and more in a single search tool across platforms. Read the announcement here. |
04/24/2023 11:56 PM - edited 04/24/2023 11:56 PM
We have a use case where we only want to import groups of 2 OUs in OpenLDAP.
There are 5 group OUs: ou1, ou2, ou3, ou4 and ou5. How would we go about only importing groups from ou1 and ou2? The searchfilter does not help as this can only contain 1 specific group ou.
Thank you!
Solved! Go to Solution.
04/25/2023 01:14 AM
Hello @Robbe_Cronos,
In the Connector groupImportMapping, you need to add the advanceGroupFilter for the OU's as shown in the sample below.
{
"importGroupHierarchy": "true",
...
"groupObjectClass": "(objectclass=group)",
"advanceGroupFilter":{"memberOf":{
"OU=ABC,DC=saviyntlabs,DC=org": ["(&(objectClass=group))"],
"OU=XYZ,DC=saviyntlabs,DC=org": ["(&(objectClass=group))"]}},
"mapping":
"memberHash:member_char,entitlement_value:distinguishedName_char,
....
04/25/2023 02:13 AM
it seems we had a small typing error in our advanceGroupFilter, it works correctly now.
Thank you!
04/25/2023 01:17 AM
Can you try below option :
"advanceGroupFilter":
{"memberOf":
{"OU=TestGroups,DC=XXXX,DC=XX":
["(&(objectClass=group)(displayName=ABC))"],
"OU=XYZ,DC=XXXX,DC=XXX": ["(&(objectClass=group))"]
}