Gateway

How LDAP Group Extraction Works from the Group Object Indirectly

LDAP servers that evaluate group memberships from group objects indirectly are not compatible with Citrix Gateway authorization.

Some LDAP servers, such as Lotus Domino, enable group objects only to contain information about users. These LDAP servers do not enable the user object to contain information about groups and thus is not compatible with Citrix Gateway group extraction. For this LDAP server type, group membership searches are performed by locating the user in the member list of groups.

How LDAP Group Extraction Works from the Group Object Indirectly