You are viewing limited content. For full access, please sign in.

Question

Question

27 character limit for AD accounts in LFDS 10.4.2

asked on August 16, 2019

LFDS 10.4.2 I seem to be hitting a limit of 27 characters with my AD user accounts.  Anything longer than 27 characters in AD gets truncated.  In my case "state\pamela.truelovewalker" was cut to "state\pamela.truelovewalke" which caused forms processes to fail since I was using the full account name in my forms.

Can this be increased?

0 0

Replies

replied on August 16, 2019

Hi Chuck,

Active Directory sAMAccountName values must be 20 characters or less for compatibility reasons (the domain and backslash are not included in this limit). Have you bypassed this limit in your AD?

0 0
replied on August 20, 2019

Microsoft documentation on the matter:

https://docs.microsoft.com/en-us/windows/win32/adschema/a-samaccountname

And a discussion:

https://social.technet.microsoft.com/Forums/en-US/3c5816ef-ff05-4a5c-b64d-44d45164253c/is-it-any-possible-way-to-increase-ad-user-name-limit-20-to-40?forum=winserverDS

The actual attribute schema properties allow up to 256 characters - AD still enforces the 20 character limit though.

UPNs allow up to 1024 characters. 

1 0
You are not allowed to follow up in this post.

Sign in to reply to this post.