OIDs for controls

The OIDs for controls provide support description for various servers.

The following table shows OIDs for controls. Click the short name or go the specified page number for more information about a control syntax and usage.

Table 1. OIDs for controls

The supported OIDs for controls.

Short name with OID Description Supported by the Administration Server Supported by IBM® Verify Directory full server 11.0.1 with database Supported by IBM Verify Directory Proxy Server 11.0.1
Without partitioned data With partitioned data
AES bind control

1.3.18.0.2.10.28

This control enables the directory server to send updates to the consumer server with passwords already encrypted using AES. No Yes No No
Audit control

1.3.18.0.2.10.22

The control sends a sequence of uniqueid strings and a source ip string to the server. When the server receives the control, it audits the list of uniqueids and sourceip in the audit record of the operation. Yes Yes Yes Yes
Do not replicate control

1.3.18.0.2.10.23

This control can be specified on an update operation (add, delete, modify, modDn, modRdn). No Yes No No
Entry change notification control

2.16.840.1.113730.3.4.7

This control provides more information about the changes that caused a particular entry to be returned as the result of a persistent search. No Yes No No
Group authorization control

1.3.18.0.2.10.21

The control sends a list of groups that a user belongs to. No Yes No No
LDAP delete operation timestamp control

1.3.18.0.2.10.32

This control is used to send the modified timestamp values to a replica during a delete operation. No Yes No No
Limit number of attribute values control

1.3.18.0.2.10.30

This control limits the number of attribute values that are returned for an entry in a search operation. No Yes Yes Yes
Manage DSAIT control

2.16.840.1.113730.3.4.2

Causes entries with the ref attribute to be treated as normal entries, allowing clients to read and modify these entries.

* In IBM Verify Directory Proxy Server (without partitioned data), even if this control is not included in the request the proxy server always sends the Manage DSAIT control to the back-end server.

No Yes Yes (*) No
Modify groups only control

1.3.18.0.2.10.25

Attached to a delete or modify DN request to cause the server to do only the group referential integrity processing. The processing is for the delete or rename request without doing the actual delete or rename of the entry itself. The entry that is named in the delete or modify DN request does not require to exist on the server. No Yes No No
No replication conflict resolution control

1.3.18.0.2.10.27

When present, a replica server accepts a replicated entry without trying to resolve any replication conflict for this entry. No Yes No No
Omit group referential integrity control

1.3.18.0.2.10.26

Omits the group referential integrity processing on a delete or modrdn request. When present on a delete or rename operation, the entry is deleted from or renamed in the directory. But the entry membership is not removed or renamed in the groups in which the entry is a member. No Yes No No
Paged search results control

1.2.840.113556.1.4.319

Allows management of the amount of data that is returned from a search request. No Yes Yes Yes
Password policy request control

1.3.6.1.4.1.42.2.27.8.5.1

Password policy request or response Yes Yes Yes Yes
Persistent search control

2.16.840.1.113730.3.4.3

This control provides clients a means to receive notification of changes in the LDAP server. No Yes No No
Proxy authorization control

2.16.840.1.113730.3.4.18

The Proxy Authorization Control enables a bound user to assert another user identity. The server uses this asserted identity in the evaluation of ACLs for the operation. No Yes No No
Refresh entry control

1.3.18.0.2.10.24

This control is returned when a target server detects a conflict during a replicated modify operation. No Yes No No
Replication bind failure timestamp control

1.3.18.0.2.10.34

The master server uses the replication bind failure timestamp control to propagate the bind failure timestamp value to a read-only replica server. No Yes No No
Replication supplier bind control

1.3.18.0.2.10.18

This control is added by the supplier, if the supplier is a gateway server. No Yes No No
Replication update ID control

1.3.18.0.2.10.29

This control was created for serviceability. If the supplier server is set to issue the control, each replicated update is accompanied by this control. No Yes No No
Return deleted objects control

1.3.18.0.2.10.33

This control when included in a null base search request, all entries in the database that includes those entries with attribute isDeleted set to TRUE are returned. No Yes No No
Server administration control

1.3.18.0.2.10.15

Allows an update operation by the administrator under conditions when the operation would normally be refused (server is quiesced, a read-only replica, and others).

* In IBM Verify Directory Proxy Server, this control is supported only for bind operations.

Yes Yes Yes (*) Yes (*)
Sorted search results control

1.2.840.113556.1.4.473

Allows a client to receive search results that are sorted by a list of criteria, where each criterion represents a sort key. No Yes No No
Subtree delete control

1.2.840.113556.1.4.805

This control is attached to a Delete request to indicate that the specified entry and all descendant entries are to be deleted. No Yes No No
Transaction control

1.3.18.0.2.10.5

Marks the operation as part of a transactional context.

* In IBM Verify Directory Proxy Server, transactions are supported only when all updates target a single partition.

No Yes Yes (*) Yes (*)
Virtual list view control

2.16.840.1.113730.3.4.9

This control extends the regular LDAP search operation and includes a server-side sorting control. No Yes No No