We have an Active Directory setup in which we use OUs to seperate our hundreds of users by department in a heirarchial structure. This works great for most applications, but we have a new one coming down the pike called Powerschool which, while it knows how to look up auth info from AD, doesn't know how to do it with search scope=sub, so it seems to require all of our users to be in the same OU. Because we actually use our AD in a specific structure for OU-based policies and that sort of thing, it's not possible for us to move the user accounts into a single OU.
Is it possible to have a single OU whose contents are dynamically updated by an LDAP query? I'm thinking along the lines of a database view, or even to give a simpler example, the "Search Folders" found in recent versions of Outlook, Thunderbird, Mail.app, and Evolution.
If I could have all of my users in a single OU, at least for query purposes, it would be a huge step forward for us with this Powerschool project.
(Don't hesitate to ask for clarification, I'll be watching this entry closely all day)
Sam Powers (email@example.com)
Jackson County SD #6, Central Point, OR