AD Synched Entries Have Multiple Values for cn in OID (Doc ID 473118.1)

Last updated on MARCH 08, 2017

Applies to:

Oracle Internet Directory - Version: 10.1.2.2.0
This problem can occur on any platform.

Symptoms

AD synched entries show more than one value for "cn" in OID, even though the entry in AD has a single value. For example:

Search AD: 

ldapsearch -h oemfl-ad -p 389 -D "administrator@oemad-orl.us.oracle.com" -w <pwd> -s sub -b "CN=Andy Parkman,CN=Users,DC=OEMAD-ORL,DC=US,DC=ORACLE,DC=com" objectclass=*

CN=Andy Parkman,CN=Users,DC=OEMAD-ORL,DC=US,DC=ORACLE,DC=com
...
cn=Andy Parkman


Search for the synched entry in OID:

ldapsearch -h urukai -D "cn=orcladmin" -w <pwd> -s base -b "cn=andy parkman,cn=Users,dc=us,dc=oracle,dc=com" objectclass=*

cn=andy parkman,cn=users,dc=us,dc=oracle,dc=com
cn=andy parkman
cn=AParkman
...

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms