Click the Delete button on the confirmation dialog box to delete the object class.

16-2 Oracle Fusion Middleware Administrators Guide for Oracle Virtual Directory ■ To explicitly grant access for an entry permission, select Grant from the Access Type list and select the permissions you want to grant access to. ■ To explicitly deny access for an entry permission, select Deny from the Access Type list and select the permissions you want to deny access to.

8. Click the By Whom tab and perform the following to set to whom the entry access

policy applies: ■ Select the subject of the ACL from the By Whom list. ■ Enter the DN or IP address of the in the DN or IP Address field if you chose Specific DN or IP Address from the By Whom list. Click the OK button to save the Structural Access Items Entry Level Operations settings. The new entry access policy appears in the Structural Access Items Entry Level Operations table.

9. Click the Create button in the Content Access Items Attribute Level Operations

area to create access policy for the attributes of the entry. The Content Access configuration dialog box appears.

10. Click the Target tab and select the attributes from the Attribute list that the access

policy applies to. Selecting applies the access policy to all attributes.

11. Click the Permissions tab and perform the following to set the attribute

permissions for the access policy: ■ To explicitly grant access for an attribute permission, select Grant from the Access Type list and select the permissions you want to grant access to. ■ To explicitly deny access for an attribute permission, select Deny from the Access Type list and select the permissions you want to deny access to.

12. Click the By Whom tab and perform the following to set to whom the attribute

access policy applies: ■ Select the subject of the ACL from the By Whom list. ■ Enter the DN or IP address of the in the DN or IP Address field if you chose Specific DN or IP Address from the By Whom list. 13. Click the OK button to save the Content Access Items Attribute Level Operations settings. The new attribute access policy appears in the Content Access Items Attribute Level Operations table.

16.2 Managing Access Control Lists Using Oracle Directory Services Manager

This topic explains how to manage ACLs using Oracle Directory Services Manager and contains the following sections: ■ Updating Access Control Lists ■ Deleting Access Control Lists Entries

16.2.1 Updating Access Control Lists

Perform the following steps to edit an existing ACL using Oracle Directory Services Manager: 1. Log in to Oracle Directory Services Manager. Configuring Oracle Virtual Directory Access Control 16-3

2. Select Security from the task selection bar. The Access Control Point navigation

tree appears listing the existing ACLs. 3. Click the ACL you want to edit in the tree. The settings for the ACL appear. 4. Click the Subtree Access tab or the Local Access tab. 5. Click the attribute you want to edit, edit the value as desired, and then click the OK button to save the changes.

16.2.2 Deleting Access Control Lists Entries

Perform the following steps to delete an existing Access Control List ACL using Oracle Directory Services Manager: 1. Log in to Oracle Directory Services Manager.

2. Select Security from the task selection bar. The Access Control Point navigation

tree appears listing all the existing ACLs. 3. Click the ACL in the tree that contains the entry you want to delete. The settings for the ACL appear. 4. Click the entry in the ACL you want to delete.

5. Click the Delete button. The Delete dialog box appears asking you to confirm

deleting the entry.

6. Click Delete on the Delete dialog box to delete the entry.

7. Click the Apply button on the ACL settings screen to apply the updated ACL.