LDAP Searches with a wildcard character return all objects, regardless of other characters placement
It appears that as soon as a wildcard character is used in an LDAP query, any object that has a value populated for the specific field will be returned irrespective of where that wildcard is placed in the query. Unless I've overlooked something, this means you can't do a 'starts with' search.
For example, here is a query of all Users in one of my connectors:
Here is a search for USNAME=TUNA which gives the expected single result
Here is a search for USNAME=TUNA*. This gives unexpected results (USNAMES starting with words other than TUNA are listed)
As a reference, here is how a search on AD Looks for all users
And then doing a search for CN starts with 'c'
Customer support service by UserEcho