skip to main content

Directory Services Attribute

Account Proxy (tamuProxyRDN)

Attribute details

LDAP tamuProxyRDN attribute properties, usage and population rules
Definition: Account proxy.

When a person has been made an account proxy, he/she has the ability to modify some directory information fields for the proxied account. The most significant of these fields is the account holder's email destination.

An account holder can define an unlimited number of proxies for his/her NetID account; the only limitation is that the account proxy must also have a Texas A&M NetID account.

tamuProxyRDN predates the new set of proxy attributes: tamuProxyTarget, tamuProxyTargetUIN, tamuProxyHolder and tamuProxyHolderUIN. The new attributes allow finer-grained access control and permit campus applications to incorporate proxy access with CAS authentication. Directory edit privilege management will soon be transitioned to the new proxy attribute set, after which tamuProxyRDN will be dropped from the schema.
Attribute Name: 'tamuProxyRDN'
OID: 1.3.6.1.4.1.4391.0.6
URN: urn:oid:1.3.6.1.4.1.4391.0.6
Multiple Values: Multi-valued
Format: Directory String {256}
Search Syntax: EQUALITY caseIgnoreMatch SUBSTR caseIgnoreSubstringsMatch
Controlled Vocabulary: uids of other directory branch entries
Source: Enterprise Directory People Branch:
Defined by account holder in Proxy Edit application.
Enterprise Directory Roles Branch:
Specified when role or organizational email alias requested. Updated via Proxy Edit application.

Directory-specific details

LDAP tamuProxyRDN attribute properties that are dependent on directory branch or object class configuration
  Enterprise Directory
People Branch
Enterprise Directory
Roles Branch
Directory URL: ldap.tamu.edu ldap.tamu.edu
Object Class: tamuPerson tamuRoleOrOrg
Required: no no
Indexing: Presence (pres): Improves searches for entries that contain the indexed attribute.
Equality (eq): Improves searches for entries that contain an attribute that is set to a specific value.
Presence (pres): Improves searches for entries that contain the indexed attribute.
Equality (eq): Improves searches for entries that contain an attribute that is set to a specific value.
Access: Access to Enterprise Directory restricted. Access to Enterprise Directory restricted.
Usage: delegation of editing privileges for owner-defined attribute values in the directory delegation of editing privileges for account attribute values in the directory
Example(s): 79094b873aa31720a4bbcd59b45df5d2 79094b873aa31720a4bbcd59b45df5d2