Non-filtered ACLs

You can add new non-filtered ACLs to an entry or edit existing non-filtered ACLs.

Non-filtered ACLs can be propagated. Access control information that is defined for one entry can be applied to all of its subordinate entries. The ACL source is the source of current ACL for the selected entry. If the entry does not have an ACL, it inherits an ACL from parent objects that are based on the ACL settings of the parent objects.

If no ACL applies to a directory object either directly or through inheritance, the following default access is applied:aclentry:group:CN=ANYBODY:normal:rsc:system:rsc:restricted:rsc.