OIDs for controls
The table provided here shows OIDs for controls.
| Short name with OID | Description | Supported by the Administration Server | Supported by IBM® Security Directory Base Server v11.0.1 | Supported by IBM Security Directory Proxy Server v11.0.1 | |
|---|---|---|---|---|---|
| Without partitioned data | With partitioned data | ||||
| AES bind control
1.3.18.0.2.10.28 |
This control enables IBM Verify Directory to send updates to the consumer server with passwords already encrypted using AES. | No | Yes | No | No |
| Audit control
1.3.18.0.2.10.22 |
The control sends a sequence of uniqueid strings and a source ip string to the server.When the server receives the control, it audits the list of uniqueids and sourceip in the audit record of the operation. | Yes | Yes | Yes | Yes |
| Do not replicate control
1.3.18.0.2.10.23 |
This control can be specified on an update operation (add, delete, modify,modDn, modRdn). | No | Yes | No | No |
| Group authorization control
1.3.18.0.2.10.21 |
The control sends a list of groups that a user belongs to. | No | Yes | No | No |
| Ldap delete operation timestamp control
1.3.18.0.2.10.32 |
This control is used to send the modified timestamp values to a replica during a delete operation. | No | Yes | No | No |
| Limit Number of Attribute Values Control
1.3.18.0.2.10.30 |
This control limits the number of attribute values returned for an entry in a search operation. | No | Yes | Yes | Yes |
| Manage DSAIT control
2.16.840.1.113730.3.4.2 |
Causes entries with the "ref" attribute to be treated as normal entries, allowing clients to read and modify these entries.
* In IBM Security Directory Proxy Server (without partitioned data), even if this control is not included in the request the proxy server always sends the Manage DSAIT control to the back-end server. |
No | Yes | Yes (*) | No |
| Modify groups only control
1.3.18.0.2.10.25 |
Attached to a delete or modify DN request to cause the server to do only the group referential integrity processing for the delete or rename request without doing the actual delete or rename of the entry itself. The entry named in the delete or modfiy DN request does not need to exist on the server. | No | Yes | No | No |
| No replication conflict resolution control
1.3.18.0.2.10.27 |
When present, a replica server accepts a replicated entry without trying to resolve any replication conflict for this entry. | No | Yes | No | No |
| Omit group referential integrity control
1.3.18.0.2.10.26 |
Omits the group referential integrity processing on a delete or modrdn request.When present on a delete or rename operation, the entry is deleted from or renamed in the directory, but the entry's membership is not removed or renamed in the groups in which the entry is a member. | No | Yes | No | No |
| Paged search results control
1.2.840.113556.1.4.319 |
Allows management of the amount of data returned from a search request. | No | Yes | Yes | Yes |
| Password policy request control
1.3.6.1.4.1.42.2.27.8.5.1 |
Password policy request or response | Yes | Yes | Yes | Yes |
| Persistent search control
2.16.840.1.113730.3.4.3 |
This control provide clients a means to receive notification of changes in the LDAP server. | No | Yes | No | No |
| Proxy authorization control
2.16.840.1.113730.3.4.18 |
The Proxy Authorization Control enables a bound user to assert another user's identity.The server uses this asserted identity in the evaluation of ACLs for the operation. | No | Yes | No | No |
| Refresh entry control
1.3.18.0.2.10.24 |
This control is returned when a target server detects a conflict during a replicated modify operation. | No | Yes | No | No |
| Replication supplier bind control
1.3.18.0.2.10.18 |
This control is added by the supplier, if the supplier is a gateway server. | No | Yes | No | No |
| Return deleted objects control
1.3.18.0.2.10.33 |
This control when included in a null base search requests, all entries in the database including those entries with attribute isDeleted set to TRUE are returned. | No | Yes | No | No |
| Server administration control
1.3.18.0.2.10.15 |
Allows an update operation by the administrator under conditions when the operation would normally be refused (server is quiesced, a read-only replica, etc.)
* In IBM Security Directory Proxy Server, this control is supported only for bind operations. |
Yes | Yes | Yes (*) | Yes (*) |
| Sorted search results control
1.2.840.113556.1.4.473 |
Allows a client to receive search results sorted by a list of criteria, where each criterion represents a sort key. | No | Yes | No | No |
| Subtree delete control
1.2.840.113556.1.4.805 |
This control is attached to a Delete request to indicate that the specified entry and all descendent entries are to be deleted. | No | Yes | No | No |
| Transaction control
1.3.18.0.2.10.5 |
Marks the operation as part of a transactional context.
* In IBM Security Directory Proxy Server, transactions are supported only when all updates target a single partition. |
No | Yes | Yes (*) | Yes (*) |
| LDAP Assertion Control
1.3.6.1.1.12 |
Assertion control | No | Yes (for MODIFY operations) | Yes | Yes |
| Virtual list view control
2.16.840.1.113730.3.4.9 |
This control extends the regular LDAP search operation and includes a server side sorting control. | No | Yes | No | No |