Hi Folks,
Just a simple heads-up. If you have multiple domains, make sure to use port 3268. Reason is this is the Global Catalog that contains ALL information of the forest in read-only.
You need to know which Domain Controller is your Global Catalog. Ask your AD administrator.
This should solve some issues like:
- queries taking very, very long (had 20+ seconds, now less than 1 second)
- don't get all group memberships (remember, you need universal groups)
- Wilcards not working properly -- Was seen by @Serge
My example:
See you.