Account Options

  1. Sign in
The old Google Groups will be going away soon, but your browser is incompatible with the new version.
Google Groups Home
« Groups Home
Duvida sobre filtro LDAP
There are currently too many topics in this group that display first. To make this topic appear first, remove this option from another topic.
There was an error processing your request. Please try again.
flag
  3 messages - Collapse all  -  Translate all to Translated (View all originals)
The group you are posting to is a Usenet group. Messages posted to this group will make your email address visible to anyone on the Internet.
Your reply message has not been sent.
Your post was successful
 
From:
To:
Cc:
Followup To:
Add Cc | Add Followup-to | Edit Subject
Subject:
Validation:
For verification purposes please type the characters you see in the picture below or the numbers you hear by clicking the accessibility icon. Listen and type the numbers you hear
 
Paulo Henrique Peres  
View profile   Translate to Translated (View Original)
 More options Jul 8 2011, 1:10 pm
From: Paulo Henrique Peres <paulohenriqu...@gmail.com>
Date: Fri, 8 Jul 2011 14:10:28 -0300
Local: Fri, Jul 8 2011 1:10 pm
Subject: Duvida sobre filtro LDAP

Boa tarde
preciso fazer uma busca atraves do LDAP
que traga os usuarios com excecao de um grupo especifico
estou tentando fazer da seguinte forma:
(&(objectCategory=person)(objectClass=user)(!(memberOf=CN=xxx, dc=ad1,
dc=adprimeiro)))

mas nao obtenho sucesso nas buscas, ele traz tb os usuarios que estao no
grupo xxx

alguem consegue me ajudar?

--
*Paulo Henrique Peres*
*Oracle Certified Professional Java Programmer 6.0*


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Jarbas Peixoto Júnior  
View profile   Translate to Translated (View Original)
 More options Jul 8 2011, 2:19 pm
From: Jarbas Peixoto Júnior <jarbas.jun...@gmail.com>
Date: Fri, 8 Jul 2011 14:19:47 -0400
Local: Fri, Jul 8 2011 2:19 pm
Subject: Re: [ldap-br:43] Duvida sobre filtro LDAP

Em 8 de julho de 2011 13:10, Paulo Henrique Peres <paulohenriqu...@gmail.com

> escreveu:
> Boa tarde
> preciso fazer uma busca atraves do LDAP
> que traga os usuarios com excecao de um grupo especifico
> estou tentando fazer da seguinte forma:
> (&(objectCategory=person)(objectClass=user)(!(memberOf=CN=xxx, dc=ad1,
> dc=adprimeiro)))

> mas nao obtenho sucesso nas buscas, ele traz tb os usuarios que estao no
> grupo xxx

> alguem consegue me ajudar?

Qual a versão do seu servidor LDAP? Pelo seu 'filtro' tá parecendo um
AD. Aparentemente sua busca está correta, mas que negócio é esse
"(objectCategory=person)" ?

Mas eu sugiro que faça uma busca com o 'memberOf' para verificar a sua base.
Veja exemplo:

$ ldapsearch -xLLL -H ldap://localhost -b 'dc=previdencia,dc=gov,dc=br'
'(&(objectClass=person)(uid=jarbas.p*)(memberOf=cn=Domain
Admins,ou=Grupos,dc=previdencia,dc=gov,dc=br))' cn memberOf
dn: uid=jarbas.peixoto,ou=Pessoas,ou=Usuarios,dc=previdencia,dc=gov,dc=br
memberOf: cn=Domain Admins,ou=Grupos,dc=previdencia,dc=gov,dc=br
memberOf: cn=Sudo Users,ou=Grupos,dc=previdencia,dc=gov,dc=br
memberOf:
cn=listaurms,ou=Institucionais,ou=Listas,dc=previdencia,dc=gov,dc=br
memberOf:
cn=listaequipedemonitorizacao,ou=Institucionais,ou=Listas,dc=previde
 ncia,dc=gov,dc=br
memberOf: cn=unixadm,ou=Institucionais,ou=Listas,dc=previdencia,dc=gov,dc=br
memberOf:
cn=listaunixoper,ou=Institucionais,ou=Listas,dc=previdencia,dc=gov,d
 c=br
memberOf:
cn=sartcentral,ou=Institucionais,ou=Listas,dc=previdencia,dc=gov,dc=
 br
memberOf:
cn=listawindows,ou=Institucionais,ou=Listas,dc=previdencia,dc=gov,dc
 =br
memberOf:
cn=listareportmanager,ou=Institucionais,ou=Listas,dc=previdencia,dc=
 gov,dc=br
memberOf:
cn=concursados.1998,ou=Institucionais,ou=Listas,dc=previdencia,dc=go
 v,dc=br
memberOf: cn=Sudo UDSL,ou=Grupos,dc=previdencia,dc=gov,dc=br
memberOf: cn=SSH UDSL,ou=Grupos,dc=previdencia,dc=gov,dc=br
memberOf: cn=Crontab Config,ou=Grupos,dc=previdencia,dc=gov,dc=br
memberOf: cn=WPKG Admins,ou=Grupos,dc=previdencia,dc=gov,dc=br
cn: Jarbas Peixoto Junior

Dessa forma sabemos que o usuário 'jarbas.peixoto' está no grupo 'Domain
Admins'.

Agora vamos verificar se existe mais algum 'jarbas.*' que não pertenca a
esse grupo:
$ ldapsearch -xLLL -H ldap://localhost -b 'dc=previdencia,dc=gov,dc=br'
'(&(objectClass=person)(uid=jarbas.*)(!(memberOf=cn=Domain
Admins,ou=Grupos,dc=previdencia,dc=gov,dc=br)))' cn memberOf
dn: uid=jarbas.pires,ou=Pessoas,ou=Usuarios,dc=previdencia,dc=gov,dc=br
cn: Jarbas Pires Vieira de Souza
memberOf:
cn=listadirf,ou=Institucionais,ou=Listas,dc=previdencia,dc=gov,dc=br
memberOf: cn=sarci,ou=Institucionais,ou=Listas,dc=previdencia,dc=gov,dc=br
memberOf:
cn=listanoticiascgps,ou=Institucionais,ou=Listas,dc=previdencia,dc=g
 ov,dc=br
memberOf:
cn=listausuariosdesigner,ou=Institucionais,ou=Listas,dc=previdencia,
 dc=gov,dc=br

Bingo: Notamos que o usuário 'jarbas.pires' não pertence ao grupo 'Domain
Admins'


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Paulo Henrique Peres  
View profile   Translate to Translated (View Original)
 More options Jul 8 2011, 4:13 pm
From: Paulo Henrique Peres <paulohenriqu...@gmail.com>
Date: Fri, 8 Jul 2011 17:13:44 -0300
Local: Fri, Jul 8 2011 4:13 pm
Subject: Re: [ldap-br:44] Duvida sobre filtro LDAP

Blz valeu
consegui

2011/7/8 Jarbas Peixoto Júnior <jarbas.jun...@gmail.com>

--
*Paulo Henrique Peres*
*Oracle Certified Professional Java Programmer 6.0*

 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
End of messages
« Back to Discussions « Newer topic     Older topic »