<html>
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
  </head>
  <body text="#000000" bgcolor="#FFFFFF">
    <p>Same here.<br>
      I tried to make the schemaHandling more permissive with<br>
    </p>
    <p><limitations><br>
                          <minOccurs>0</minOccurs><br>
                          <access><br>
                              <read>true</read><br>
                              <add>true</add><br>
                              <modify>false</modify><br>
                          </access><br>
      </limitations><br>
       </p>
    <p>per attribute - or <br>
    </p>
    <p><br>
    </p>
    <p><outbound><br>
                          <strength>weak</strength></p>
    <p>...</p>
    <p></outbound><br>
    </p>
    <p><br>
    </p>
    <p>Do I really need to specify every single objectClass in the
      connector to make Midpoint ignoring unused
      attributes/objectClasses?</p>
    <p>Where is the switch make Midpoint permissive against unknown
      LDAP-classes or attributes?</p>
    <p>Regards,</p>
    <p><br>
      Fabian Bosch<br>
    </p>
    <br>
    <div class="moz-cite-prefix">Am 05.11.2017 um 09:31 schrieb Petr
      Gašparík - AMI Praha a.s.:<br>
    </div>
    <blockquote type="cite"
cite="mid:CABAspd2LBSFN4x1z3E++J6PSXTD3KphhgRjLVaGC+8fy70=16Q@mail.gmail.com">
      <div dir="ltr">Hi guys,
        <div>we have some serious troubles working with objectClass
          attributes.</div>
        <div><br>
        </div>
        <div>Situation:</div>
        <div>- in LDAP, there is a lot of users with different
          objectClasses (7 to 20). </div>
        <div>- in midPoint, we need to manage only few of them
(objectclass=person, objectclass=organizationalperson, objectclass=inetorgperson, objectclass=inetUser, objectclass=top, objectclass=inetMailUser, objectclass=cpostUser,
          with inetOrgPerson being structural)</div>
        <div><br>
        </div>
        <div><b>Now, intented behaviour is:</b></div>
        <div>- set objectClass if there is less than minimal set (6,
          mentioned above)</div>
        <div>- don't care about the rest (if ther is more than that)</div>
        <div><br>
        </div>
        <div>So far</div>
        <div>- we were able to set LDAP connector to add missing
          objectClass, BUT that removes excessive objectClass (unwanted
          behaviour, a loss of services)</div>
        <div>- we can also specify all possible objectClasses, BUT that
          also adds unnecessary objectClasses (unwanted, add services)</div>
        <div><br>
        </div>
        <div>Thanks to you all that tries to help us!</div>
        <div><br clear="all">
          <div>
            <div class="gmail_signature">
              <div dir="ltr">
                <div>
                  <div dir="ltr">
                    <p><span
                        style="font-family:Arial,sans-serif;font-size:10pt">--</span></p>
                    <p><span
                        style="font-family:Arial,sans-serif;font-size:10pt">s
                        pozdravem</span></p>
                    <table
style="font-family:Verdana,Arial,Helvetica,sans-serif;border-collapse:collapse;padding:0px;margin:0px;border-width:0px;border-style:solid;width:482px">
                      <tbody>
                        <tr style="padding:0px;margin:0px;border:0px
                          solid gray">
                          <td
style="color:rgb(0,0,0);font-family:Arial,sans-serif;font-size:11px;width:160px;vertical-align:bottom;padding:0px;border:0px
                            solid gray">
                            <p><span
                                style="font-size:14px;font-weight:bold">Petr
                                Gašparík</span><br>
                              solution architect<br>
                              <br>
                              gsm: [+420] 603 523 860<br>
                              mail: <a
                                href="mailto:petr.gasparik@ami.cz"
                                target="_blank" moz-do-not-send="true">petr.gasparik@ami.cz</a></p>
                          </td>
                          <td
style="color:rgb(0,0,0);font-family:Verdana,Arial,Helvetica,sans-serif;font-size:10px;border-width:0px
                            1px 0px
                            0px;border-style:solid;border-color:gray
                            rgb(204,204,204) gray gray;padding:0px">   </td>
                          <td
style="color:rgb(0,0,0);font-family:Verdana,Arial,Helvetica,sans-serif;font-size:10px;padding:0px;border:0px
                            solid gray">   </td>
                          <td
style="color:rgb(0,0,0);font-family:Arial,sans-serif;font-size:11px;vertical-align:bottom;padding:0px;width:123px;border:0px
                            solid gray">
                            <p>AMI Praha a.s.<br>
                              Pláničkova 11<br>
                              162 00 Praha 6<br>
                              tel.: [+420] 274 783 239<br>
                              web: <a href="http://www.ami.cz/"
                                target="_blank" moz-do-not-send="true">www.ami.cz</a></p>
                          </td>
                          <td
style="color:rgb(0,0,0);font-family:Verdana,Arial,Helvetica,sans-serif;font-size:10px;border-width:0px
                            1px 0px
                            0px;border-style:solid;border-color:gray
                            rgb(204,204,204) gray gray;padding:0px">   </td>
                          <td
style="color:rgb(0,0,0);font-family:Verdana,Arial,Helvetica,sans-serif;font-size:10px;padding:0px;border:0px
                            solid gray">   </td>
                          <td
style="color:rgb(0,0,0);font-family:Arial,sans-serif;font-size:11px;margin:8px;width:116px;border:0px
                            solid gray">
                            <p><img
                                src="http://www.ami.cz/images/podpis/ami_logo.gif"
                                alt="AMI Praha a.s." style="border:
                                0px;" moz-do-not-send="true"></p>
                          </td>
                        </tr>
                        <tr style="padding:0px;margin:0px;border:0px
                          solid gray">
                          <td colspan="7"
style="color:rgb(0,0,0);font-family:Verdana,Arial,Helvetica,sans-serif;font-size:10px;padding:0px;width:480px;border:0px
                            solid gray"><br>
                          </td>
                        </tr>
                        <tr style="padding:0px;margin:0px;border:0px
                          solid gray">
                          <td colspan="7"
style="color:rgb(128,128,128);font-family:Arial,sans-serif;font-size:11px;padding:0px;border:0px
                            solid gray">Textem tohoto e-mailu
                            podepisující neslibuje uzavřít ani neuzavírá
                            za společnost AMI Praha a.s.<br>
                            jakoukoliv smlouvu. Každá smlouva, pokud
                            bude uzavřena, musí mít výhradně písemnou
                            formu.<br>
                            <br>
                          </td>
                        </tr>
                      </tbody>
                    </table>
                  </div>
                </div>
              </div>
            </div>
          </div>
        </div>
      </div>
      <br>
      <fieldset class="mimeAttachmentHeader"></fieldset>
      <br>
      <pre wrap="">_______________________________________________
midPoint mailing list
<a class="moz-txt-link-abbreviated" href="mailto:midPoint@lists.evolveum.com">midPoint@lists.evolveum.com</a>
<a class="moz-txt-link-freetext" href="http://lists.evolveum.com/mailman/listinfo/midpoint">http://lists.evolveum.com/mailman/listinfo/midpoint</a>
</pre>
    </blockquote>
    <br>
    <pre class="moz-signature" cols="72">-- </pre>
  </body>
</html>