cancel
Showing results for 
Search instead for 
Did you mean: 

Attribute accountExpires is not showing up in Transaction LDAP

davidwallner
Participant
0 Kudos

Hi there,

when i start transaction LDAP, i can search for users and their attributes in Microsoft ADS. So far, transaction LDAP works but it doesn't show the attribute "accountExpires". Can anyone please help me with that problem?

Thank you

David

Accepted Solutions (0)

Answers (3)

Answers (3)

davidwallner
Participant
0 Kudos

Meanwhile i solved the problem.

The interesting point is that we are using the global catalog in our LDAP-connector (Port 3268) and this catalog does not contain the attribute "accountExpires" in default-mode. You have to customize ms-ADS.

Former Member
0 Kudos

Hi David,

in my case (IDES ECC6.0, NW700.15) accountExpires is always showing (either 0 or >0)

I use a standard, non-SSL direct connection to an ADS on Win2003.

My settings are:


Base: cn=users,dc=example,dc=com
Filter: (&(objectclass=*))

Attributes:
accountExpires
objectclass

Mode:
non-hex

My communication user has full-admin rights.

Of course not all objectclasses have the accountexpires attribute (e.g. groups), so I support Matts suggestion.

Edit: By the way: this forum covers the SAP product "SAP NetWeaver Identity Management" which only partly deals with transaction LDAP; maybe you get more helpful answers if you bring up this question in a different forum.

BR

Michael

Edited by: Michael Schüßler on Dec 6, 2011 2:36 PM

former_member2987
Active Contributor
0 Kudos

David,

Are you going through Identity Center or VDS?

In either case, are you using a search filter? If so what is the objectclass component?

Matt