Does anyone know if it is possible for the AD driver to set the LDAP_SERVER_PERMISSIVE_MODIFY_OID control? I quite often run
into problems where commands fail because values already exist or doesn't when the command tries to remove them. Solution so far
is complex policies in otp the validates a modify by querying AD and change the modify if necessary.
As far as I understand the LDAP_SERVER_PERMISSIVE_MODIFY_OID control solves this at LDAP level. It would behave like the eDir
driver (doesn't care if you try to add a value that is already there or try to remove value that doesn't exist).

