Differences between Types of Zones

The user and group attributes described in the logical data model are stored differently in IBM Security zones than they are in SFU zones.

  • When you have the Microsoft Services for UNIX (SFU) schema extension, version 3.5 or version 4.0, and use SFU-compatible zones, user and groupUNIX attributes are stored in the Active Directory user and Active Directory group objects.

  • In classic and hierarchical IBM Security and RFC 2307-compatible zones, user and group UNIX attributes are stored in one serviceConnectionPoint object per zone for each user and group.