Operational attributes
The operational attributes are maintained by the server. These attributes either reflect information that the server manages about an entry, or affect the server operation.
These attributes have the following special characteristics:
- The attributes are not returned by a search operation unless they are requested (by name) in the search request.
- These attributes cannot be deleted.
- The attributes are not part of any object class. The server controls what entries have the attributes.
- aclEntry
- aclPropagate
- aclSource
- aliasedObjectName, aliasedentryName
- createTimestamp
- creatorsName
- entryDN
- entryOwner
- hasSubordinates
- ibm-allGroups
- ibm-allMembers
- ibm-capabilitiessubentry
- ibm-effectiveAcl
- ibm-entryChecksum
- ibm-entryChecksumOp
- ibm-entryUuid
- ibm-filterAclEntry
- ibm-filterAclInherit
- ibm-pwdAccountLocked
- ibm-replicationChangeLDIF
- ibm-replicationFailedChangeCount
- ibm-replicationFailedChanges
- ibm-replicationIsQuiesced
- ibm-replicationLastActivationTime
- ibm-replicationLastChangeId
- ibm-replicationLastFinishTime
- ibm-replicationLastGlobalChangeId
- ibm-replicationLastResult
- ibm-replicationLastResultAdditional
- ibm-replicationNextTime
- ibm-replicationPendingChangeCount
- ibm-replicationPendingChanges
- ibm-replicationperformance
- ibm-replicationState
- ibm-replicationThisServerIsMaster
- ibm-searchSizeLimit
- ibm-searchTimeLimit
- ibm-slapdCryptoSalt
- modifiersName
- modifyTimestamp
- numSubordinates
- ownerPropagate
- ownerSource
- pwdAccountLockedTime
- pwdChangedTime
- pwdExpirationWarned
- pwdFailureTime
- pwdGraceUseTime
- pwdHistory
- pwdReset
- subschemaSubentry
- subtreeSpecification
A special attribute description, "+", can be used in the attribute list of a search request to return all operational attributes. If a "+" is present in the search request, the server returns all operational attributes to which the client is authorized. For further information, see the idsldapsearch command information in the Command Reference.
The following table lists the supported special attributes, and the associated list of operational attributes:
| Attribute | Attributes that are returned by "+" attribute. | Attributes added by ++ |
|---|---|---|
+ |
Returns all attributes that are listed in this column. | ++ returns all attributes that are listed in this column. |
+ibmaci |
|
|
+ibmentry |
|
++ibmentry includes the attributes from +ibmentry and adds:
|
+ibmpwdpolicy |
|
|
+ibmrepl |
|
++ibmrepl includes the attributes from +ibmrepl and adds:
|