Allowing LDAP to read users from child domain in a forest

Quick note:
using LDAP’s default port 389 with a Base DN of the parent Active Directory domain only shows objects from the parent domain. Changing the port to 3268 but keeping the same Base DN allows LDAP access to users from the child AD domain.

So, finally got the Openfire Jabber server to see all users from both domains.

Found via: http://www.igniterealtime.org/community/message/155746

For further reading: http://technet.microsoft.com/en-ca/library/cc978012.aspx

Kind of a lame first post, but hey, gotta start somewhere!

3 Comments

  1. Matt Yiptong

    2009-07-06 at 18:49

    Unknown Unknown Unknown Unknown

    Test comment for fixed IP detection.

  2. Google Chrome 27.0.1453.94 Google Chrome 27.0.1453.94 Windows 7 x64 Edition Windows 7 x64 Edition
    Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/27.0.1453.94 Safari/537.36

    Was looking everywhere for this! Surprised it wasn’t posted in the Ignite community. Worked like a charm. Thanks!

    One more thing though, how do I hide all the computer objects? šŸ˜›

  3. Firefox 54.0 Firefox 54.0 GNU/Linux x64 GNU/Linux x64
    Mozilla/5.0 (X11; Linux x86_64; rv:54.0) Gecko/20100101 Firefox/54.0

    Thanks, exactly what i needed for openvpn with nslcd with multiple domains/base šŸ™‚

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.