Forum Discussion
APM AD Query Search Filter options
Good Morning
I have an AD Query used in a multi domain policy. the policy appends domain so login is fine however, however the AD Query fails as some Users do not have a UPN.
IN the AD Query how can I tell it to search for one or the other?
Works for some (sAMAccountName=%{session.logon.last.username}) Need this for the others (CN=%{session.logon.last.username}) as that attribute is set for all.
thanks
4 Replies
- Josiah_39459Historic F5 Account
Sounds like you need to use an Empty box in the VPE with branch rules to check the domain session variable (session.logon.last.domain usually, or wherever else you are storing it). Then you can send one group of users to one AD query and send the other group of users to the other one.
- Ruggerfly1
Nimbostratus
For the 2nd AD Query will this work Search Filter? Was thinking it might be LDAP only. If so then I could use the variable based off domain and send UPN to AD Query, other to LDAP query. (CN=%{session.logon.last.username}) - Josiah_39459Historic F5 AccountThere's no real reason to use AD query over LDAP query, so just go with the LDAP query.
- Ruggerfly1
Nimbostratus
thank you!
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com