General
I'm new to Domino Directories. Where do I start? (ver 2)
"Lotus Domino Administrator 6 Help - Directory Services chapter"
http://www.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/b3266a3c17f9bb7085256b870069c0a9/a7be0edb2008082385256c1d0039335a?OpenDocument
- Planning directory services
- The Domino Directory
- The LDAP service
- LDAP schema
- ldapsearch utility
- Directory assistance
- Directory catalogs
- Extended ACLs
Where can I get additional general information about Domino Directories? (ver 2)
"Getting the Most from your Domino Directory" - IBM Redbook
Using Domino Directory for a general purpose or enterprise directory. Using Directory Catalog and Directory Assistance. Integrating with directories and applications.
http://www.redbooks.ibm.com/redbooks/SG245986.html
Where can I find information on the internal architecture of Domino directory technologies? (ver 2)
"Inside Notes: The Architecture of Notes and the Domino Server"
http://www-10.lotus.com/ldd/notesua.nsf/0b345eb9d127270b8525665d006bc355/ec73cbf1c6392ba385256856005bd224?OpenDocument
What are the new directory features in ND6? (ver 3)
"Broader Directory Support"
ftp://ftp.lotus.com/pub/lotusweb/product/domino/Domino6/NOT-2002-176.pdf
"LDD Today - Lotus Domino 6 Technical Overview"
http://www-10.lotus.com/ldd/today.nsf/f01245ebfc115aaf8525661a006b86b9/089a22f9f8a573af85256a1b00782950?OpenDocument
Where can I get directory upgrade information? (ver 2)
"Upgrading to Lotus Notes and Domino 6" - IBM Redbook
http://www.redbooks.ibm.com/abstracts/SG246889.html
Where can I get Lotus documentation? (ver 6)
"Lotus Documentation"
http://www-10.lotus.com/ldd/notesua.nsf
Where can I find Lotusphere and other conference presentations? (ver 7)
Lotus Sandbox - Conferences
http://www-10.lotus.com/ldd/sandbox.nsf/Conferences?OpenView
What LDAP RFCs are relevant to the Domino LDAP server? (ver 7)
| Title | Url |
| RFC 2782 (DNS SRV) | http://tools.ietf.org/html/rfc2782 |
| RFC 2798 (inetOrgPerson) | http://tools.ietf.org/html/rfc2798 |
| RFC 2849 (LDIF) | http://tools.ietf.org/html/rfc2849 |
| RFC 3045 (Vendor Information) | http://tools.ietf.org/html/rfc3045 |
| RFC 3673 (* operational attr) | http://tools.ietf.org/html/rfc3673 |
| RFC 4511 (LDAP protocol) | http://tools.ietf.org/html/rfc4511 |
| RFC 4512 (LDAP information model) | http://tools.ietf.org/html/rfc4512 |
| RFC 4513 (LDAP authentication & security) | http://tools.ietf.org/html/rfc4513 |
| RFC 4514 (LDAP DN) | http://tools.ietf.org/html/rfc4514 |
| RFC 4515 (LDAP search filters) | http://tools.ietf.org/html/rfc4515 |
| RFC 4516 (LDAP URL) | http://tools.ietf.org/html/rfc4516 |
| RFC 4517 (LDAP syntax & matching rules) | http://tools.ietf.org/html/rfc4517 |
| RFC 4518 (LDAP i18n string prep) | http://tools.ietf.org/html/rfc4518 |
| RFC 4519 (LDAP schema) | http://tools.ietf.org/html/rfc4519 |
Schema
How are Notes fields mapped to LDAP attributes? (ver 1)
"How an LDAP syntax relates to a field type"
There are some syntaxes in the default Domino LDAP schema that map to Domino field types. For example, the LDAP syntax Integer maps to the field type Number. To see whether a syntax maps to a Domino field, find the document for the syntax in the Schema database (SCHEMA.NSF), and compare the LDAP name field to the Notes mapping field.
"The Domino LDAP Schema"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/715915cede8d461685256c1d00393b5d?OpenDocument
How can my application determine the Domino schema? (ver 5)
"Searching the root DSE and schema entry"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/b3266a3c17f9bb7085256b870069c0a9/9f861bf627066bbc85256c1d00393cf9?OpenDocument
How is the LDAP mail attribute generated? (ver 1)
"How the Domino LDAP service forms a value from the mail attribute"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/c2b8e9676cb9d73c85256c1d00393778?OpenDocument
Is there a limit on the number of members in a Group? (ver 1)
Yes, the Members field is subject to Notes field size limits. See "Problems with Group Documents Related to the Field Size Limitation in Notes"
http://www-1.ibm.com/support/docview.wss?rs=475&context=SSKTWP&q=1087560&uid=swg21087560
How can I extend the Domino's LDAP Schema? (ver 3)
"Methods for extending the schema"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/7ff261f07e0f839f85256c1d00393c05?OpenDocument
Multiple Directories
Can I use a directory other than my Names.NSF? (ver 1)
"Directory Assistance"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/c4e66c24dedccb4785256c1d00393e05?OpenDocument
How can I easily configure Directory Assistance to access other LDAP servers? (ver 7)
Lotusphere 2007 - Take Control of Your IBM Lotus Domino Directory Infrastructure with Lotus Domino 8! (See "Directory Assistance LDAP Helpers")
http://www-10.lotus.com/ldd/sandbox.nsf/905e6e55aabb7a8685256cb50053f18c/cf7e9485d3b3df79852572a5006ffacd?OpenDocument
Can my Notes clients access other LDAP servers? (ver 2)
"Creating a Directory Assistance document for a remote LDAP directory"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/2da18c1eaeee726385256c1d003940ea?OpenDocument
"Setting up clients to use the LDAP server"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/0/50f62b71185c6cf885256c1d00393a2a?OpenDocument
Is there a way I can exclude certain secondary Domino Directories from being searched by the Domino LDAP server? (Scott) (ver 1)
Not only can you exclude the primary Domino Directory (e.g. names.nsf) from being searched, but you can exclude any secondary Domino Directory! See this
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/0e6458d4b962626785256c1d0039400f?OpenDocument
When addressing mail messages Notes clients don't get expected matches from a remote LDAP directory configured via Directory Assistance. I suspect this is because my LDAP server has a different schema than most, is there a way to configure the LDAP searches sent by a Domino home/directory server? (Scott) (ver 1)
See this.
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/1024e8da0bff79db85256c1d00394194?OpenDocument
I have configured Directory Assistance to allow Web user to authenticate using credentials from an LDAP directory, but the DNs in this directory don't match the names on ACLs of my Domino databases. What can I do? (Scott) (ver 1)
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/ecf6d931f6d83fc085256c1d0039420a?OpenDocument
How does Directory Assistance work? (Terri) (ver 2)
"Directory assistance and failover for a directory"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/73005ac0056fffe485256c1d00393f8a?OpenDocument
When querying the Domino LDAP server, when are LDAP referrals to foreign LDAP servers returned? (ver 3)
"Directory search order for LDAP searches" bullet 4
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/0/796330f7ac38fc2f85256c1d003934d5?OpenDocument
What is Central Directory? (ver 3)
"Using Central directory architecture in a Domino domain"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/705248727313547985256c1d00393598?OpenDocument
"Lotusphere 2002: ID214 Domino Directory Services - Practical Instruction on Two Key Options"
http://www-10.lotus.com/ldd/sandbox.nsf/LotusphereOrlando2002View/040425af8c29964a85256b7a004f0a11?OpenDocument
Directory Assistance Troubleshooting (ver 1)
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/8c4bb2aa870be0b285256c1d0039d98e?OpenDocument
- Internet user authentication using a secondary Domino Directory or Extended Directory Catalog fails.
- Internet user authentication using an LDAP directory fails.
- Database authorization using groups in a secondary directory fails.
- Searches in a secondary Domino Directory configured in directory assistance fail.
- "Directory assistance could not access Public Address Book on Server x, error is Server Not Responding".
Directory Catalog Troubleshooting (ver 1)
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/86bd3f503fbdbe1e85256c1d0039d9df?OpenDocument
- Names are missing from the directory catalog.
- Users can't use type-ahead addressing to look up names in a condensed Directory Catalog.
- Domino isn't searching a directory catalog on a server.
- Internet user name-and-password authentication using a condensed Directory Catalog fails.
- LDAP searches of a condensed Directory Catalog aren't working.
- A directory catalog is not full-text indexed or the full-text index is corrupted.
- The User Setup Profile doesn't push Mobile Directory Catalogs to users.
- The Router is finding the same name in multiple directories even though "Exhaustive lookup" is disabled..
- Users can't do full-text searches of a condensed Directory Catalog.
When should I use the LDAP Distinguished Name syntax vs. the Notes DN syntax (Scott) (corrected from ver 4)
When dealing with multi-directory scenarios that include entries which reside in both Domino and LDAP directories it's important to understand what contexts to use a Notes DN and what contexts to use an LDAP DN (defined in RFC 2253). The general rule is use a Notes DN in a Domino database field (e.g. Fullname field or any other names field) or ACL, and use an LDAP DN in an LDAP directory attribute.
Also, in these types of scenarios name conversions between Notes and LDAP DN syntaxes may be necessary. For instance, when entering the DN of an entry that resides in an LDAP directory into the ACL of a Domino database (or secondary value of Fullname) you need to convert it to it's Notes DN equivalent. Or, when using the Notes DN mapping feature in Directory Assistance you should convert the Notes DN to its LDAP equivalent and use that value in the specified attribute of the LDAP directory. The table below is a helpful reference for how to do these conversions.
Real Character in name component | LDAP DN representation | Notes DN Representation |
, <comma> | \, <backslash + comma> | , <comma> |
+ <plus> | \+ <backslash + plus> | "+" <doublequote + plus +doublequote> |
\ <backslash> | \\ <backslash + backslash> | "\" <doublequote + backslash + doublequote> |
> <greaterthan> | \> <backslash + backslash> | > <greaterthan> |
< <lessthan> | \< <backslash + lessthan> | < <lessthan> |
; <semicolon> | \; <backslash + semicolon> | ; <semicolon> |
" <doublequote> | \" <backslash + doublequote> | """ <doublequote + doublequote + doublequote> |
= <equals> | \= <backslash + equals> | "=" <doublequote + equals + doublequote> |
# <numbersign> | \# <backslah + numbersign> | # <numbersign> |
@ <atsign> | @ <atsign> | "@" <doublequote + atsign + doublequote> |
/ <slash> | / <slash> | "/" <doublequote + slash + doublequote> |
Searches
What is the syntax for an LDAP search? (ver 7)
RFC 4514 - LDAP String Representation of Search Filters
http://tools.ietf.org/html/rfc4515
What is the syntax of an LDAP URL? (ver 7)
RFC 4515 - LDAP Uniform Resource Locator
http://tools.ietf.org/html/rfc4515
Why can I only retrieve some of the attributes for a found entry? (ver 1)
You're probably performing an anonymous search, which only returns some of the fields. Either perform an authenticated bind/search or change the fields that anonymous users can access. See the "Anonymous LDAP users can't search certain fields" section of "LDAP Service - Troubleshooting"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/35e2e32969a22e5985256c1d0039da76?OpenDocument
My ldapsearch for a direct group member does not return all members (ver 1)
There are two probable reasons for this:
- The Group document's Member list does not list the "distinguished name" of the member (e.g., "Ken Lin/Westford/IBM"), but instead lists some other non-fully qualified name (e.g., "Ken Lin"). Both the LDAP groupOfNames specification and Notes Internet Authentication require distinguished names.
Note When Domino authenticates an Internet user, it uses the "distinguished name," which is the first name that appears in the Full Name field of a Person document. This name should be used in entries for groups, delegated server administration, database ACLs, and file protection documents.
a. Next, the server compiles a "grouplist," which contains Andrew's distinguished name, plus any wildcard entries and any groups of which he is a member on that server.
b. The server then checks the database ACL to determine if Andrew's name is listed explicitly on the ACL, or if any of the grouplist entries for his name appear in the ACL.
c. If Andrew's distinguished name, or the name of any group of which is a member, matches an entry in the ACL, then Andrew gets access to the database using the access level specified for that entry in the ACL. Otherwise, he is denied access.
- The Group document is a Mail Only group:
LDAPGroupMembership
Syntax: LDAPGroupMembership=value
Description: The LDAP service always searches Domino groups specified as "Multi-purpose," "Access Control List only," "Servers only," or "Deny List only" groups because it can do so quickly. However because searches of Domino Groups specified as "Mail only" groups or of groups that do not have a value for the GroupType attribute can be slow, by default the LDAP service does not always search these types of groups. The LDAP service does not search these types of groups if a search query meets all of the following criteria, indicating a query that is typically used for authentication:
- A search query uses the equality filter objectclass=value, where value is one of these object classes: groupOfNames, groupOfUniqueNames, dominoGroup, or group.
- A search query uses an equality filter with one of these attributes: member, uniqueMember, or members.
- The two filters above are concatenated using the AND operator.
- (&(objectclass=dominoGroup)(member=cn=jack brown,o=acme))
- (|(&(objectclass=groupOfUniqueNames)(uniqueMember=cn=jack brown,o=acme))(&(objectclass=groupOfNames)(member=cn=jack brown,o=acme)))
- (&(objectclass=dominoGroup)(member=*br*))
- (member=cn=jack brown,o=acme)
- (|(&(objectclass=dominoGroup)(member=cn=jack brown,o=acme))(cn=*groupname*))
1 - Always search all groups that meet specified search criteria. If you choose this setting, full-text indexing the directory is recommended to improve the speed of searches of Domino "Mail only" groups and groups that do not use the GroupType attribute.
2 - Never search Domino "Mail only" groups or groups that do not use the GroupType attribute.
Note In Domino 5 the name of this setting is LDAP_MailOnlyGroupOption. The name has been changed in Domino 6 for clarity. However, you can use either setting name.
How do LDAP substring (wildcard) searches work? (ver 6)
See "minimum characters for wildcard search"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/855dc7fcfd5fec9a85256b870069c0ab/f4241c36300470b885256c1d003939a4?OpenDocument&Highlight=0,wildcard
Administration
Can I use LDAP to modify the Domino Directory? (ver 3)
Although it is possible to use LDAP Add, Delete, Modify, ModifyDN operations to modify the Domino directory, these operations do not perform all the provisioning otherwise performed by the Domino Server's Administration Process (AdminP). The LDAP operation will merely change the directory entry without performing the other associated directory and non-directory changes you may need.
How do I enable/disable write access for the Domino LDAP server? (Scott) (ver 1)
"Enabling or disabling LDAP write access to a directory served by the LDAP service"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/ea4ae7a8d2489f6185256c1d0039393d?OpenDocument
Why are my renamed entries reverting back to their old names? (ver 6)
"Renamed Users are Reverted Back to their Old Names After 21 days"
http://www-1.ibm.com/support/docview.wss?rs=463&uid=swg21139262
Where do I find out more about the Administration Process? (ver 3)
"Administration process requests"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/0/8bd9ab107d42f8e785256c1d0039edaf?OpenDocument
Security
Why can't I edit fields like Internet address, First name, and others in my Person document? (Terri) (ver 1)
These fields are PROTECTED (see its field properties) which means you need Editor access or above to modify its value. Most users in the directory might only have Author access, which prohibits them from editing protected fields.
Can I use groups from a secondary Domino Directory or LDAP Directory on the ACL of a database? (Scott) (ver 1)
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/b3266a3c17f9bb7085256b870069c0a9/4ac36077da47885285256c1d00393e92?OpenDocument
http://www-12.lotus.com/ldd/doc/domino_notes/6.5/help65_admin.nsf/89d3962efd85426f85256b870069c0aa/5f3dbc1f1f73bc8b85256d9b004b07f9?OpenDocument
I don't want to have to type those long ugly names in my "ACL group enabled" LDAP Directory in the ACL of my Domino databases, is there an easy way to select them? (Scott) (ver 1)
Yes, use an LDAP account record on your Notes client.
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/ecf6d931f6d83fc085256c1d0039420a?OpenDocument
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/b3266a3c17f9bb7085256b870069c0a9/50f62b71185c6cf885256c1d00393a2a?OpenDocument
Is there an easy way to do this for all my Notes clients? (Scott) (ver 1)
Yes, use setup or desktop policies to automatically create LDAP accounts.
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/b3266a3c17f9bb7085256b870069c0a9/50f62b71185c6cf885256c1d00393a2a?OpenDocument
How can I limit access to certain directory entries? (ver 3)
"Extended ACL"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/5cafa5815a6bee2d85256c1d0039476e?OpenDocument
"Lotusphere 2002: ID214 Domino Directory Services - Practical Instruction on Two Key Options"
http://www-10.lotus.com/ldd/sandbox.nsf/LotusphereOrlando2002View/040425af8c29964a85256b7a004f0a11?OpenDocument
"Upgrading to Lotus Notes and Domino 6 - Chapter 14 Extended ACL" (ver 6)
http://www.redbooks.ibm.com/redbooks/SG246889/ch14.htm
How can I change the LDAP filter used by Directory Assistance? (ver 1)
"Configuring search filters in a Directory Assistance document for a remote LDAP directory"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/1024e8da0bff79db85256c1d00394194?OpenDocument
Restricting users from sending mail to groups listed in the Domino Directory (ver 1)
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/2973585b7849042285256c1d003958d8?OpenDocument
How can I protect my Domino directory's Internet Password hashes? (ver 6)
"Technote #1244808: Configuring xACLs to protect Internet Password fields in the Domino Directory"
http://www-1.ibm.com/support/docview.wss?rs=0&uid=swg21244808
Anonymous LDAP searches stop working when XACLs are enabled (ver 1)
"Converting the default anonymous access settings to database ACL and extended ACL settings "
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/b39524fcb3338c3785256c1d003938f2?OpenDocument
I've got other XACL problems (ver 1)
See "Extended ACL Troubleshooting"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/2100e829a90a38ad85256c1d0039dad9?OpenDocument
- The access specified for subject is different than the subject's actual access.
- The Target box doesn't show documents.
- I can't change a subject's access to a target.
- Notes and Web users are getting unexpected results when accessing the directory
- "Extended access controls are enabled in this domain. You must modify the Domino Directory on a version 6 or later Domino server."
Why are some documents marked as Truncated? (ver 7)
See "Extended ACL access settings"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/3c43c163c33ca37985256c1d0039479b?OpenDocument
How do I debug Web authentication problems? (ver 1)
"WebAuth_Verbose_Trace"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/0/39ec37e05e88b37a85256c1d003a0feb?OpenDocument
Integration
How do I use single sign on? (ver 6)
"Single Sign-on in a Multi-directory World"
http://www-128.ibm.com/developerworks/lotus/library/sso1/
http://www-128.ibm.com/developerworks/lotus/library/sso2/
Using LDAP for Directory Integration - IBM Redbook (ver 3)
http://publib-b.boulder.ibm.com/abstracts/sg246163.html?Open
How can I integrate with Active Directory? (ver 3)
"Getting Started with Active Directory Integration" (ver 6)
http://www-10.lotus.com/ldd/sandbox.nsf/ByDate/8f938ac009f78fc2852571230062581c?OpenDocument
"Active Directory Synchronization with Lotus ADSync" RedPaper
http://publib-b.boulder.ibm.com/Redbooks.nsf/RedbookAbstracts/redp0605.html?Open
"Using Notes shared login to suppress password prompts" (ver 9)
https://publib.boulder.ibm.com/infocenter/domhelp/v8r0/index.jsp?topic=/com.ibm.help.domino.admin85.doc/H_NOTES_SINGLE_LOG_IN_STEPS.html
"Using Notes client single logon to synchronize Notes and OS passwords" (ver 9)
http://publib.boulder.ibm.com/infocenter/domhelp/v8r0/index.jsp?topic=/com.ibm.help.domino.admin85.doc/H_USING_NOTES_SINGLE_LOGON_OVER.html
Why is Outlook or Outlook Express having problems with Domino LDAP? (ver 3)
http://www-1.ibm.com/support/docview.wss?rs=203&q=1095828&uid=swg21095828&loc=en_US&cs=utf-8&lang=en+en
Lotus Domino 6.51 and Extended Products Integration Guide (ver 3)
http://publib-b.boulder.ibm.com/Redbooks.nsf/RedpieceAbstracts/sg246357.html
How can I use the Domino Directory with Lotus Workplace? (ver 3)
"Integrating IBM Lotus Workplace with Lotus Domino"
http://www-106.ibm.com/developerworks/lotus/library/lwp-nd/
How can I integrate Lotus Workplace and Notes Applications with Active Directory? (ver 3)
"Integrating Lotus Workplace and Domino LDAP using IBM Tivoli Directory Integrator"
http://www-106.ibm.com/developerworks/lotus/library/article/lwp-msad/
How can I integrate Domino Web Access with Domino's directory services? (ver 5)
"iNotes Web Access Deployment and Administration"
Chapter 3.7 Directory Assistance and Directory Catalog
http://www.redbooks.ibm.com/redbooks/pdfs/sg246518.pdf
"Name resolution and searching: Comparing Lotus Notes and Domino Web Access" (ver 6)
http://www-128.ibm.com/developerworks/lotus/library/notes-dwa/
How can I improve Websphere Portal performance with Domino LDAP (ver 6)
"Selecting 'Displayname' as searchable attribute in People Finder causes FT Search if using Domino LDAP Server"
http://www-1.ibm.com/support/docview.wss?rs=463&context=SSKTMJ&dc=DB520&uid=swg21197769
How can I improve Sametime performance with Domino LDAP (ver 6)
"Optimizing LDAP connections and queries on a Sametime server"
http://www-1.ibm.com/support/docview.wss?rs=203&uid=swg21200143
How can I setup Business Card photos using the Domino Directory (ver 8)
"How to setup Business Card photos using the Domino Directory"
Technote: http://www-01.ibm.com/support/docview.wss?rs=477&uid=swg21250874
How can I allow SameTime to use photos stored in person entries in a Domino LDAP server (ver 8)
"How to setup Business Card photos using the Domino LDAP"
Technote: http://www-01.ibm.com/support/docview.wss?rs=899&&uid=swg21244204
How can I integrate QuickPlace with Domino's directory services (ver 6)
"Setting up Domino to manage user directory lookups"
http://www-12.lotus.com/ldd/doc/qp/7.0/qp7admindev.nsf/b3266a3c17f9bb7085256b870069c0a9/1e551b52f85290338525705e00684060?OpenDocument
How can I connect Mozilla Thunderbird to the Domino LDAP Server? (ver 6)
http://www-10.lotus.com/ldd/nd6forum.nsf/DateAllWithExcerptweb/85aecdd1ebd4b10b8525720b004b7b87?OpenDocument
How can I integrate my anti-spam appliance with Domino LDAP? (ver 6)
Domino LDAP does not enumerate all possible valid email addresses. See these two features instead ...
"Verify that local domain recipients exist in the Domino Directory", in "Restricting users from receiving Internet mail"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/01868d8b7d713fac85256c1d00395d64?OpenDocument
"Restricting SMTP inbound routing" for more information on SMTP controls
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/95f48c89c466a00c85256c1d00395bc2?OpenDocument
Where can I learn more about Tivoli Directory Integrator (TDI)? (ver 6)
"Tivoli Directory Integrator"
http://www-306.ibm.com/software/tivoli/products/directory-integrator/
IBM Lotus Domino Integration Using Tivoli Directory Integrator - IBM Redpaper REDP-4629-00 (ver 9)
http://www.redbooks.ibm.com/redpieces/abstracts/REDP4629.html?Open&myns=swgtiv&mynp=OCSSCQGF&mync=R
Robust Data Synchronization with IBM Tivoli Directory Integrator - IBM Redbook (ver 7)
http://www.redbooks.ibm.com/abstracts/SG246164.html?Open
"IBM Tivoli Directory Integrator Users Group"
http://www.tdi-users.org
Google Sites (ver 9)
http://sites.google.com/site/dominointegration/
Troubleshooting
How can I easily test an LDAP search? (ver 1)
"ldapsearch Utility"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/f9cfdc5e6caabbef85256c1d00393d35?OpenDocument
LDAP Troubleshooting (ver 1)
"LDAP Service - Troubleshooting"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/f4b82fbb75e942a6852566ac0037f284/35e2e32969a22e5985256c1d0039da76?OpenDocument
- Name and password authentication fails for LDAP clients connecting to the LDAP service
- LDAP searches are slow
- Anonymous LDAP users can't search certain fields
- "LDAP Server: Initialization failure: The full text index needs to be rebuilt"
- LDAP searches don't return a cn attribute
- LDAP error "Insufficient Access" returned on an LDAP Add operation
- LDAP clients can't connect to the server over SSL when the server uses a self-signed Domino server certificate
- "LDAP Schema: Failed exporting" error
How can I tell what my LDAP server has been doing? (ver 4)
"LDAP activity logging"
http://www-12.lotus.com/ldd/doc/domino_notes/6.5.1/help65_admin.nsf/f4b82fbb75e942a6852566ac0037f284/3cdc2386612310fd85256dff004b4e8b?OpenDocument
show stat ldap
How can I determine potential problems with entries in my Domino Directory? (ver 7)
Lotusphere 2007 - Take Control of Your IBM Lotus Domino Directory Infrastructure with Lotus Domino 8! (See "DirLint")
http://www-10.lotus.com/ldd/sandbox.nsf/905e6e55aabb7a8685256cb50053f18c/cf7e9485d3b3df79852572a5006ffacd?OpenDocument
How can I determine which LDAP searches are slow? (ver 7)
Lotusphere 2007 - Take Control of Your IBM Lotus Domino Directory Infrastructure with Lotus Domino 8! (See "Domino LDAP Search Performance")
http://www-10.lotus.com/ldd/sandbox.nsf/905e6e55aabb7a8685256cb50053f18c/cf7e9485d3b3df79852572a5006ffacd?OpenDocument
Miscellaneous
What TELL commands does LDAP support? (ver 2)
"LDAP Tell commands"
http://www-12.lotus.com/ldd/doc/domino_notes/Rnext/help6_admin.nsf/0/bc6a8c87f734532e85256c1d003a34f0?OpenDocument
What Notes.INI variables does LDAP support? (ver 3)
"Ask Professor INI - LDAP related Notes.ini variables"
http://www-10.lotus.com/ldd/today.nsf/lookup/LDAP_INI
What kind of directory performance improvements were made to ND6 directory access? (ver 2)
"LDD Today - Performance Perspectives - Domino 6 Directory performance improvements"
http://www-128.ibm.com/developerworks/lotus/library/ls-D6_Dir/index.html
http://www-10.lotus.com/ldd/today.nsf/0/ff63121f2969ebbd85256cd70047b786?OpenDocument
How do I access the Domino Directory via LotusScript? (ver 6)
See @NameLookup in "Programming Guide, Volume 1: Overview and Formula Language"
http://www-12.lotus.com/ldd/doc/uafiles.nsf/docs/DESIGNER70/$File/prog1.pdf
How do I access the Domino Directory via Java? (ver 2)
"Collaborative Cuisine's 1 Hour JNDI Cookbook"
http://www-10.lotus.com/ldd/sandbox.nsf/0/c46c671f7611110a85256df60078e910?OpenDocument
"Building Directory Friendly Applications"
http://www-10.lotus.com/ldd/sandbox.nsf/0/e0421e3c5e639b8d85256df60070ab78?OpenDocument
"Java Naming and Directory Interface"
http://java.sun.com/products/jndi/
"Building real-time access to an LDAP directory server from your Notes application"
http://www-10.lotus.com/ldd/today.nsf/0/be880b17f969507e85256da200542583?OpenDocument
"Introduction to LDAP: Part 1: Installation and simple Java LDAP Programming" (ver 6)
http://www-128.ibm.com/developerworks/tivoli/library/t-ldap01/
How do I access the Domino Directory via C/C++ (ver 3)
"Building Directory Friendly Applications"
http://www-10.lotus.com/ldd/sandbox.nsf/0/e0421e3c5e639b8d85256df60070ab78?OpenDocument
"Lotus C API Toolkit" see NAMELookup and LDAP categories
http://www-128.ibm.com/developerworks/lotus/downloads/toolkits.html
http://www-10.lotus.com/ldd/notesua.nsf/6cbb500587e5dd44852566c2004e94ec/1fe0d8ba4f32141a852569810053f0b9?OpenDocument
Domino Directory (NAMELookup) - http://www-12.lotus.com/ldd/doc/tools/c/7.0/api70ref.nsf/f961929dc6dc14dc852561bf0067d1c4?OpenView&Start=1&Count=30&Expand=27#27
LDAP - http://www-12.lotus.com/ldd/doc/tools/c/7.0/api70ref.nsf/f961929dc6dc14dc852561bf0067d1c4?OpenView&Start=30&Count=30&Expand=54#54

Lotus Notes/Domino 6/7/8 Directory ... (Ken Lin 3.Mar.04)
. . 
