Jump to content


From RaySoft

ldapsearch opens a connection to an LDAP server, binds, and performs a search using specified parameters. The filter should conform to the string representation for search filters as defined in RFC 2254. If not provided, the default filter, (objectClass=*), is used.[1]

If ldapsearch finds one or more entries, the attributes specified by attributes are returned. If * is listed, all user attributes are returned. If + is listed, all operational attributes are returned. If no attributes are listed, all user attributes are returned. If only 1.1 is listed, no attributes will be returned.[1]



ldapsearch [PARAMETER ...] FILTER [ATTRIBUTE ...]


Use SEARCHBASE as the starting point for the search instead of the default.
Chase referrals.
Set the LDAP debugging LEVEL to debuglevel.
Use the Distinguished Name BASEDN to bind to the LDAP directory.
Specify an alternate host LDAPHOST on which the LDAP server is running. Deprecated in favor of -H.
Search results are display in LDAP Data Interchange Format (LDIF). A single -L restricts the output to LDIFv1. A second -L disables comments. A third -L disables printing of the LDIF version. The default is to use an extended version of LDIF.
Enable SASL Quiet mode. Never prompt.
Sort the entries returned based on ATTRIBUTE. The default is not to sort entries returned. If attribute is a zero-length string (""), the entries are sorted by the components of their 'Distinguished Name'.
Prompt for simple authentication. This is used instead of specifying the password on the command line.
Use simple authentication instead of SASL.
Issue StartTLS (Transport Layer Security) extended operation. If you use -ZZ, the command will require the operation to be successful.


ldapsearch -x -D 'cn=admin,dc=raysoft,dc=loc' -W
ldapsearch -x -D 'cn=admin,dc=raysoft,dc=loc' -W 'ou:dn:=users'

Active Directory

ldapsearch -h 'neon.raysoft.loc' -D -x 'alex@raysoft.loc' \
  -W -b 'DC=raysoft,DC=loc'
ldapsearch -Q -LLL -h 'neon.raysoft.loc' -D -x 'alex@raysoft.loc' \
  -W -b 'DC=raysoft,DC=loc' \


  1. 1.0 1.1 man 1 'ldapsearch'