CData Python Connector for LDAP

Build 20.0.7745


Stores a list of user names. Used to apply security principals on resources.



すべてのカラムは、演算子=、>=、<=、!=、LIKE、AND、およびOR のサーバー側の処理をサポートします。その他のフィルタは本製品 内でクライアント側で実行されます。例えば、次のクエリはLDAP によって処理されます。

SELECT * FROM Group WHERE  GroupType != '-2147483644' AND  ObjectClass = 'top;group' LIMIT 5 
SupportEnhancedSQL をfalse に設定すると、クライアント側の実行をオフにできます。その場合、その他の演算子を参照する検索条件でエラーが発生します。


Group を追加するには、Id、DN、およびBaseDN 以外のすべてのフィールドを指定できます。必須のフィールドはRDN とObjectClass です。次に例を示します。

INSERT INTO Group (RDN, ObjectClass) VALUES ('CN=Domain Admins', 'group')


Id、DN、およびBaseDN 以外のすべてのカラムは、WHERE 句にId を指定することで更新できます。次に例を示します。

UPDATE Group SET Member = 'CN=SUPPORT_388945a0,CN=Users,DC=MyDC' WHERE Id = '1|CN=HelpServicesGroup,CN=Users,DC=MyDC'


DELETE ステートメントにGroup のId を指定することで、グループを削除できます。次に例を示します。

 DELETE FROM Group WHERE Id = '1|CN=HelpServicesGroup,CN=Users,DC=MyDC'


Name Type ReadOnly References DataFormat Description
Id [KEY] String True

Combined index and DN. Multiple indices are only possible when a column is set to SplitDataByRow.

DN String True

The full distinguished name.

RDN String False

The relative distinguished name.

BaseDN String True

The base distinguished name.

GroupType String False delimitedData

Contains a set of flags that define the type and scope of a group object. For the possible values for this attribute, see Remarks.

ObjectClass String False splitDataByRow

The list of classes from which this class is derived.

Member String False delimitedData

The list of users that belong to the group.

NTGroupMembers String False delimitedData

This attribute is not used.

OperatorCount String False delimitedData

Operator count.

AdminCount String False delimitedData

Indicates that a given object has had its ACLs changed to a more secure value by the system because it was a member of one of the administrative groups (directly or transitively).

GroupAttributes String False delimitedData

The Group-Attributes attribute is not currently used.

GroupMembershipSAM String False delimitedData

WindowsツNT Security. Down level WindowsツNT support.

ControlAccessRights String False delimitedData

Used by DS Security to determine which users can perform specific operations on the host object.

DesktopProfile String False delimitedData

The location of the desktop profile for a user or group of users. Not used.

NonSecurityMember String False delimitedData

Nonsecurity members of a group. Used for Exchange distribution lists.

ManagedBy String False delimitedData

The distinguished name of the user that is assigned to manage this object.

PrimaryGroupToken String False delimitedData

A computed attribute that is used in retrieving the membership list of a group, such as Domain Users. The complete membership of such groups is not stored explicitly for scaling reasons.

Mail String False delimitedData

The list of email addresses for a contact.


SELECT ステートメントのWHERE 句では、疑似カラムフィールドを使用して、データソースから返されるタプルを詳細に制御することができます。

Name Type Description
Filter String

Defines the LDAP filter explicitly, overriding any other values set in the WHERE clause.

Copyright (c) 2021 CData Software, Inc. - All rights reserved.
Build 20.0.7745