ckd
@ckd: you did not misunderstand. Indeed, objectGUID
is correct, but for us only with users. groups are especially tricky, the main identifier is the group address
attribute, not the unique identifier which works well for users. I could bore you with technical details and the various LDAPv3 specs that differ. While possible with AD it also has some drawbacks.
Sorry, not a bug, but an architectural limitation for extended Multi-LDAP support with also other backends than AD.