# ldapmodify -x -h Server -W -D "Domain\User" -f update.ldif --- update.ldif dn: CN=Group,OU=Location,DC=Domain,DC=Local changetype: modify replace: managedBy managedBy: CN=User,CN=Users,DC=Domain,DC=Local ---- # ldapsearch -LLL -x -h Server -p 3268 -W -b "DC=Domain,DC=Local" -D "Domain\User" "(&(CN=Group)(ntSecurityDescriptor=*))" ntSecurityDescriptor dn: CN=Group,OU=Location,DC=Domain,DC=Local nTSecurityDescriptor:: EaKFAKoAMEDAAAAAAAEALQAAAUAOAAAAAUAOAAAAAUAOAAAAAUAOADA AEALQQEaKFDdARooU2AwAA+ANnwaV6lr/mFAKoAMEniAQEDAAAAAAEAAAAAB1o4ACAAAAADAAAAvz ...