środa, 31 lipca 2024

ldap querries are not paged? Windows Active Directory

case:
  • java code

  • forest Active Directory in 2016 version, one parent, two children

  • java code querrying root domain (parent) for group (universal) in child1 domain

  • group has got members from child2 domain

  • uri ldap://parent

  • only first 1000 members are returned

  • ldap policy for returning 1500 objects means that 1500 will be returned, paging is not working



  • possible reason? referrals are not paged so it is prevention against resoure exhaustion of querried domain controller - I've seen it in Technet, but... I can't remember where... maybe on Oracle JNDI?

    Brak komentarzy:

    Prześlij komentarz