LDAP Extract


With the LDAP extract, a query can be executed on an LDAP server, such as Microsoft Active Directory. The following information must be entered for the query:

Main Settings

Connection to an LDAP connection

Base DN: Base Distinguished Name: this is the name of the base object entry (or possibly the root) relative to the search to be performed. 
Example: uid=user, ou=people, dc=example, dc=com 
Scope: Possible values:

  • base: Searching only the entry at the Base DN. Only that entry is returned.
  • one: Searching all entries exactly one level under the Base DN. This doesn’t include the Base DN itself.
  • subtree (default): Searching of all entries. This includes all levels under and including the specified Base DN.
Object Classes: Search filter (obligatory): criteria to use in selecting elements within the scope.
The full syntax of the query can be found here: http://www.faqs.org/rfcs/rfc2254.html
Example: (|(uid=user1)(uid=user2))
Search Filter: Object classes (optional): set of object classes used in the search filter. Object classes define collections of attributes. They have to be separated with spaces (” “)
Example: person posixAccount inetOrgPerson

Alternative names and default values can be assigned for each field of the extract (see Relational Extract ).

Under “Advanced Settings” you have the option to use caching for none (default), memory, or disk. See Caching in Extracts for more information.