Solved

How I do enumerate users of a group in a nested OU

Posted on 2010-09-16
2
960 Views
Last Modified: 2012-06-21
Goal: Setup Mailbox Mgr (Exchange 2003) to manage size of mailboxes using custom search/ldap query for members of a group where the group is in a nested OU

Issue: My ldap query below only returns users if the group is in a NON-nested OU -

(objectCategory=user)(memberOf=CN=GROUP,OU=OU,DC=DOMAIN,DC=com)

How can i alter my ldap query so it will return members of a security group in a nested OU so i dont have to change my AD layout - Below is how I have the layout

domain
   OU
       OU
          Group
0
Comment
Question by:SHAX
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 57

Accepted Solution

by:
Mike Kline earned 250 total points
ID: 33693223
The DN or your group should be something like  CN=group,OU=nestedOU1,OU=nestedOU2,DC=domain,DC=com.  I'll test later but it should pick it up
 
Thanks
Mike
0
 

Author Comment

by:SHAX
ID: 33700961
that worked - it appears the sub OU goes 1st and the parent OU is 2nd - you got me on the right track -

Thanks -
0

Featured Post

Get 15 Days FREE Full-Featured Trial

Benefit from a mission critical IT monitoring with Monitis Premium or get it FREE for your entry level monitoring needs.
-Over 200,000 users
-More than 300,000 websites monitored
-Used in 197 countries
-Recommended by 98% of users

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article provides a convenient collection of links to Microsoft provided Security Patches for operating systems that have reached their End of Life support cycle. Included operating systems covered by this article are Windows XP,  Windows Server…
Let's recap what we learned from yesterday's Skyport Systems webinar.
A short tutorial showing how to set up an email signature in Outlook on the Web (previously known as OWA). For free email signatures designs, visit https://www.mail-signatures.com/articles/signature-templates/?sts=6651 If you want to manage em…
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …
Suggested Courses

630 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question