{
    "api_version": "1",
    "kind": "dse_post",
    "self": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/",
    "item": {
        "id": "https://update.dsesecurity.com/updates/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/",
        "slug": "dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume",
        "url": "https://update.dsesecurity.com/updates/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/",
        "alternate_urls": {
            "markdown": "https://update.dsesecurity.com/updates/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume.md",
            "json": "https://update.dsesecurity.com/api/v1/posts/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/"
        },
        "title": "Decide NetApp LDAP volume behavior before creating or cloning the volume",
        "summary": "Can an Azure NetApp Files volume's LDAP option be changed after creation or added through a snapshot clone?",
        "format": {
            "slug": "guide",
            "name": "Guide"
        },
        "priority": {
            "slug": "info",
            "name": "Information"
        },
        "featured": false,
        "image": {
            "theme": "network-infrastructure",
            "label": "Networks & infrastructure",
            "alt": "Resilient network core with engineered blue and gold data paths.",
            "card_url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-card.webp?v=1.8.20",
            "hero_url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-hero.webp?v=1.8.20",
            "social_url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-social-v2.jpg?v=1.8.20",
            "width": 2400,
            "height": 1350
        },
        "topics": [
            {
                "slug": "business-continuity",
                "name": "Business Continuity",
                "url": "https://update.dsesecurity.com/topic/business-continuity/"
            },
            {
                "slug": "networks-infrastructure",
                "name": "Networks & Infrastructure",
                "url": "https://update.dsesecurity.com/topic/networks-infrastructure/"
            }
        ],
        "author": {
            "name": "DSE Security Editorial Team",
            "url": "https://update.dsesecurity.com/#editorial-team",
            "type": "Organization"
        },
        "publisher": {
            "name": "Detection Systems & Engineering",
            "url": "https://dsesecurity.com/"
        },
        "published_at": "2026-09-10T00:23:13+00:00",
        "modified_at": "2026-09-10T02:11:18+00:00",
        "reviewed_on": "2026-09-09",
        "reading_minutes": 2,
        "word_count": 238,
        "potentially_affected": "Use this check for the volume-level LDAP setting and a proposed snapshot-based volume creation. Do not confuse that flag with the wider Active Directory connection or ordinary SMB authentication requirements.",
        "dse_recommendation": "Record the intended LDAP behavior in the volume design before provisioning.",
        "primary_source": {
            "name": "Troubleshoot volume errors for Azure NetApp Files | Microsoft Learn",
            "url": "https://learn.microsoft.com/en-us/azure/azure-netapp-files/troubleshoot-volumes",
            "published_on": null,
            "authority": "Microsoft Learn"
        },
        "publishing_principles": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
        "usage_info": "https://update.dsesecurity.com/usage/",
        "copyright_notice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
        "content_html": "<h2>Source facts</h2>\n<p>Azure NetApp Files does not allow changing a volume&#8217;s LDAP option after creation. Microsoft also excludes creating an LDAP-enabled volume from a snapshot of an LDAP-disabled volume. Its documented alternative for that snapshot is another LDAP-disabled volume. An SMB volume cannot be created with the LDAP flag enabled; that option applies to NFS volumes. <a href=\"https://learn.microsoft.com/en-us/azure/azure-netapp-files/troubleshoot-volumes\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn</a>.</p>\n<h2>Applicability</h2>\n<p>Use this check for the volume-level LDAP setting and a proposed snapshot-based volume creation. Do not confuse that flag with the wider Active Directory connection or ordinary SMB authentication requirements.</p>\n<h2>DSE recommendation</h2>\n<p>Record the intended LDAP behavior in the volume design before provisioning. Have the storage and identity owners compare the source volume&#8217;s actual setting with the intended destination. Treat a mismatch as a design question, not a transient deployment error to retry indefinitely. If the required configuration differs, stop the clone plan and obtain a supported migration approach before changing data placement. Preserve the original volume and its recovery information while evaluating alternatives.</p>\n<h2>Verification</h2>\n<p>In an approved test, inspect the source volume&#8217;s LDAP setting and identify the exact snapshot selected. Compare the proposed destination parameters with those constraints before submitting creation. After an accepted creation, check the resulting volume and authorized NFS access against the approved design. Keep any failed request and its parameter set so later reviewers can distinguish an incompatible configuration from a connectivity fault.</p>\n<h2>Official references</h2>\n<p><a href=\"https://learn.microsoft.com/en-us/azure/azure-netapp-files/troubleshoot-volumes\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn: Troubleshoot volume errors for Azure NetApp Files</a>.</p>",
        "content_text": "Source facts\nAzure NetApp Files does not allow changing a volume’s LDAP option after creation. Microsoft also excludes creating an LDAP-enabled volume from a snapshot of an LDAP-disabled volume. Its documented alternative for that snapshot is another LDAP-disabled volume. An SMB volume cannot be created with the LDAP flag enabled; that option applies to NFS volumes. Microsoft Learn.\nApplicability\nUse this check for the volume-level LDAP setting and a proposed snapshot-based volume creation. Do not confuse that flag with the wider Active Directory connection or ordinary SMB authentication requirements.\nDSE recommendation\nRecord the intended LDAP behavior in the volume design before provisioning. Have the storage and identity owners compare the source volume’s actual setting with the intended destination. Treat a mismatch as a design question, not a transient deployment error to retry indefinitely. If the required configuration differs, stop the clone plan and obtain a supported migration approach before changing data placement. Preserve the original volume and its recovery information while evaluating alternatives.\nVerification\nIn an approved test, inspect the source volume’s LDAP setting and identify the exact snapshot selected. Compare the proposed destination parameters with those constraints before submitting creation. After an accepted creation, check the resulting volume and authorized NFS access against the approved design. Keep any failed request and its parameter set so later reviewers can distinguish an incompatible configuration from a connectivity fault.\nOfficial references\nMicrosoft Learn: Troubleshoot volume errors for Azure NetApp Files.",
        "content_markdown": "## Source facts\n\nAzure NetApp Files does not allow changing a volume’s LDAP option after creation. Microsoft also excludes creating an LDAP-enabled volume from a snapshot of an LDAP-disabled volume. Its documented alternative for that snapshot is another LDAP-disabled volume. An SMB volume cannot be created with the LDAP flag enabled; that option applies to NFS volumes. [Microsoft Learn](https://learn.microsoft.com/en-us/azure/azure-netapp-files/troubleshoot-volumes).\n\n## Applicability\n\nUse this check for the volume-level LDAP setting and a proposed snapshot-based volume creation. Do not confuse that flag with the wider Active Directory connection or ordinary SMB authentication requirements.\n\n## DSE recommendation\n\nRecord the intended LDAP behavior in the volume design before provisioning. Have the storage and identity owners compare the source volume’s actual setting with the intended destination. Treat a mismatch as a design question, not a transient deployment error to retry indefinitely. If the required configuration differs, stop the clone plan and obtain a supported migration approach before changing data placement. Preserve the original volume and its recovery information while evaluating alternatives.\n\n## Verification\n\nIn an approved test, inspect the source volume’s LDAP setting and identify the exact snapshot selected. Compare the proposed destination parameters with those constraints before submitting creation. After an accepted creation, check the resulting volume and authorized NFS access against the approved design. Keep any failed request and its parameter set so later reviewers can distinguish an incompatible configuration from a connectivity fault.\n\n## Official references\n\n[Microsoft Learn: Troubleshoot volume errors for Azure NetApp Files](https://learn.microsoft.com/en-us/azure/azure-netapp-files/troubleshoot-volumes)."
    },
    "json_ld": {
        "@context": "https://schema.org",
        "@graph": [
            {
                "@type": "Organization",
                "@id": "https://dsesecurity.com/#organization",
                "name": "Detection Systems & Engineering",
                "alternateName": "DSE Security",
                "url": "https://dsesecurity.com/",
                "logo": {
                    "@type": "ImageObject",
                    "url": "https://update.dsesecurity.com/assets/dse-logo-20260812.png?v=1.8.20"
                }
            },
            {
                "@type": "Organization",
                "@id": "https://update.dsesecurity.com/#editorial-team",
                "name": "DSE Security Editorial Team",
                "url": "https://update.dsesecurity.com/",
                "parentOrganization": {
                    "@id": "https://dsesecurity.com/#organization"
                }
            },
            {
                "@type": "WebSite",
                "@id": "https://update.dsesecurity.com/#website",
                "name": "DSE Updates",
                "alternateName": "DSE Security Knowledge Hub",
                "url": "https://update.dsesecurity.com/",
                "inLanguage": "en-US",
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "potentialAction": {
                    "@type": "SearchAction",
                    "target": {
                        "@type": "EntryPoint",
                        "urlTemplate": "https://update.dsesecurity.com/?q={search_term_string}"
                    },
                    "query-input": "required name=search_term_string"
                }
            },
            {
                "@type": "WebPage",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/",
                "isPartOf": {
                    "@id": "https://update.dsesecurity.com/#website"
                },
                "lastReviewed": "2026-09-09"
            },
            {
                "@type": "BreadcrumbList",
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/#breadcrumbs",
                "itemListElement": [
                    {
                        "@type": "ListItem",
                        "position": 1,
                        "name": "DSE Updates",
                        "item": "https://update.dsesecurity.com/"
                    },
                    {
                        "@type": "ListItem",
                        "position": 2,
                        "name": "Decide NetApp LDAP volume behavior before creating or cloning the volume",
                        "item": "https://update.dsesecurity.com/updates/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/"
                    }
                ]
            },
            {
                "@type": [
                    "Article",
                    "TechArticle"
                ],
                "@id": "https://update.dsesecurity.com/updates/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/#article",
                "identifier": "https://update.dsesecurity.com/updates/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/",
                "url": "https://update.dsesecurity.com/updates/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/",
                "headline": "Decide NetApp LDAP volume behavior before creating or cloning the volume",
                "description": "Can an Azure NetApp Files volume's LDAP option be changed after creation or added through a snapshot clone?",
                "abstract": "Can an Azure NetApp Files volume's LDAP option be changed after creation or added through a snapshot clone?",
                "articleBody": "Source facts\nAzure NetApp Files does not allow changing a volume’s LDAP option after creation. Microsoft also excludes creating an LDAP-enabled volume from a snapshot of an LDAP-disabled volume. Its documented alternative for that snapshot is another LDAP-disabled volume. An SMB volume cannot be created with the LDAP flag enabled; that option applies to NFS volumes. Microsoft Learn.\nApplicability\nUse this check for the volume-level LDAP setting and a proposed snapshot-based volume creation. Do not confuse that flag with the wider Active Directory connection or ordinary SMB authentication requirements.\nDSE recommendation\nRecord the intended LDAP behavior in the volume design before provisioning. Have the storage and identity owners compare the source volume’s actual setting with the intended destination. Treat a mismatch as a design question, not a transient deployment error to retry indefinitely. If the required configuration differs, stop the clone plan and obtain a supported migration approach before changing data placement. Preserve the original volume and its recovery information while evaluating alternatives.\nVerification\nIn an approved test, inspect the source volume’s LDAP setting and identify the exact snapshot selected. Compare the proposed destination parameters with those constraints before submitting creation. After an accepted creation, check the resulting volume and authorized NFS access against the approved design. Keep any failed request and its parameter set so later reviewers can distinguish an incompatible configuration from a connectivity fault.\nOfficial references\nMicrosoft Learn: Troubleshoot volume errors for Azure NetApp Files.",
                "datePublished": "2026-09-10T00:23:13+00:00",
                "dateModified": "2026-09-10T02:11:18+00:00",
                "mainEntityOfPage": {
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/"
                },
                "inLanguage": "en-US",
                "isAccessibleForFree": true,
                "author": {
                    "@type": "Organization",
                    "name": "DSE Security Editorial Team",
                    "url": "https://update.dsesecurity.com/#editorial-team"
                },
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "image": {
                    "@type": "ImageObject",
                    "@id": "https://update.dsesecurity.com/updates/dse-20260909-523-decide-netapp-ldap-volume-behavior-before-creating-or-cloning-the-volume/#primaryimage",
                    "url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-social-v2.jpg?v=1.8.20",
                    "contentUrl": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-social-v2.jpg?v=1.8.20",
                    "width": 1200,
                    "height": 630,
                    "caption": "Decide NetApp LDAP volume behavior before creating or cloning the volume"
                },
                "articleSection": [
                    "Business Continuity",
                    "Networks & Infrastructure"
                ],
                "keywords": [
                    "Business Continuity",
                    "Networks & Infrastructure",
                    "Guide",
                    "Information priority"
                ],
                "genre": "Guide",
                "about": [
                    {
                        "@type": "Thing",
                        "name": "Business Continuity",
                        "url": "https://update.dsesecurity.com/topic/business-continuity/"
                    },
                    {
                        "@type": "Thing",
                        "name": "Networks & Infrastructure",
                        "url": "https://update.dsesecurity.com/topic/networks-infrastructure/"
                    }
                ],
                "wordCount": 238,
                "timeRequired": "PT2M",
                "publishingPrinciples": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
                "usageInfo": "https://update.dsesecurity.com/usage/",
                "copyrightHolder": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "copyrightNotice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
                "citation": {
                    "@type": "CreativeWork",
                    "name": "Troubleshoot volume errors for Azure NetApp Files | Microsoft Learn",
                    "url": "https://learn.microsoft.com/en-us/azure/azure-netapp-files/troubleshoot-volumes"
                }
            }
        ]
    }
}