Trying to import machines into a kace label based on computer group membership
Started looking into the Power Management options within Kace, basically we have created a number of AD groups with subsequent Kace labels to match.
When runing through the LDAP label I can connect, test label succeeds but it never imports the computer accounts. Looking at the ldap criteria I have the following
Search Base DN: dc=mydomain,dc=uk
Search filter: (&(cn=KBOX_COMPUTER_NAME)(memberOf=CN=PwrPlanA,OU=Power Policy,OU=KACECustomGroups,ou=kace,OU=Applications,OU=Groups,OU=Work,DC=mydomain,DC=uk))
If I run this query from ADUC omitting the 'KBOX_Computer_name' syntax it returns results. However from the Kace console, query completes with no matching entries found and as a result no machines are imported into the corresponding label.
For info, similar ldap query works beautifully for users based on sec group query but not on computers.
Community Chosen Answer
Looks to me like chucksteel is correct. I just finished working through this myself, and the only difference is that I used (&(objectclass=computer)(name=KBOX_COMPUTER_NAME)(memberof=.....)) for my search filter. There is really no need for the "objectclass" portion in my case, but it works with or without it, so I left it in.
One more thing to keep in mind is that you will not see the Labels filling up immediately. They will be populated as the affected machines perform their inventory operations.
The only other thing I see is that one of the "Power Policy" OU has a space in it. I don't think that will throw it off, but perhaps the string needs to be in quotes? What happens when you use the KACE LDAP Browser? Can you browse all the way to the PwrPlanA group?