## ## Schema for account management extra attributes in LDAP ## by Wproject 2022 ## OIDs are owned by Cogent Innovators, LLC ## ## 1.3.6.1.4.1.19937.1.1.x - attributetypes ## 1.3.6.1.4.1.19937.1.2.x - objectclasses ## attributetype ( 2.25.330098197460787237907941808102951680393.1.0 NAME 'active' DESC 'True if account is active' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE ) attributetype ( 2.25.330098197460787237907941808102951680393.1.1 NAME 'fakeCn' DESC 'True if the CN or fullname was created ramdomly and is still ficticious' EQUALITY booleanMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.7 SINGLE-VALUE ) attributetype ( 2.25.330098197460787237907941808102951680393.1.2 NAME 'device' DESC 'Trusted devices info from user-agent' EQUALITY caseIgnoreMatch SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 ) #attributetype ( 2.25.330098197460787237907941808102951680393.1.2 NAME 'lastAccess' # DESC 'Last access timestamp' # EQUALITY generalizedTimeMatch # SYNTAX 1.3.6.1.4.1.1466.115.121.1.24 # SINGLE-VALUE ) objectclass ( 2.25.330098197460787237907941808102951680393.1.2.0 NAME 'accountsManagement' SUP top AUXILIARY DESC 'Accounts management' MUST ( cn $ uid $ active $ fakeCn $ device ) MAY ( userPassword $ description ) )