Reading groups membership in Shibboleth 4.0.1

Cantor, Scott cantor.2 at
Tue Dec 1 15:37:54 UTC 2020

Shibboleth doesn't do LDAP, the library it uses on top of the UnboundID client does. Nothing ldapsearch shows has anything to do with what a totally different set of code will do, it's pointless for comparison.

I thought OpenLDAP required specifying + as a returned attribute to get operational attributes (whatever those are). Maybe other LDAP servers do.

-- Scott

More information about the users mailing list