https://wiki.zimbra.com/api.php?action=feedcontributions&user=Severson&feedformat=atomZimbra :: Tech Center - User contributions [en]2024-03-29T10:18:40ZUser contributionsMediaWiki 1.39.0https://wiki.zimbra.com/index.php?title=LDAP_Active_Directory&diff=7555LDAP Active Directory2008-01-11T05:12:27Z<p>Severson: /* ADSIEDIT.MSC */</p>
<hr />
<div>== '''Finding the DN (distinguished name) of a user in Active Directory:''' ==<br />
<br />
<br />
You may be asked to define a DN so that a service can bind to it to authenticate a query. Each user in Active Directory has a distinguished name. However, you cannot find it through the ADUC tool. <br />
<br />
From a command prompt on your domain controller type: '''ldifde -f c:\export.txt'''<br />
<br />
View the export.txt file in Notepad and do a find on the username. For example, you do a find on username zimbrauser. You will see something like this:<br />
<br />
<br />
CN=zimbrauser,OU=External,DC=exonline,DC=intranet<br />
<br />
This means that zimbrauser is in the OU called External in your AD forest exonline.intranet.<br />
<br />
<br />
== ADSIEDIT.MSC ==<br />
One of the free tools available for Windows 2003 is ADSIEdit[http://technet2.microsoft.com/windowsserver/en/library/ebca3324-5427-471a-bc19-9aa1decd3d401033.mspx?mfr=true]. You can grab this with the tools that come on the CD or through Microsoft. ADSIEdit exposes the raw LDAP-like underbelly of AD, and allows you to see objects and attributes, and run LDAP queries. It will easily allow you to find the full path of any object.</div>Seversonhttps://wiki.zimbra.com/index.php?title=LDAP_Active_Directory&diff=7554LDAP Active Directory2008-01-11T05:10:20Z<p>Severson: /* '''Finding the DN (distinguished name) of a user in Active Directory:''' */</p>
<hr />
<div>== '''Finding the DN (distinguished name) of a user in Active Directory:''' ==<br />
<br />
<br />
You may be asked to define a DN so that a service can bind to it to authenticate a query. Each user in Active Directory has a distinguished name. However, you cannot find it through the ADUC tool. <br />
<br />
From a command prompt on your domain controller type: '''ldifde -f c:\export.txt'''<br />
<br />
View the export.txt file in Notepad and do a find on the username. For example, you do a find on username zimbrauser. You will see something like this:<br />
<br />
<br />
CN=zimbrauser,OU=External,DC=exonline,DC=intranet<br />
<br />
This means that zimbrauser is in the OU called External in your AD forest exonline.intranet.<br />
<br />
<br />
== ADSIEDIT.MSC ==<br />
One of the free tools available for Windows 2003 is adsiedit.msc. You can grab this with the tools that come on the CD or through Microsoft. ADSIEdit exposes the raw LDAP-like underbelly of AD, and allows you to see objects and attributes, and run LDAP queries.</div>Severson