State of knowledge/version info

April 2024
ProCall Enterprise from 8.4.2
ProCall DataCenter from 2403.0

In addition to the previous option of restricting users, groups and computers via BaseDN , it is now also possible to restrict them by specifying an LDAP filter..

Both options can be used in combination.

Using LDAP filter

To use LDAP filters, open the UCServer Administration - Global Settings - General - User Database - Advanced.

Example screenshot: estos UCServer Administration - Global Settings - General - User Database - Advanced...

In the "LDAP BaseDNs" tab, click on the "Filter..." button next to the BaseDN details.

Example screenshot: estos UCServer Administration - Settings for LDAP BaseDNs for users, groups, computers - Filter... 

Here you can customize or extend the default filter for querying the objects from the Active Directory.

Example screenshot: estos UCServer Administration - Settings for LDAP BaseDNs - LDAP Filter

Set the filter according to LDAP filter syntax.

LDAP filter syntax

The use of the LDAP filter syntax can be found here, for example: https://learn.microsoft.com/en-us/windows/win32/adsi/search-filter-syntax.


When using the filter settings, make sure that the selected filters also match the respective object class (user, group, computer).
Manipulating the object classes, e.g. by entering wildcards * "(objectClass=*)", results in computers and groups also being incorrectly displayed in the user dialog.
This should be avoided!

The LDAP filter set only affects user management and contact search.
The phone number resolution on the server side is not affected by the set filter.