8

Does the LDAP protocol specify a maximum length that a DN can take?

I've looked through https://www.rfc-editor.org/rfc/rfc4514 but I can't find any restrictions that it imposes.

Community
  • 1
  • 1
tomdee
  • 2,319
  • 5
  • 25
  • 39

3 Answers3

5

Most implementations of LDAP DN's usually hit 256 characters, which I think comes from X.500 still. After all X.500 defines the DAP, and LDAP is the Lightweight DAP protocol.

geoffc
  • 4,030
  • 7
  • 44
  • 51
3

No, it doesn't seem to be specified explicitly anywhere - and the Active Directory implementation also doesn't impose a max length on the DN syntax (2.5.5.1).

Marc

marc_s
  • 732,580
  • 175
  • 1,330
  • 1,459
1

According to that reply to a similar question, ActiveDirectory limits the DN length to 255 characters.

Community
  • 1
  • 1
Anthony O.
  • 22,041
  • 18
  • 107
  • 163