My Oracle Support Banner

OVD Configuration Difference - Ldapsearch from One OVD Returns Two Entries, but Only One Entry from Another OVD (Doc ID 1970886.1)

Last updated on MARCH 08, 2017

Applies to:

Oracle Virtual Directory - Version 10.1.4.3 to 11.1.1.0
Information in this document applies to any platform.

Symptoms

Oracle Virtual Directory (OVD) 10g or 11g, e.g., 11.1.1.6.0, providing a single LDAP interface to two Microsoft (MS) Active Directory (AD) domains in the backend.

A user might have an account in each AD domain with the same samaccountname, uid, CN.

When issuing the same LDAP query based on filter uid=<username>; one OVD Server (i.e., Production) returns only one record, whereas another Test OVD Server returns both (two entries).

ldapsearch -x -p 6051 -h myovdhost.mycompany.com -D "adminaccount" -w <password> -b "dc=ad,dc=mycompany,dc=com" -s sub "(uid=mytestuser)"

This returns two entries from Test OVD:

Dn: CN=mytestuser,OU=Corporate,OU=ou1,ou=US,dc=ad,dc=mycompany,dc=com
displayName: mytestuser
mail: mytestuser@mycompany.com
uid: mytestuser

Dn: CN=mytestuser,OU=Corporate,OU=ou2,ou=Europe,dc=ad,dc=mycompany,dc=com
displayName: mytestuser
uid: mytestuser

But only one of them from OVD Prod.

Which configuration difference between PROD and Test is causing this different behavior?


Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Cause
Solution
References


This document is being delivered to you via Oracle Support's Rapid Visibility (RaV) process and therefore has not been subject to an independent technical review.
My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.