Solved

Users in Nested Groups LDAP Query Help

Posted on 2013-01-11
3
1,503 Views
Last Modified: 2013-01-16
My LDAP Query will not run. Its purpose is to enumerate users of groups and users in groups nested below target group.

(&((objectCategory=user)(memberOf:1.2.840.113556.1.4.1941:=CN=xxx,OU=xxx,OU=xx,OU=xx,DC=xxx,DC=xx,DC=xx,DC=xx)))

Can someone tell me why this is not working?

Error: The query filter "(&(&(&((objectCategory=user)(memberOf:1.2.840.113556.1.4.1941:=CN=xxx,OU=xxx,OU=xx,OU=xx,DC=xxx,DC=xx,DC=xx,DC=xx)))))" is not a valid query string.
0
Comment
Question by:elv1s
  • 2
3 Comments
 
LVL 57

Accepted Solution

by:
Mike Kline earned 500 total points
ID: 38768702
Is this in ADUC, I have some other ways to do it here

http://adisfun.blogspot.com/2009/06/find-group-members.html

also use (objectcategory=person)(objectclass=user)  > for the user portion.

Thanks

Mike
0
 

Author Comment

by:elv1s
ID: 38772012
Yes this is in ADUC. I would like to keep the LDAP filter in ADUC. I am sure this is possible. Help is appreciated.
0
 

Author Comment

by:elv1s
ID: 38772038
fixed with info from mkline71

(&(objectcategory=person)(objectclass=user)(memberOf:1.2.840.113556.1.4.1941:=CN=xxx,OU=xxx,OU=xx,OU=xxx,DC=xxx,DC=xxx,DC=xxx,DC=xxx))
0

Featured Post

Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Find out how to use Active Directory data for email signature management in Microsoft Exchange and Office 365.
In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

911 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

21 Experts available now in Live!

Get 1:1 Help Now