Distributed directory environment search scope

In a distributed directory environment, only base scope search with ibm-allMembers is supported.

If distributed group and dynamic distributed group are enabled in the configuration file, then only base scope search with ibm-allMembers is supported. If onelevel or subtree scope search is attempted with ibm-allMembers, then an appropriate error message is logged in the ibmslapd.log file and LDAP_UNWILLING_TO_PERFORM is returned.

However, if distributed group and dynamic distributed group are disabled in the configuration file, then a search for ibm-allMembers is forwarded to a single back-end server. In this case, the search returns group members for all search scopes.