Tuesday, November 15, 2011

Novell IDM (dirxml) - How to get the user DN in LDAP format

You can use the following Dirxml script to get the user DN in standard LDAP format:

<do-set-local-variable name="SlashDN" scope="policy">
<arg-string>
<token-src-dn/>
</arg-string>
</do-set-local-variable>
<do-set-local-variable name="userDN" scope="policy">
    <arg-string>
        <token-parse-dn dest-dn-format="ldap" src-dn-format="qualified-slash">
            <token-xpath expression='query:readObject($srcQueryProcessor, "",$SlashDN,"","")/@qualified-src-dn'/>
        </token-parse-dn>
    </arg-string>
</do-set-local-variable>

Followers