Cannot query/retrieve email address from the "Domain Users" group.


This article applies to:

  • Trustwave MailMarshal (SEG)
  • Trustwave ECM/MailMarshal Exchange

Question:

  • Cannot query/retrieve email addresses from the "Domain Users" group.

Information:

When using an LDAP (Lightweight Directory Access Protocol) connector you cannot retrieve email addresses from the "Domain Users" group. It also isn't possible to put the domain users group into another group and then query that group. This is a documented behavior of Microsoft Active Directory.

Resolution:

In most cases you can retrieve email addresses from all groups by creating a specific LDAP query. For more information, see Trustwave Knowledgebase article Q11877: Retrieving all email addresses from LDAP.

Note:

See the following Microsoft Knowledge Base article for more information about the Active Directory limitation:

  • KB275523: Setting Primary Group Excludes the User from the Group Membership in Active Directory

Last Modified 5/1/2020.
https://support.trustwave.com/kb/KnowledgebaseArticle11563.aspx