ok so here is my problem. I have 3 different domains that include about 30,000 users. on occasion in each domain I might have users with the same login. just in a different domain.
example: jdoe
reality:
domain1\jdoe
domain2\jdoe
The problem is DLP is confusing the two and mixing up managers and user names. So the manager is getting an email they should not get or the manager is getting the email but the persons name is different. In my lookup script that was setup prior to me it looked like this with custom attributes.
attr.TempEmployee=:(|(mail=$sender-email$)(sAMAccountName=$file-owner$)(sAMAccountName=$UserName$)):distinguishedName
attr.TempManager=:(|(mail=$sender-email$)(sAMAccountName=$file-owner$)(sAMAccountName=$UserName$)):manager
attr.Manager\ Name=:(distinguishedName=$TempManager$):name
attr.Employee\ Dept=:(distinguishedName=$TempEmployee$):department
attr.Manager\ Email=:(distinguishedName=$TempManager$):mail
attr.Employee\ Email=:(distinguishedName=$TempEmployee$):mail
attr.Employee\ Office=:(distinguishedName=$TempEmployee$):physicalDeliveryOfficeName
attr.Manager\ Title=:(distinguishedName=$TempManager$):title
attr.Employee\ Name=:(distinguishedName=$TempEmployee$):name
attr.Employee\ Title=:(distinguishedName=$TempEmployee$):title
attr.Manager\ Phone=:(distinguishedName=$TempManager$):telephoneNumber
attr.Employee\ Phone=:(distinguishedName=$TempEmployee$):telephoneNumber
attr.Employee\ Phone=:(distinguishedName=$TempEmployee$):telephoneNumber
I then tried to add the domain in and it completely breaks it. Like this...
attr.TempEmployee=DC=charlie,DC=kaplan,DC=com:(|(mail=$sender-email$)(sAMAccountName=$file-owner$)(sAMAccountName=$UserName$)):distinguishedName
attr.TempManager=DC=charlie,DC=kaplan,DC=com:(|(mail=$sender-email$)(sAMAccountName=$file-owner$)(sAMAccountName=$UserName$)):manager
attr.Manager\ Name=DC=charlie,DC=kaplan,DC=com:(distinguishedName=$TempManager$):name
attr.Employee\ Dept=DC=charlie,DC=kaplan,DC=com:(distinguishedName=$TempEmployee$):department
attr.Manager\ Email=DC=charlie,DC=kaplan,DC=com:(distinguishedName=$TempManager$):mail
attr.Employee\ Email=DC=charlie,DC=kaplan,DC=com:(distinguishedName=$TempEmployee$):mail
attr.Employee\ Office=DC=charlie,DC=kaplan,DC=com:(distinguishedName=$TempEmployee$):physicalDeliveryOfficeName
attr.Manager\ Title=DC=charlie,DC=kaplan,DC=com:(distinguishedName=$TempManager$):title
attr.Employee\ Name=DC=charlie,DC=kaplan,DC=com:(distinguishedName=$TempEmployee$):name
attr.Employee\ Title=DC=charlie,DC=kaplan,DC=com:(distinguishedName=$TempEmployee$):title
attr.Manager\ Phone=DC=charlie,DC=kaplan,DC=com:(distinguishedName=$TempManager$):telephoneNumber
attr.Employee\ Phone=DC=charlie,DC=kaplan,DC=com:(distinguishedName=$TempEmployee$):telephoneNumber
attr.Employee\ Phone=DC=charlie,DC=kaplan,DC=com:(distinguishedName=$TempEmployee$):telephoneNumber
I am not sure why it is breaking and I cannot figure out why this refuses to work. Can someone take a look at this and help me in the right direction?