We recommend that you have a special LDAP system user for this. If your LDAP server does not support the member-of-overlay in LDAP filters, the The **%uid** placeholder is replaced with the login name entered by the user upon login. . occ config:app:set user_ldap enforce_home_folder_naming_rule --value=1 .