iFolder not returning all users when using Active Directory

  • 7008614
  • 01-Jun-2012
  • 14-Feb-2013

Environment

Novell Open Enterprise Server 11 (OES 11) Linux
Novell iFolder 3.9

Situation

The LDAP sync to iFolder not returning all users in designated iFolder contexts when using Microsoft Active Directory as the LDAP data source.

By default when using iFolder only 1000 users are returned from Active Directory.
 
NOTE:  This has been reported to be an issue with Vibe as well when connecting to Active Directory.


Resolution

There is a default setting in Active Directory that limits LDAP searches to 1000 results by default.  

The Ntdsutil.exe tool makes it possible to modify this value to expand or limit the search based how big the AD tree is.  The link to this information is provided below, the value that needs to be changed is: MaxPageSize.

More information is provided here:  http://support.microsoft.com/kb/315071

Cause

Per Microsoft, MaxPageSize setting controls the maximum number of objects that are returned in a single search result.