Results 1 to 2 of 2

Thread: Missing "memberof" ldap attribute

  1. #1
    Join Date
    Feb 2006
    Posts
    126

    Missing "memberof" ldap attribute

    There are users with us that are missing the "memberof" ldap attribute when they belong to domain security groups. When we look in the ADUC, then it shows the user is a member of multiple groups. If you look are the users LDAP attributes, using any third party tool, the "memberof" attribute is missing all together. Can anyone tell me what is happening exactly? I am also not seeing any errors in the event logs. I have a domain admin permission and that has no effect on whether it shows or not. I also created new ID's and it also has the same problems? Can anyone please help me out? Thanks.

  2. #2
    Join Date
    Nov 2005
    Posts
    1,323
    The number of values in the memberof attribute will always be one less than the number of direct grop memberships shown in ADUC, because the "primary" group, usually Domain users, is never included. When the user is a member of only their primary group, then the memberof attribute has no values and technically nothing is saved in AD, so maybe it appears that there is no memberof attribute.

Similar Threads

  1. Replies: 4
    Last Post: 27-12-2011, 03:33 AM
  2. Replies: 6
    Last Post: 31-08-2011, 12:33 AM
  3. Can't remove "Read Only" attribute
    By Lupin in forum Windows XP Support
    Replies: 5
    Last Post: 02-05-2010, 10:38 PM
  4. Replies: 8
    Last Post: 04-02-2010, 11:58 PM
  5. "View Workgroup Computers" is missing from "Network Tasks"
    By Sikudhani in forum Windows XP Support
    Replies: 1
    Last Post: 29-11-2007, 08:18 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Page generated in 1,713,565,937.29002 seconds with 18 queries