By default, when LDAPCONF performs a partial synchronization, it checks the LDAP
ModifyTimeStamp attribute to determine whether an entry has been modified since the last update (and so needs to be downloaded to iProcess). However, some LDAP Admin applications modify this attribute when handling user logons and authentication, which means that
LDAPCONF cannot use it in this way. You can therefore use the LDAP
lastModifiedTime attribute instead, with LDAP servers that require it.
The LAST_MODIFIED_TIME parameter defines which LDAP attribute
LDAPCONF should check when performing a partial synchronization: