Uploaded image for project: 'OpenICF'
  1. OpenICF
  2. OPENICF-505

LDAP connector should use different objectclasses between creations and searches

    Details

      Description

      Currently, the LDAP connector uses a AND combination of "accountObjectClasses" filter and "accountSearchFilter" for searching user accounts. So, when custom objectclasses are needed, entries without that objectclass are not found.
      Typically, accountSearchFilter should take precedence over accountObjectClasses.

      The other side effect is that when searching entries, the resulting search filter is more complex, so it may give worse performances (more indexes to check).

        Attachments

          Issue Links

            Activity

              People

              • Assignee:
                gael Gael Allioux
                Reporter:
                cgrosjean Cyril Grosjean
                QA Assignee:
                Gael Allioux
              • Votes:
                0 Vote for this issue
                Watchers:
                3 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: