HP-UX Directory Server 8.1 schema reference

password length is at least 6 or 7 characters. This is long enough to be difficult to crack, but short
enough that users can remember the password without writing it down.
2.16.840.1.113730.3.1.99OID
IntegerSyntax
Single-valuedMulti- or Single-Valued
Directory ServerDefined in
4.1.35 passwordMustChange (pwdMustChange)
This attirubte sets whether users must change their passwords when they first bind to the
Directory Server or when the password has been reset by the Directory Manager.
2.16.840.1.113730.3.1.220OID
DirectoryStringSyntax
Single-valuedMulti- or Single-Valued
Directory ServerDefined in
4.1.36 passwordResetFailureCount (pwdFailureCountInterval)
This attribute sets the amount of time in seconds after which the password failure counter will
be reset. Each time an invalid password is sent from the users account, the password failure
counter is incremented. If the passwordLockout attribute is set to on, users will be locked out
of the directory when the counter reaches the number of failures specified by the
passwordMaxFailure attribute (within 600 seconds by default). After the amount of time
specified by the passwordLockoutDuration attribute, the failure counter is reset to zero (0).
2.16.840.1.113730.3.1.223OID
IntegerSyntax
Single-valuedMulti- or Single-Valued
Directory ServerDefined in
4.1.37 passwordRetryCount
This attribute counts the number of consecutive failed attempts at entering the correct password.
2.16.840.1.113730.3.1.93OID
DirectoryStringSyntax
Single-valuedMulti- or Single-Valued
Directory ServerDefined in
4.1.38 passwordStorageScheme
This attribute specifies the type of encryption used to store Directory Server passwords. Entering
the password in CLEAR for this attribute indicates that the password will appear in plain text.
4.1 Operational attributes 101