Re: How to fetch all the groups for a user from Active Directory
[
Date Prev][
Date Next]
[
Thread Prev][
Thread Next]
Re: How to fetch all the groups for a user from Active Directory
- From: Arthur de Jong <arthur [at] arthurdejong.org>
- To: varun mittal <vmittal05 [at] gmail.com>, nss-pam-ldapd-users [at] lists.arthurdejong.org
- Subject: Re: How to fetch all the groups for a user from Active Directory
- Date: Sun, 17 Jan 2021 16:14:24 +0100
On Sun, 2021-01-17 at 18:54 +0530, varun mittal wrote:
> Regarding the 'member' and 'memberUID' attribute. I need not do any
> specific config for that, right?
I think that Active Directory only uses the member attribute to define
group membership.
The memberUid attribute is defined in RFC 2307 and is a more classical
mapping of Unix flat files to an LDAP schema. It has the extra benefit
of allowing references to users defined elsewhere (e.g. you can define
a group in LDAP that has a local user as member).
There should be no need for attribute mapping for group membership in
AD as far as I know.
>
--
-- arthur - arthur@arthurdejong.org - https://arthurdejong.org/ --
- Re: How to fetch all the groups for a user from Active Directory, (continued)