Dear all,

I'm a little out of my depth here.

Microsoft documentation claims that including

useraccountcontrol:1.2.840.113556.1.4.803:=2

in an LDAP search filter will identify disable Active Directory accounts. This seems 
to work usng their own, and other third party utilities, but I can't seems to make it 
work with perl-ldap. I'm simply adding the 
useraccountcontrol:1.2.840.113556.1.4.803:=2 as an additional attribute in my (already 
working) search filter and I'm getting LDAP_OPERATIONS_ERROR back from the server.

Does anyone have any experience of using this attribute in AD?

Regards,

Stuart

Stuart Squibb
Senior Systems Support Analyst
Isle of Wight Healthcare NHS Trust


 

Reply via email to