Norman Gray wrote: > > Howard, hello. > > On 8 Feb 2024, at 0:34, Howard Chu wrote: > >>> 65c3df21.21fc2a30 0x16cacf000 >>> ldap_url_parse_ext(ldap:///ou=groups,o=example?member?sub?(|(cn=ldap-admins-*)(cn=ldap-techs))) >> >> The above URL is not valid for a dynamic group. The attrs portion of the URL >> must be empty. >> >> Since it's invalid, after it is parsed it gets ignored. > > That's true when constructing what slapo-dynlist(5) calls a dynamic > group, but that's not what I'm constructing here, but instead a group > entry which is dynamically expanded, to a group, by a search.
Whatever you've constructed is not a dynamic group, as defined in slapo-dynlist. As such, it is not supported for the purpose you're asking. -- -- Howard Chu CTO, Symas Corp. http://www.symas.com Director, Highland Sun http://highlandsun.com/hyc/ Chief Architect, OpenLDAP http://www.openldap.org/project/
