I am trying to move from memberof(overlay) to dynlist but can't get it to work.


I have static groups with uniqueMembers

 cn=somegroup,ou=group,dc=domain,dc=net

 uniqueMember: uid=user1,ou=people,dc=domain,dc=net
 uniqueMember: uid=user2,ou=people,dc=domain,dc=net
 ...


I want to have:

 memberOf: cn=somegroup,ou=group,dc=domain,dc=net

on all users who is member of any group.


In my test i use cn=config style and OpenLDAP 2.6.0 from Symas



In my old ldap server (slapd.conf based) i have

overlay             memberof
memberof-group-oc   groupOfUniqueNames
memberof-member-ad  uniqueMember
memberof-refint     true


I have tried this from man slapo-dynlist but I must have done something wrong or not understand how it is supposed to work.


This example extends the dynamic memberOf feature to add the memberOf attribute to all the members of both static  and
dynamic groups:

 include /path/to/dyngroup.schema
 # ...

 database <database>
 # ...

 overlay dynlist
 dynlist-attrset groupOfURLs memberURL member+memberOf@groupOfNames

This dynamic memberOf feature can fully replace the functionality of the slapo-memberof(5) overlay.