The "ldapsearch" command can now return all operational attributes
LDAP searches can now return all operational attributes as described in IETF RFC 3673. Using the `+` character in a search will yield all operational attributes to which the bound Distinguished Name (DN) has access. The returned results may be limited depending on applicable Access Control Instructions (ACIs).
An example search might look similar to the following:
ldapsearch -LLLx -h localhost -p 10002 -b ou=people,dc=example,dc=com -s base '+'
See https://tools.ietf.org/html/rfc3673 for additional information about this feature.