
52 IBM Business Process Manager Security: Concepts and Guidance
LDAP administrators are very selective about who is given access to this Bind DN, and so this
account is almost always defined as read-only access.
Towards the bottom of Figure 3-8, you can see a link for “LDAP entity types”. Clicking this link
will take you to a list of the types of objects which this LDAP server returns when queried
(Figure 3-9 on page 52).
Figure 3-9 LDAP entity types
These are by far the most common three types: an organizational container, groups, and
persons. Each LDAP vendor is free to choose different names for these entity types, as well
as the object classes ...