Combined LDAP/AD object lookup fails on foreign security principals and mixed entries
Combined LDAP/AD object lookup fails on foreign security principals and mixed entries: a task in LegoFlow-SWE (Harbor dataset). The current LDAP/AD lookup for groups and users is overly specialized for single-type queries. When a group contains a foreign security principal (FSP) member – which is…
The task
The current LDAP/AD lookup for groups and users is overly specialized for single-type queries. When a group contains a foreign security principal (FSP) member – which is represented only by a SID and cannot be resolved as a user or group – the entire lookup operation fails. Similarly, nested group resolution aborts…
Part of Lego-X/LegoFlow-SWE.