
+<li>
+<p>HttpServerBean -&gt; ServerBean</p>
+<ul>
+<li>String httpConfFile</li>
+<li>List<HttpWebAppBean></li>
+</ul>
+</li>
+<li>
+<p>HttpWebAppBean -&gt; AdsBaseBean</p>
+<ul>
+<li>String id</li>
+<li>String httpAppCtxPath</li>
+<li>String httpWarFile</li>
+</ul>
+</li>
+<li>
+<p>DSBasedServerBean -&gt; ServerBean</p>
+<ul>
+<li>Dn searchBaseDn</li>
+</ul>
+</li>
+<li>
+<p>ChangePasswordServerBean -&gt; DSBasedServerBean</p>
+<ul>
+<li>long krbAllowableClockSkew</li>
+<li>boolean krbEmptyAddressesAllowed</li>
+<li>List<String> krbEncryptionTypes</li>
+<li>String krbPrimaryRealm</li>
+<li>int chgPwdPolicyCategoryCount</li>
+<li>int chgPwdPolicyPasswordLength</li>
+<li>int chgPwdPolicyTokenSize</li>
+<li>String chgPwdServicePrincipal</li>
+</ul>
+</li>
+<li>
+<p>DhcpServerBean -&gt; DSBasedServerBean</p>
+</li>
+<li>
+<p>DnsServerBean -&gt; DSBasedServerBean</p>
+</li>
+<li>
+<p>KdcServerBean -&gt; DSBasedServerBean</p>
+<ul>
+<li>long krbAllowableClockSkew</li>
+<li>boolean krbEmptyAddressesAllowed</li>
+<li>boolean krbForwardableAllowed</li>
+<li>boolean krbPAEncTimestampRequired</li>
+<li>boolean krbPostdatedAllowed</li>
+<li>boolean krbProxiableAllowed</li>
+<li>boolean krbRenewableAllowed</li>
+<li>long krbMaximumRenewableLifetime</li>
+<li>long krbMaximumTicketLifetime</li>
+<li>String krbPrimaryRealm</li>
+<li>boolean krbBodyChecksumVerified</li>
+<li>List<String> krbEncryptionTypes</li>
+<li>String krbKdcPrincipal</li>
+</ul>
+</li>
+<li>
+<p>LdapServerBean -&gt; DSBasedServerBean</p>
+<ul>
+<li>boolean confidentialityRequired</li>
+<li>int maxSizeLimit</li>
+<li>int maxTimeLimit</li>
+<li>int saslHost</li>
+<li>String saslPrincipal</li>
+<li>List<String> saslRealms</li>
+<li>String keystoreFile</li>
+<li>String certificatePassword</li>
+<li>String replReqHandler</li>
+<li>List<ReplConsumerBean></li>
+<li>List<SaslMechHandlerBean></li>
+<li>List<ExtendedOpHandlerBean></li>
+</ul>
+</li>
+<li>
+<p>ReplConsumerBean -&gt; AdsBaseBean</p>
+<ul>
+<li>String replConsumerId</li>
+<li>String searchBaseDn</li>
+<li>String replProvHostName</li>
+<li>int replProvPort</li>
+<li>String replAliasDerefMode</li>
+<li>List<String> replAttributes</li>
+<li>long replRefreshInterval</li>
+<li>boolean replRefreshNPersist</li>
+<li>String replSearchScope</li>
+<li>String replSearchFilter</li>
+<li>int replSearchSizeLimit</li>
+<li>int replSearchTimeout</li>
+<li>String replUserDn</li>
+<li>byte[] replUserPassword</li>
+<li>String replCookie</li>
+<li>boolean replUseTls</li>
+<li>boolean replStrictCertValidation</li>
+<li>byte[] replPeerCertificate</li>
+<li>String replConsumerImpl</li>
+</ul>
+</li>
+<li>
+<p>SaslMechHandlerBean -&gt; AdsBaseBean</p>
+<ul>
+<li>String saslMechName</li>
+<li>String saslMechClassName</li>
+<li>String ntlmMechProvider</li>
+</ul>
+</li>
+<li>
+<p>ExtendedOpHandlerBean -&gt; AdsBaseBean</p>
+<ul>
+<li>String extendedOpId</li>
+<li>String extendedOpHandlerClass</li>
+</ul>
+</li>
+<li>
+<p>InterceptorBean -&gt; AdsBean</p>
+<ul>
+<li>String interceptorId</li>
+<li>String interceptorClassName</li>
+<li>int interceptorOrder</li>
+</ul>
+</li>
+<li>
+<p>AuthenticationInterceptorBean -&gt; InterceptorBean</p>
+<ul>
+<li>List<AuthenticatorBean></li>
+<li>List<PasswordPolicyBean></li>
+</ul>
+</li>
+<li>
+<p>AuthenticatorBean -&gt; AdsBean</p>
+<ul>
+<li>String authenticatorId</li>
+</ul>
+</li>
+<li>
+<p>AuthenticatorImplBean -&gt; AuthenticatorBean</p>
+<ul>
+<li>String authenticatorClass</li>
+</ul>
+</li>
+<li>
+<p>DelegatingAuthenticatorBean -&gt; AuthenticatorBean</p>
+<ul>
+<li>String delegateHost</li>
+<li>int delegatePort</li>
+</ul>
+</li>
+<li>
+<p>PasswordPolicyBean -&gt; AdsBean</p>
+<ul>
+<li>String pwdId</li>
+<li>String pwdAttribute</li>
+<li>int pwdMinAge</li>
+<li>int pwdMaxAge</li>
+<li>int pwdInHistory</li>
+<li>int pwdCheckQuality</li>
+<li>int pwdMinLength</li>
+<li>int pwdMaxLength</li>
+<li>int pwdExpireWarning</li>
+<li>int pwdGraceAuthNLimit</li>
+<li>int pwdGraceExpire</li>
+<li>boolean pwdLockout</li>
+<li>int pwdLockoutDuration</li>
+<li>int pwdMaxFailure</li>
+<li>int pwdFailureCountInterval</li>
+<li>boolean pwdMustChange</li>
+<li>boolean pwdAllowUserChange</li>
+<li>boolean pwdSafeModify</li>
+<li>int pwdMinDelay</li>
+<li>int pwdMaxDelay</li>
+<li>int pwdMaxIdle</li>
+</ul>
+</li>
+<li>
+<p>PartitionBean -&gt; AdsBean</p>
+<ul>
+<li>int  partitionId</li>
+<li>Dn partitionSuffix</li>
+<li>boolean partitionSyncOnWrite</li>
+<li>int  contextEntry</li>
+<li>List<IndexBean></li>
+</ul>
+</li>
+<li>
+<p>JdbmPartitionBean -&gt; PartitionBean</p>
+<ul>
+<li>int partitionCacheSize</li>
+<li>boolean jdbmPartitionOptimizerEnabled </li>
+</ul>
+</li>
+<li>
+<p>IndexBean -&gt; AdsBean</p>
+<ul>
+<li>int indexAttributeId</li>
+<li>boolean indexHasReverse</li>
+</ul>
+</li>
+<li>
+<p>JdbmIndexBean -&gt; IndexBean</p>
+<ul>
+<li>int indexCacheSize</li>
+<li>int indexNumDupLimit</li>
+<li>String indexFileName</li>
+<li>String indexWorkingDir</li>
+</ul>
+</li>
+</ul>
+
+
+    <div class="nav">
+        <div class="nav_prev">
+        
+            <a href="1-architecture.html">1 - Architecture</a>
+		
+        </div>
+        <div class="nav_up">
+        
+            <a href="../advanced-users-guide.html">Advanced User Guide</a>
+		
+        </div>
+        <div class="nav_next">
+        
+            <a href="3-admin-model.html">4 - Administrative Model</a>
+		
+        </div>
+        <div class="clearfix"></div>
+    </div>
+
+
+                </div><!-- rightColumn -->
+                <div id="endContent"></div>
+            </div><!-- content -->
+            <div id="footer">&copy; 2003-2012, <a href="http://www.apache.org">The Apache Software Foundation</a> - <a href="./../../privacy-policy.html">Privacy Policy</a><br />
+                Apache Directory, ApacheDS, Apache Directory Server, Apache Directory Studio, Apache LDAP API, Apache Triplesec, Triplesec, Apache, the Apache feather logo, and the Apache Directory project logos are trademarks of The Apache Software Foundation.
+            </div>
+        </div><!-- container -->
+    </body>
+</html>
\ No newline at end of file

Added: websites/staging/directory/trunk/content/apacheds/advanced-ug/3-admin-model.html
==============================================================================
--- websites/staging/directory/trunk/content/apacheds/advanced-ug/3-admin-model.html (added)
+++ websites/staging/directory/trunk/content/apacheds/advanced-ug/3-admin-model.html Mon Nov  5 12:21:18 2012
@@ -0,0 +1,202 @@
+<!DOCTYPE html>
+<!--
+    Licensed to the Apache Software Foundation (ASF) under one or more
+    contributor license agreements.  See the NOTICE file distributed with
+    this work for additional information regarding copyright ownership.
+    The ASF licenses this file to You under the Apache License, Version 2.0
+    (the "License"); you may not use this file except in compliance with
+    the License.  You may obtain a copy of the License at
+
+       http://www.apache.org/licenses/LICENSE-2.0
+
+    Unless required by applicable law or agreed to in writing, software
+    distributed under the License is distributed on an "AS IS" BASIS,
+    WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
+    See the License for the specific language governing permissions and
+    limitations under the License.
+-->
+<html>
+	<head>
+		<title>3 - Administrative Model &mdash; Apache Directory</title>
+		
+        <link href="./../../css/common.css" rel="stylesheet" type="text/css">
+    	<link href="./../../css/green.css" rel="stylesheet" type="text/css">
+    
+	</head>
+	<body>
+	    <div id="container">
+            <div id="header">
+                <div id="subProjectsNavBar">
+                    <a href="./../../">
+                        
+                        Apache Directory Project
+                        
+                    </a>
+                    &nbsp;|&nbsp;
+                    <a href="./../../apacheds">
+                        
+                        <STRONG>ApacheDS</STRONG>
+                        
+                    </a>
+                    &nbsp;|&nbsp;
+                    <a href="./../../studio">
+                        
+                        Apache Directory Studio
+                        
+                    </a>
+                    &nbsp;|&nbsp;
+                    <a href="./../../api">
+                        
+                        Apache LDAP API
+                        
+                    </a>
+                </div><!-- subProjectsNavBar -->
+            </div><!-- header -->
+            <div id="content">
+                <div id="leftColumn">
+                    
+<div id="navigation">
+    
+    <h5>ApacheDS 2.0</h5>
+    <ul>
+        <li><a href="./../../apacheds/">Home</a></li>
+        <li><a href="./../../apacheds/features.html">Features</a></li>
+    </ul>
+    <h5>Downloads</h5>
+    <ul>
+        <li><a href="./../../apacheds/downloads.html">ApacheDS 2.0.0-M8</a>&nbsp;&nbsp;<img src="./../../images/new_badge.gif" alt="" style="margin- bottom:- 3px;" border="0"></li>
+        <li><a href="./../../apacheds/download-old-versions.html">Older versions</a></li>
+    </ul>
+    <h5>Documentation</h5>
+    <ul>
+        <li><a href="./../../apacheds/basic-users-guide.html">Basic User's Guide </a></li>
+        <li><a href="./../../apacheds/advanced-users-guide.html">Advanced User's Guide</a></li>
+        <li><a href="./../../apacheds/developers-guide.html">Developer's Guide</a></li>
+        <!--li><a href="./../../apacheds/gen-docs/latest">Generated Reports (e.g. JavaDocs)</a></li-->
+    </ul>
+    
+    
+    <h5>Support</h5>
+    <ul>
+        <li><a href="./../../mailing-lists-and-irc.html">Mailing Lists &amp; IRC</a></li>
+        <li><a href="./../../sources.html">Sources</a></li>
+        <li><a href="./../../issue-tracking.html">Issue Tracking</a></li>
+        <li><a href="./../../commercial-support.html">Commercial Support</a></li>
+    </ul>
+    <h5>Community</h5>
+    <ul>
+        <li><a href="./../../contribute.html">How to Contribute</a></li>
+        <li><a href="./../../team.html">Team</a></li>
+        <li><a href="./../../original-project-proposal.html">Original Project Proposal</a></li>
+        <li><a href="./../../special-thanks.html" class="external-link" rel="nofollow">Special Thanks</a></li>
+    </ul>
+    <h5>About Apache</h5>
+    <ul>
+        <li><a href="http://www.apache.org/">Apache</a></li>
+        <li><a href="http://www.apache.org/licenses/">License</a></li>
+        <li><a href="http://www.apache.org/foundation/sponsorship.html">Sponsorship</a></li>
+        <li><a href="http://www.apache.org/foundation/thanks.html">Thanks</a></li>
+        <li><a href="http://www.apache.org/security/">Security</a></li>
+    </ul>
+    
+</div><!-- navigation -->
+
+                </div><!-- leftColumn -->
+                <div id="rightColumn">
+
+
+    <div class="nav">
+        <div class="nav_prev">
+        
+            <a href="2-server-config.html">2 - Server Configuration</a>
+		
+        </div>
+        <div class="nav_up">
+        
+            <a href="../advanced-users-guide.html">Advanced User Guide</a>
+		
+        </div>
+        <div class="nav_next">
+        
+            <a href="4-.html">4 - </a>
+		
+        </div>
+        <div class="clearfix"></div>
+    </div>
+
+
+<h1 id="3-administrative-model">3 - Administrative Model</h1>
+<p>The <strong>Administrative Model</strong> is a really critical notion that need to be understood, because it drives many of ApacheDS roles.</p>
+<p>It's directly inherited by the <strong>X.500</strong> Administrative model (in fact, we do implement the full <strong>X.500</strong> sepcification related to <strong>AAs</strong>).</p>
+<h2 id="what-is-the-administrative-model">What is the Administrative Model ?</h2>
+<p>The idea is to define the <strong>DIT</strong> as some areas which are administrated. Each area can be defined, and covers a set of entries, and each area can manage one ore more roles we want to manage. Those roles can be related to authorization, schema, etc... Each of this areas can overlap, but in any case, if two areas are overlaping, then one area totally include the other one. </p>
+<p>The Admnistrative Model is everything we need to implement in order to be able to manage roles on some defined areas.</p>
+<h2 id="areas">Areas</h2>
+<p>An Area describe a part of the <strong>DIT</strong> which will start from a specific entry, and span across a part of the subtree starting at the base entry. An area is administrated by an <strong>AP</strong> (Administrative Point) which holds all the needed information about the area and the roles.</p>
+<p>We have three kind of areas :</p>
+<ul>
+<li>AAA : Autonomous Administrative Areas</li>
+<li>SAA : Specific Administrative Areas</li>
+<li>IAA : Inner Administrative Areas</li>
+</ul>
+<p><strong>AAAs</strong> cover all the roles as if we have declared one <strong>SAA</strong> for each existing role. They overload any area in which they can be encapsulated, hiding them.</p>
+<p><strong>SAAs</strong> cover one specific role, and overload any encapsulating area with the same role.</p>
+<p><strong>IAAs</strong> cover one specific role, but don't not overload any encapsulating area with the same role.</p>
+<h2 id="administration-point">Administration Point</h2>
+<p>An <strong>Administration Point</strong> is the point in the <strong>DIT</strong> where an area starts. It defines the roles, and the scope that applies to this area.</p>
+<p>Once we know which area we need to define, and the associated roles, it's mandatory to store those information in the <strong>DIT</strong>. This is done by addinga <strong>subentries</strong>, which just are entries storing all the administrative configuration.</p>
+<p>An Administrative Point is stored as a <strong>subentry</strong> (which is just a plain LDAP entry) just below the base of the defined area.</p>
+<p><DIV class="info" markdown="1">
+    A <strong>Subentry</strong> is just a plain normal entry except that it contains administative model informations. They are stored below the entry they are managing, as a child entry.
+</DIV></p>
+<p><DIV class="note" markdown="1">
+    We also use the term "subtree" to define areas. This is due to the fact that we define a subtree specification in the administration point to express the set of selected entries.
+</DIV></p>
+<h2 id="roles">Roles</h2>
+<p>The roles are the various aspects which are managed by the administration points. Currently, we manage five different roles in ApacheDS :</p>
+<ul>
+<li>Authorization : manage the access to entries</li>
+<li>Schema : define the schema to be used by a subtree</li>
+<li>Triggers : define the triggers that can be leveraged in a subtree</li>
+<li>Collective Attributes : manage attributes that are valid ofr a set of entries</li>
+<li>Replication : manage the replication of a set</li>
+</ul>
+<h1 id="apacheds-20-coverage">ApacheDS 2.0 coverage</h1>
+<p>Currently, in Apache 2.0, we don't implement all this model. What is supported is :</p>
+<ul>
+<li>AAA and SAA : We don't currently support IAA</li>
+<li>We don't have more than one schema</li>
+<li>Replication is not managed with any administration point</li>
+</ul>
+<p>Those missing parts will be implemented in the forthcoming versions.</p>
+
+
+    <div class="nav">
+        <div class="nav_prev">
+        
+            <a href="2-server-config.html">2 - Server Configuration</a>
+		
+        </div>
+        <div class="nav_up">
+        
+            <a href="../advanced-users-guide.html">Advanced User Guide</a>
+		
+        </div>
+        <div class="nav_next">
+        
+            <a href="4-.html">4 - </a>
+		
+        </div>
+        <div class="clearfix"></div>
+    </div>
+
+
+                </div><!-- rightColumn -->
+                <div id="endContent"></div>
+            </div><!-- content -->
+            <div id="footer">&copy; 2003-2012, <a href="http://www.apache.org">The Apache Software Foundation</a> - <a href="./../../privacy-policy.html">Privacy Policy</a><br />
+                Apache Directory, ApacheDS, Apache Directory Server, Apache Directory Studio, Apache LDAP API, Apache Triplesec, Triplesec, Apache, the Apache feather logo, and the Apache Directory project logos are trademarks of The Apache Software Foundation.
+            </div>
+        </div><!-- container -->
+    </body>
+</html>
\ No newline at end of file

Modified: websites/staging/directory/trunk/content/apacheds/advanced-users-guide.html
==============================================================================
--- websites/staging/directory/trunk/content/apacheds/advanced-users-guide.html (original)
+++ websites/staging/directory/trunk/content/apacheds/advanced-users-guide.html Mon Nov  5 12:21:18 2012
@@ -122,13 +122,18 @@
 <li><a href="">1.3 - Interceptors</a></li>
 <li><a href="">1.4 - Backend</a></li>
 <li><a href="">1.5 - SchemaManager</a></li>
-<li><a href="">1.6 - The Administrative Model</a></li>
 </ul>
 </li>
 <li><a href="">2. Server Configuration</a><ul>
 <li><a href="">2.1 Introduction</a></li>
 </ul>
 </li>
+<li><a href="">3. Administrative Model</a><ul>
+<li><a href="">3.1 - Administration Point</a></li>
+<li><a href="">3.2 - roles</a></li>
+<li><a href="">3.3 - subtree</a></li>
+</ul>
+</li>
 <li><a href="">3 - Authentication</a><ul>
 <li><a href="">3.1. SASL Authentication to ApacheDS</a></li>
 <li><a href="">3.2. HOWTO do SASL GSSAPI Authentication to ApacheDS</a></li>