Gopinath Reddy N wrote: > We have not changed any data in AD. But when we upgrade and try to > connect using valid user id..user is getting rejected. ... > (|(&(objectClass=group)(member=%{Ldap-UserDn})) The rreferences to %{LDAP-UserDn} should now be %{control:LDAP-UserDn}. This should be documented a bit more... Alan DeKok.