简体   繁体   English

您是否可以创建将LDAP搜索限制为OU组的策略/规则或组?

[英]Can you create a policy/rule or group which will limit an LDAP search to group of OUs?

I am new to using LDAP queries. 我是使用LDAP查询的新手。 I have Active Directory running and a tree structured as: 我正在运行Active Directory,并且结构树如下:

Building1 -Staff -Students Building2 -Staff -Students 建筑物1-员工-学生建筑物2-员工-学生

I'm setting up LDAP queries on various systems and would like to limit the search results to just the staff OU's and exclude Students. 我正在各种系统上设置LDAP查询,并希望将搜索结果限制为仅人员OU并排除学生。 Is this possible with this structure? 这种结构有可能吗?

Yes, but it's done in the filter, not via a rule/policy/group. 是的,但这是在过滤器中完成的,而不是通过规则/策略/组完成的。

It's a poor way to structure the directory. 这是构建目录的糟糕方法。 What if someone moves to the other building? 如果有人搬到另一栋楼怎么办? It would be better to have the buildings as groups that the staff or student are members of. 最好将建筑物作为工作人员或学生所属的组。

声明:本站的技术帖子网页,遵循CC BY-SA 4.0协议,如果您需要转载,请注明本站网址或者原文地址。任何问题请咨询:yoyou2525@163.com.

 
粤ICP备18138465号  © 2020-2024 STACKOOM.COM