- When I click on the tab "Members" in the properties of a group object, I can't see anything. - When I click on the tab "Member of" in the properties of a group object, I get something like "The submitted AD path is illegal". But also in user objects the content sometimes isn't right. - I tried once also to change a users primary group from "Domain Users" to another one and the ADUC console crashed.
We now handle linked attributes, so this should be improved (not tested with MMC yet).
Interesting: I tested now the change of the primary group in a user object. I noticed that all secondary group entries are deleted and only the reference to the primary one is kept. That can't be true, or? (Noticed under ADUC MMC / Properties of a user object / "Member of")
While this works from the test scripts, it doesn't work from MMC. I'll need to look at this more closely.
As a status update, I've fixed some things in LDAP, around the 'extended dn' control. However MMC still refuses to set groups, so I need to keep working on it.
With support for 'ranged results' this now seems to work as expected! This has been a long, hard slog. Please test!