My Oracle Support Banner

OVD 11g Member Attribute Translation not Working with Special Character in the DN (Doc ID 1506825.1)

Last updated on FEBRUARY 20, 2019

Applies to:

Oracle Virtual Directory - Version 11.1.1.6.0 and later
Information in this document applies to any platform.

Symptoms

Attempting to transform  AD Groups to LDAP Group format.

Using OVD 11g ChangeUserRDN plugin and Virtual Attribute Plugin

Example:
Group detail in AD:

dn: CN=ng-test,OU=GROUPS,DC=COMPANY,DC=com
member: CN=User1\, Test1,OU=Users,DC=COMPANY,DC=com
member: CN=User2\, Test2,OU=Users,DC=COMPANY,DC=com

Following are the SAMACCOUNTNAME values for the group members:

CN=User1\, Test1,OU=Users,DC=COMPANY,DC=com
SAMACCOUNTNAME=test1user1

CN=User2\, Test2,OU=Users,DC=COMPANY,DC=com
SAMACCOUNTNAME=test2user2

Attempting to translate the uniquemember attributes to be returned by OVD to look like:

dn: CN=ng-test,OU=GROUPS,DC=netapp,DC=com
uniquemember: uid=test1user1,OU=Users,DC=COMPANY,DC=com
uniquemember: uid=test2user2,OU=Users,DC=COMPANY,DC=com

 

Plugins configured like the following:

Two plugins configured
  <plugin>
                 <name>ChangeRDN</name>
                
  <class>com.octetstring.vde.chain.plugins.changeuserrdn.ChangeUserRDN</class>
                 <initParams>
                    <param name="fromRDN" value="cn"/>
                    <param name="toRDN" value="uid"/>
                 </initParams>
              </plugin>
              <plugin>
                 <name>UIDAttribute</name>
                
  <class>com.octetstring.vde.chain.plugins.virtualattr.VirtualAttributePlugin</
  class>
                 <initParams>
                    <param name="AddAttribute" value="uid=%samaccountname%"/>
                 </initParams>
              </plugin>
           </plugins>
  
  
  IF DN of member contains /
  then translation does not occur.



RESULTS are the following:

dn: CN=ng-test,OU=GROUPS,DC=netapp,DC=com
uniquemember: CN=User1\, Test1,OU=Users,DC=COMPANY,DC=com
uniquemember: CN=User2\, Test2,OU=Users,DC=COMPANY,DC=com


Users with NO special characters are translated properly.

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Cause
Solution
References


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.