LDAP AD and SAMCompatibleName

Alan DeKok aland at deployingradius.com
Tue Mar 19 02:40:52 UTC 2024


On Mar 19, 2024, at 12:36 PM, Andrei Katsuk <steep8 at gmail.com> wrote:
> 
> You are right, there is no SAMCompatibleName attribute and
> sAMAccountName contains only username.
> SAMCompatibleName is just the format of a legacy account name (example
> REALM\user, where REALM is netbios name)
> It seems we can not use a simple filter in this case but maybe there
> are some other ways ?

  To do *what* specifically?

  If you have e-mails of the form "bob at company.com", is the sAMAccountName for that user always going to be "bob"?  Or will it be something else?

  In order to give advice here, we'll need some more detailed information about exactly what transformation you're trying to do.

  Alan DeKok.



More information about the Freeradius-Users mailing list